通信学报 ›› 2016, Vol. 37 ›› Issue (8): 167-184.doi: 10.11959/j.issn.1000-436x.2016167

• 综述 • 上一篇    下一篇

基于密码学的云数据确定性删除研究进展

熊金波1,2,李凤华1,王彦超1,马建峰3,姚志强2   

  1. 1.中国科学院信息工程研究所信息安全国家重点实验室,北京 100093;2.福建师范大学软件学院,福建 福州350117;3.西安电子科技大学计算机学院,陕西 西安710071
    1 中国科学院信息工程研究所信息安全国家重点实验室,北京 100093
    2 福建师范大学软件学院,福建 福州350117
    3 西安电子科技大学计算机学院,陕西 西安710071
  • 出版日期:2016-08-25 发布日期:2016-09-01
  • 基金资助:
    国家高技术研究发展计划(“863”计划)基金资助项目;国家自然科学基金资助项目;国家自然科学基金资助项目;福建省自然科学基金资助项目;福建省网络安全与密码技术重点实验室(福建师范大学)开放课题基金资助项目;福建省高校杰出青年科研人才培育计划基金资助项目

Research progress on cloud data assured deletion based on cryptography

Jin-bo XIONG1,2,Feng-hua LI1,Yan-chao WANG1,Jian-feng MA3,Zhi-qiang YAO2   

  1. 1.State Key Laboratory of Information Security,Institute of Information Engineering,Chinese Academy of Sciences,Beijing 100093,China;2.Faculty of Software,Fujian Normal University,Fuzhou 350117,China;3.School of Computer Science and Technology,Xidian University,Xi'an 710071,China
    1 State Key Laboratory of Information Security,Institute of Information Engineering,Chinese Academy of Sciences,Beijing 100093,China
    2 Faculty of Software,Fujian Normal University,Fuzhou 350117,China
    3 School of Computer Science and Technology,Xidian University,Xi'an 710071,China
  • Online:2016-08-25 Published:2016-09-01
  • Supported by:
    The National High Technology Research and Development Program(863Progam);The National Natural Science Foundation of China;The National Natural Science Foundation of China;No.2015J05120;Fujian Provincial Key Laboratory of Network Security and Cryptology Research Fund;Distinguished Young Scientific Research Talents Plan in Universities of Fujian Province

摘要:

系统分析云环境中数据确定性删除面临的主要挑战,指出云计算虚拟化与多租户的特征,以及租赁、按需交付的商业模式是云环境中存在诸多安全问题需要确定性删除服务的根本原因,并给出云数据确定性删除的深层次含义;面向安全的角度从基于可信执行环境的确定性删除、基于密钥管理的确定性删除和基于访问控制策略的确定性删除3个方面对近年来相关研究工作进行深入分析和评述,并指出各种关键技术与方法的优势及存在的共性问题;最后给出云数据确定性删除领域未来的发展趋势。

关键词: 云数据安全, 确定性删除, 隐私保护, 密钥管理, 访问控制

Abstract:

The major challenges faced by the data assured deletion in cloud computing was analyzed,it was observed the main reasons of performing cloud data assured deletion were the characteristics of cloud virtualization and multi-tenancy,as well as the business models of lease and on-demand delivery in cloud computing,and point out three levels of meaning of the cloud data assured deletion.Secondly,the state-of-the-art works on cloud data assured deletion was systematically surveyed from security-oriented view in terms of trusted execution environments,key managements and access control policies.It is also pointed out their highlights,limitations and general problems.Finally,some developing trends of this emerging research field were introduced.

Key words: cloud data security, assured deletion, privacy protection, key management,access control

No Suggested Reading articles found!