首页> 外文期刊>Parallel and Distributed Systems, IEEE Transactions on >Shared Authority Based Privacy-Preserving Authentication Protocol in Cloud Computing
【24h】

Shared Authority Based Privacy-Preserving Authentication Protocol in Cloud Computing

机译:云计算中基于共享授权的隐私保护身份验证协议

获取原文
获取原文并翻译 | 示例

摘要

Cloud computing is an emerging data interactive paradigm to realize users’ data remotely stored in an online cloud server. Cloud services provide great conveniences for the users to enjoy the on-demand cloud applications without considering the local infrastructure limitations. During the data accessing, different users may be in a collaborative relationship, and thus data sharing becomes significant to achieve productive benefits. The existing security solutions mainly focus on the authentication to realize that a user’s privative data cannot be illegally accessed, but neglect a subtle privacy issue during a user challenging the cloud server to request other users for data sharing. The challenged access request itself may reveal the user’s privacy no matter whether or not it can obtain the data access permissions. In this paper, we propose a shared authority based privacy-preserving authentication protocol (SAPA) to address above privacy issue for cloud storage. In the SAPA, 1) shared access authority is achieved by anonymous access request matching mechanism with security and privacy considerations (e.g., authentication, data anonymity, user privacy, and forward security); 2) attribute based access control is adopted to realize that the user can only access its own data fields; 3) proxy re-encryption is applied to provide data sharing among the multiple users. Meanwhile, universal composability (UC) model is established to prove that the SAPA theoretically has the design correctness. It indicates that the proposed protocol is attractive for multi-user collaborative cloud applications.
机译:云计算是一种新兴的数据交互范例,可实现远程存储在在线云服务器中的用户数据。云服务为用户提供了极大的便利,使他们可以在不考虑本地基础架构限制的情况下享受随需应变的云应用程序。在数据访问期间,不同的用户可能处于协作关系中,因此数据共享对于实现生产性收益变得重要。现有的安全解决方案主要集中在身份验证上,以实现用户的私有数据不能被非法访问,而在用户向云服务器挑战以请求其他用户进行数据共享时忽略了一个微妙的隐私问题。受到挑战的访问请求本身可能会泄露用户的隐私,无论它是否可以获取数据访问权限。在本文中,我们提出了一种基于共享权限的隐私保护认证协议(SAPA),以解决云存储的上述隐私问题。在SAPA中,1)通过具有安全和隐私考虑因素(例如,身份验证,数据匿名,用户隐私和前向安全性)的匿名访问请求匹配机制来实现共享访问权限; 2)采用基于属性的访问控制,以实现用户只能访问自己的数据字段; 3)应用代理重新加密以在多个用户之间提供数据共享。同时,建立通用可组合性(UC)模型以证明SAPA在理论上具有设计正确性。这表明所提出的协议对于多用户协作云应用具有吸引力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号