通信学报

• 云安全 • 上一篇    下一篇

基于多分支认证树的多用户多副本数据持有性证明方案

查雅行,罗守山,卞建超,李 伟   

  1. 1.北京邮电大学 信息安全中心,北京 100876;2.灾备技术国家工程实验室,北京 100876
  • 出版日期:2015-11-27 发布日期:2015-11-27
  • 基金资助:
    国家高技术研究发展计划(“863”计划)基金资助项目(2015AA016005)

Multiuser and multiple-replica provable data possession scheme based on multi-branch authentication tree

  • Online:2015-11-27 Published:2015-11-27

摘要: 在云存储环境下,如何高效、动态地完成对多用户多副本数据的完整性验证是一个挑战性问题。基于双线性代数映射的签名机制和多分支认证树特性,提出了一种新的多用户多副本数据持有性证明方案。该方案通过使用随机掩码技术对密文进行处理确保数据隐私性,采用多分支认证树来提高数据分块的签名效率,能够支持数据动态更新操作。此外,引入第三方审计者对多用户多副本数据进行批量审计以减少计算开销。最后,分析表明本方案具有较高的安全性和效率。

关键词: 数据持有性证明;多分支认证树;批量审计;多副本;云存储

Abstract: It was a challenging problem that how to accomplish the integrity verification for the data of multi-user and multiple-replica efficiently and dynamically in cloud storage environment. Based on the properties of signature scheme of bilinear algebraic maps and multi-branch authentication tree, a novel multi-user and multiple-replica provable data possession scheme was presented. In this scheme, the cipher-text was processed by the random mask technology to guarantee data privacy, and the block tag authentication efficiency has been improved and the data operation can be updated dynamically by manipulating the multi-branch authentication tree. Moreover, in order to reduce the computational overhead effectively the batch auditing tasks for the data of multi-user and multiple-replica simultaneously under the help of the third party auditor is introduced. Finally, analysis shows that proposed scheme has provably security and efficiency.

Key words: provable data possession; multi-branch authentication tree; batch auditing; multiple-replica; cloud storage

No Suggested Reading articles found!