首页> 外文期刊>Services Computing, IEEE Transactions on >Certificateless Public Integrity Checking of Group Shared Data on Cloud Storage
【24h】

Certificateless Public Integrity Checking of Group Shared Data on Cloud Storage

机译:无证书公共完整性检查组共享数据的云存储

获取原文
获取原文并翻译 | 示例
           

摘要

Cloud storage service supplies people with an efficient method to share data within a group. The cloud server is not trustworthy, so lots of remote data possession checking (RDPC) protocols are proposed and thought to be an effective way to ensure the data integrity. However, most of RDPC protocols are based on the mechanism of traditional public key infrastructure (PKI), which has obvious security flaw and bears big burden of certificate management. To avoid this shortcoming, identity-based cryptography (IBC) is often chosen to be the basis of RDPC. Unfortunately, IBC has an inherent drawback of key escrow. To solve these problems, we utilize the technique of certificateless signature to present a new RDPC protocol for checking the integrity of data shared among a group. In our scheme, user's private key includes two parts: a partial key generated by the group manager and a secret value chosen by herself/himself. To ensure the right public keys are chosen during the data integrity checking, the public key of each user is associated with her unique identity, for example the name or telephone number. Thus, the certificate is not needed and the problem of key escrow is eliminated too. Meanwhile, the data integrity can still be audited by public verifier without downloading the whole data. In addition, our scheme also supports efficient user revocation from the group. The security of our scheme is reduced to the assumptions of computational Diffie-Hellman (CDH) and discrete logarithm (DL). Experiment results exhibit that the new protocol is very efficient and feasible.
机译:云存储服务为人们提供有效的方法来共享组内的数据。云服务器不值得信赖,因此提出了许多远程数据占有检查(RDPC)协议并被认为是确保数据完整性的有效方法。然而,大多数RDPC协议都是基于传统公钥基础设施(PKI)的机制,这具有明显的安全缺陷,并承担了证书管理的重负。为避免这种缺点,基于身份的密码学(IBC)通常被选为RDPC的基础。不幸的是,IBC具有主要托管的固有缺点。为了解决这些问题,我们利用证书签名的技术来呈现新的RDPC协议,用于检查组中共享的数据的完整性。在我们的方案中,用户的私钥包括两个部分:由组管理器生成的部分密钥以及由自己选择的秘密值/自己选择。为了确保在数据完整性检查期间选择正确的公钥,每个用户的公钥与她的唯一身份相关联,例如名称或电话号码。因此,不需要证书,也消除了关键托管的问题。同时,在不下载整个数据的情况下,数据完整性仍可审核。此外,我们的计划还支持来自组的高效用户撤销。我们的计划的安全性降低到计算Diffie-Hellman(CDH)和离散对数(DL)的假设。实验结果表明,新的协议非常有效和可行。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号