论文标题

云计算中具有动态所有权管理的安全有效的数据删除方案

A Secure and Efficient Data Deduplication Scheme with Dynamic Ownership Management in Cloud Computing

论文作者

Ma, Xuewei, Yang, Wenyuan, Zhu, Yuesheng, Bai, Zhiqiang

论文摘要

加密数据重复数据删除是保存存储空间和网络带宽的重要技术,该技术已广泛用于云存储中。最近,已经提出了许多解决数据重复数据删除问题的方案,并提出了动态所有权管理。但是,当动态所有权发生很多变化时,这些方案的效率低。为此,在本文中,我们为混合云体系结构中的加密数据提出了一种新颖的服务器端重复数据删除方案,在此过程中,公共云(Pub-CSP)管理存储和私有云(PRI-CSP)作为数据所有者在执行DEDUPLICATION和DYALID所有权管理中起着作用。此外,为了减少通信开销,我们使用初始上传器检查机制,以确保只有第一个上载器才需要执行加密,并采用访问控制技术,该技术在数据用户下载数据之前验证其有效性。我们的安全分析和绩效评估表明,与以前的方案相比,我们提出的服务器端重复数据删除方案在安全性,有效性和实用性方面具有更好的性能。同时,我们的方法可以有效抵抗勾结攻击和重复的伪造攻击。

Encrypted data deduplication is an important technique for saving storage space and network bandwidth, which has been widely used in cloud storage. Recently, a number of schemes that solve the problem of data deduplication with dynamic ownership management have been proposed. However, these schemes suffer from low efficiency when the dynamic ownership changes a lot. To this end, in this paper, we propose a novel server-side deduplication scheme for encrypted data in a hybrid cloud architecture, where a public cloud (Pub-CSP) manages the storage and a private cloud (Pri-CSP) plays a role as the data owner to perform deduplication and dynamic ownership management. Further, to reduce the communication overhead we use an initial uploader check mechanism to ensure only the first uploader needs to perform encryption, and adopt an access control technique that verifies the validity of the data users before they download data. Our security analysis and performance evaluation demonstrate that our proposed server-side deduplication scheme has better performance in terms of security, effectiveness, and practicability compared with previous schemes. Meanwhile, our method can efficiently resist collusion attacks and duplicate faking attacks.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源