首页> 外文期刊>Journal of supercomputing >Cross-group secret sharing scheme for secure usage of cloud storage over different providers and regions
【24h】

Cross-group secret sharing scheme for secure usage of cloud storage over different providers and regions

机译:跨组秘密共享方案,用于在不同提供商和区域上安全使用云存储

获取原文
获取原文并翻译 | 示例
           

摘要

With the spread of the Internet, more and more data are being stored in the cloud. Here the technique of secret sharing can be naturally applied in order to provide both security and availability of the stored data, hereby reducing the risks of data leakage and data loss. The privacy property of secret sharing ensures protection against unauthorized access, while protection against data loss may be attained by distributing shares to the servers located in different regions. However, there is still a problem: If we naively employ the secret sharing technique without regarding to whom the cloud servers belong, a dishonest provider can obtain the secret data by collecting enough shares from its servers. In this scenario, there is a need to distribute shares over cloud services operated by different providers. In this paper, we propose a simple secret sharing technique, a cross-group secret sharing (CGSS), which is suitable for storing the data on cloud storage distributed over different groups-that is, different providers and regions. By combining an -out-of-m threshold secret sharing scheme with a k-out-of-n threshold secret sharing scheme using a symmetric-key encryption scheme, we construct the CGSS scheme that forces k shares to be collected from groups. Compared with the previous works, our scheme attains the functionality with reasonable computation. We also formalize the problem of allocating shares over different providers and regions as an optimization problem and show the design principles, which one must follow, when applying our proposal in practical settings. An experiment on real IaaS systems shows effectiveness of our proposed scheme, CGSS.
机译:随着Internet的普及,越来越多的数据被存储在云中。在这里,秘密共享技术可以自然地应用,以提供存储数据的安全性和可用性,从而降低数据泄漏和数据丢失的风险。秘密共享的隐私属性可确保防止未经授权的访问,同时可以通过将份额分配给位于不同区域的服务器来实现防止数据丢失的保护。但是,仍然存在一个问题:如果我们天真的采用秘密共享技术而不考虑云服务器属于谁,那么不诚实的提供者可以通过从其服务器收集足够的份额来获取秘密数据。在这种情况下,需要在不同提供商提供的云服务上分配份额。在本文中,我们提出了一种简单的秘密共享技术,即跨组秘密共享(CGSS),适用于将数据存储在分布在不同组(即不同提供者和区域)上的云存储上。通过使用对称密钥加密方案将m分出阈值秘密共享方案与n分出k阈值秘密共享方案相结合,我们构建了CGSS方案,该方案强制从组中收集k个份额。与以前的工作相比,我们的方案具有合理的计算功能。我们还将形式化问题分配给不同的提供者和区域作为优化问题,并展示了在实际环境中应用我们的建议时必须遵循的设计原则。在实际的IaaS系统上进行的实验显示了我们提出的方案CGSS的有效性。

著录项

  • 来源
    《Journal of supercomputing》 |2017年第10期|4275-4301|共27页
  • 作者单位

    Univ Nagasaki, Dept Informat Secur, W408,1-1-1 Manabino, Nagoya, Nagasaki 8512195, Japan;

    Kyushu Univ, Dept Informat, Nishi Ku, W2-712,744 Motooka, Fukuoka 8190395, Japan;

    Kyushu Univ, Grad Sch Informat Sci & Elect Engn, Nishi Ku, W2-712,744 Motooka, Fukuoka 8190395, Japan;

    Tokyo Inst Technol, Sch Comp, Meguro Ku, 2-12-1 Ookayama, Tokyo 1528552, Japan;

    Kyushu Univ, Dept Informat, Nishi Ku, W2-712,744 Motooka, Fukuoka 8190395, Japan|Inst Syst Informat Technol & Nanotechnol, Informat Secur Lab, Sawara Ku, 7F,Fukuoka SRP Ctr Bldg,2-1-22 Momochihama, Fukuoka 8140001, Japan;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Data protection; Privacy; Secret sharing; Cloud storage;

    机译:数据保护;隐私;秘密共享;云存储;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号