Suppr超能文献

关于云服务中存储文件完整性的信任验证的安全架构与协议

Security Architecture and Protocol for Trust Verifications Regarding the Integrity of Files Stored in Cloud Services.

作者信息

Pinheiro Alexandre, Dias Canedo Edna, de Sousa Junior Rafael Timoteo, de Oliveira Albuquerque Robson, García Villalba Luis Javier, Kim Tai-Hoon

机构信息

Cybersecurity INCT Unit 6, Decision Technologies Laboratory-LATITUDE, Electrical Engineering Department (ENE), Technology College, University of Brasília (UnB), Brasília-DF, CEP 70910-900, Brazil.

Department of Computer Science, University of Brasília (UnB), P.O. Box 4466-Brasília-DF, CEP 70910-900, Brazil.

出版信息

Sensors (Basel). 2018 Mar 2;18(3):753. doi: 10.3390/s18030753.

Abstract

Cloud computing is considered an interesting paradigm due to its scalability, availability and virtually unlimited storage capacity. However, it is challenging to organize a cloud storage service (CSS) that is safe from the client point-of-view and to implement this CSS in public clouds since it is not advisable to blindly consider this configuration as fully trustworthy. Ideally, owners of large amounts of data should trust their data to be in the cloud for a long period of time, without the burden of keeping copies of the original data, nor of accessing the whole content for verifications regarding data preservation. Due to these requirements, integrity, availability, privacy and trust are still challenging issues for the adoption of cloud storage services, especially when losing or leaking information can bring significant damage, be it legal or business-related. With such concerns in mind, this paper proposes an architecture for periodically monitoring both the information stored in the cloud and the service provider behavior. The architecture operates with a proposed protocol based on trust and encryption concepts to ensure cloud data integrity without compromising confidentiality and without overloading storage services. Extensive tests and simulations of the proposed architecture and protocol validate their functional behavior and performance.

摘要

由于其可扩展性、可用性以及几乎无限的存储容量,云计算被视为一种有趣的范式。然而,从客户端角度组织一个安全的云存储服务(CSS)并在公共云中实现该CSS具有挑战性,因为盲目地将此配置视为完全可信赖是不明智的。理想情况下,大量数据的所有者应该信任他们的数据能长时间存储在云中,而无需承担保存原始数据副本的负担,也无需访问全部内容以验证数据保存情况。由于这些要求,完整性、可用性、隐私和信任对于采用云存储服务而言仍是具有挑战性的问题,尤其是当信息丢失或泄露可能带来重大损害时,无论是法律方面还是与业务相关的损害。考虑到这些问题,本文提出了一种用于定期监控存储在云中的信息以及服务提供商行为的架构。该架构通过基于信任和加密概念的提议协议运行,以确保云数据完整性,同时不损害保密性且不会使存储服务过载。对所提出的架构和协议进行的广泛测试和模拟验证了它们的功能行为和性能。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/af36/5876826/d8f33c091897/sensors-18-00753-g001.jpg

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验