首页> 外文期刊>Current Organic Synthesis >Enabling Efficient User Revocation in Identity-Based Cloud Storage Auditing for Shared Big Data
【24h】

Enabling Efficient User Revocation in Identity-Based Cloud Storage Auditing for Shared Big Data

机译:为共享大数据启用基于身份的云存储审计中的高效用户撤销

获取原文
获取原文并翻译 | 示例
       

摘要

Cloud storage auditing schemes for shared data refer to checking the integrity of cloud data shared by a group of users. User revocation is commonly supported in such schemes, as users may be subject to group membership changes for various reasons. Previously, the computational overhead for user revocation in such schemes is linear with the total number of file blocks possessed by a revoked user. The overhead, however, may become a heavy burden because of the sheer amount of the shared cloud data. Thus, how to reduce the computational overhead caused by user revocations becomes a key research challenge for achieving practical cloud data auditing. In this paper, we propose a novel storage auditing scheme that achieves highly-efficient user revocation independent of the total number of file blocks possessed by the revoked user in the cloud. This is achieved by exploring a novel strategy for key generation and a new private key update technique. Using this strategy and the technique, we realize user revocation by just updating the non-revoked group users' private keys rather than authenticators of the revoked user. The integrity auditing of the revoked user's data can still be correctly performed when the authenticators are not updated. Meanwhile, the proposed scheme is based on identity-base cryptography, which eliminates the complicated certificate management in traditional Public Key Infrastructure (PKI) systems. The security and efficiency of the proposed scheme are validated via both analysis and experimental results.
机译:对于共享数据云存储审计方案指检查由一组用户的共享云数据的完整性。用户吊销这样的方案普遍支持的,因为用户可能会受到因各种原因组成员身份更改。以前,对于在这样的方案的用户撤销计算开销是与由撤销用户所拥有的文件块的总数是线性的。的开销,但是,有可能成为一个沉重的负担,因为共享云数据的绝对量无关。因此,如何减少因用户撤销的计算开销成为实现实用的云数据审计重点研究的挑战。在本文中,我们提议实现高效率的用户撤销独立于由在云中的撤销用户所拥有的文件块的总数的新的存储审计方案。这是通过探索密钥生成一种新的战略和新的私有密钥更新技术来实现。使用这种策略和方法,我们通过刚刚更新未撤销的用户群的私钥,而不是撤销用户的认证程序实现用户撤销。可仍然没有更新认证符时正确地进行撤销用户的数据的完整性审核。同时,该方案是基于身份的基础加密,从而消除了传统公钥基础设施(PKI)系统的复杂的证书管理。该方案的安全性和效率的同时通过分析和实验验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号