Security and privacy for storage and computation in cloud computing

被引:315
作者
Wei, Lifei [1 ]
Zhu, Haojin [1 ]
Cao, Zhenfu [1 ]
Dong, Xiaolei [1 ]
Jia, Weiwei [1 ]
Chen, Yunlu [1 ]
Vasilakos, Athanasios V. [2 ]
机构
[1] Shanghai Jiao Tong Univ, Dept Comp Sci & Engn, Shanghai 200030, Peoples R China
[2] Univ Western Macedonia, Dept Comp & Telecommun Engn, Kozani, Greece
基金
中国国家自然科学基金;
关键词
Secure computation auditing; Secure storage; Privacy-cheating discouragement; Designated verifier signature; Batch verification; Cloud computing; VERIFIER SIGNATURE SCHEME;
D O I
10.1016/j.ins.2013.04.028
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing emerges as a new computing paradigm that aims to provide reliable, customized and quality of service guaranteed computation environments for cloud users. Applications and databases are moved to the large centralized data centers, called cloud. Due to resource virtualization, global replication and migration, the physical absence of data and machine in the cloud, the stored data in the cloud and the computation results may not be well managed and fully trusted by the cloud users. Most of the previous work on the cloud security focuses on the storage security rather than taking the computation security into consideration together. In this paper, we propose a privacy cheating discouragement and secure computation auditing protocol, or SecCloud, which is a first protocol bridging secure storage and secure computation auditing in cloud and achieving privacy cheating discouragement by designated verifier signature, batch verification and probabilistic sampling techniques. The detailed analysis is given to obtain an optimal sampling size to minimize the cost. Another major contribution of this paper is that we build a practical secure-aware cloud computing experimental environment, or SecHDFS, as a test bed to implement SecCloud. Further experimental results have demonstrated the effectiveness and efficiency of the proposed SecCloud. (C) 2013 ElseVier Inc. All rights reserved.
引用
收藏
页码:371 / 386
页数:16
相关论文
共 37 条
[1]  
[Anonymous], 2009, 3 ACM SIGOPS INT WOR
[2]  
[Anonymous], 2007, P 14 ACM C COMP COMM
[3]  
[Anonymous], 2008, PROC 4 INT C SECUR P, DOI DOI 10.1145/1460877.1460889
[4]  
[Anonymous], 2007, P 14 ACM C COMP COMM
[5]  
[Anonymous], 2009, P 16 ACM C COMP COMM
[6]  
[Anonymous], 8 IEEE INT C DEP AUT
[7]   A View of Cloud Computing [J].
Armbrust, Michael ;
Fox, Armando ;
Griffith, Rean ;
Joseph, Anthony D. ;
Katz, Randy ;
Konwinski, Andy ;
Lee, Gunho ;
Patterson, David ;
Rabkin, Ariel ;
Stoica, Ion ;
Zaharia, Matei .
COMMUNICATIONS OF THE ACM, 2010, 53 (04) :50-58
[8]  
Belenkiy M, 2008, P 3 INT WORKSH EC NE
[9]  
Bialecki A., 2009, HADOOP FRAMEWORK RUN
[10]   Short signatures from the Weil pairing [J].
Boneh, D ;
Lynn, B ;
Shacham, H .
JOURNAL OF CRYPTOLOGY, 2004, 17 (04) :297-319