引用本文:沈文婷,于佳,杨光洋,程相国,郝蓉.具有私钥可恢复能力的云存储完整性检测方案.软件学报,2016,27(6):1451-1462
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览 6056次   下载 8392 本文二维码信息
码上扫一扫!
分享到: 微信 更多
具有私钥可恢复能力的云存储完整性检测方案
沈文婷1, 于佳1,2, 杨光洋1, 程相国1, 郝蓉1
1.青岛大学 信息工程学院, 山东 青岛 266071;2.信息安全国家重点实验室(中国科学院 信息工程研究所), 北京 100093
摘要:
共享数据云存储完整性检测用来验证一个群体共享在云端数据的完整性,是最常见的云存储完整性检测方式之一.在云存储完整性检测中,用户用于生成数据签名的私钥可能会因为存储介质的损坏、故障等原因而无法使用.然而,目前已有的共享数据云存储完整性检测方案均未考虑到这个现实问题.探索了如何解决共享数据云存储完整性检测中私钥不可用的问题,提出了第1个具有私钥可恢复能力的共享数据云存储完整性检测方案.在方案中,当一个群用户的私钥不可用时,可以通过群里的t个或者t个以上的用户帮助其恢复私钥.同时,设计了随机遮掩技术,用于确保参与成员私钥的安全性.用户也可验证被恢复私钥的正确性.最后,给出安全性和实验结果的分析,结果显示所提方案是安全高效的.
关键词:  云存储  数据完整性检测  私钥恢复  秘密共享  安全性
DOI:10.13328/j.cnki.jos.004999
分类号:
基金项目:国家自然科学基金(61572267,61272425,60703089,61402245);山东省自然科学基金(ZR2014FQ010,ZR2010FQ019);信息安全国家重点实验室开放课题基金;华为科技基金(YB2013120027);青岛市建设事业科技发展项目(JK2015-26)
Cloud Storage Integrity Checking Scheme with Private Key Recovery Capability
SHEN Wen-Ting1, YU Jia1,2, YANG Guang-Yang1, CHENG Xiang-Guo1, HAO Rong1
1.College of Information Engineering, Qingdao University, Qingdao 266071, China;2.State Key Laboratory of Information Security (Institute of Information Engineering, The Chinese Academy of Sciences), Beijing 100093, China
Abstract:
Verifying the integrity of cloud data shared by a group is one of the most common usage of cloud storage integrity checking. In cloud storage integrity checking, the private key which is used to generate data signatures by user may be unavailable because of the damage or the fault of storage medium. However, currently existing cloud storage integrity checking schemes for shared data do not consider this realistic problem. This paper first explores how to deal with the problem of the private key unavailability in cloud storage integrity checking for shared data. A new scheme that enables cloud storage integrity checking for shared data with private key-recovery ability is proposed. In this scheme, when a group user's private key is unavailable, this user's private key can be recovered with the help of t or more users in the group. At the same time, a random masking technology is designed to guarantee the security of participating members' private keys. The user can also verify the correctness of the recovered private key. Finally, the analysis of security and experimental results are provided to show that the proposed scheme is secure and efficient.
Key words:  cloud storage  data integrity checking  private key recovery  secret sharing  security

引用本文:
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览次   下载  
分享到: 微信 更多
摘要:
关键词:  
DOI:
分类号:
基金项目:
Abstract:
Key words: