首页> 外文期刊>IEEE transactions on information forensics and security >Enabling Identity-Based Integrity Auditing and Data Sharing With Sensitive Information Hiding for Secure Cloud Storage
【24h】

Enabling Identity-Based Integrity Auditing and Data Sharing With Sensitive Information Hiding for Secure Cloud Storage

机译:通过基于敏感信息隐藏的基于身份的完整性审核和数据共享,实现安全的云存储

获取原文
获取原文并翻译 | 示例
           

摘要

With cloud storage services, users can remotely store their data to the cloud and realize the data sharing with others. Remote data integrity auditing is proposed to guarantee the integrity of the data stored in the cloud. In some common cloud storage systems such as the electronic health records system, the cloud file might contain some sensitive information. The sensitive information should not be exposed to others when the cloud file is shared. Encrypting the whole shared file can realize the sensitive information hiding, but will make this shared file unable to be used by others. How to realize data sharing with sensitive information hiding in remote data integrity auditing still has not been explored up to now. In order to address this problem, we propose a remote data integrity auditing scheme that realizes data sharing with sensitive information hiding in this paper. In this scheme, a sanitizer is used to sanitize the data blocks corresponding to the sensitive information of the file and transforms these data blocks' signatures into valid ones for the sanitized file. These signatures are used to verify the integrity of the sanitized file in the phase of integrity auditing. As a result, our scheme makes the file stored in the cloud able to be shared and used by others on the condition that the sensitive information is hidden, while the remote data integrity auditing is still able to be efficiently executed. Meanwhile, the proposed scheme is based on identity-based cryptography, which simplifies the complicated certificate management. The security analysis and the performance evaluation show that the proposed scheme is secure and efficient.
机译:借助云存储服务,用户可以将其数据远程存储到云中并实现与他人的数据共享。为了保证云中存储的数据的完整性,提出了远程数据完整性审计。在某些常见的云存储系统(例如电子病历系统)中,云文件可能包含一些敏感信息。共享云文件时,敏感信息不应暴露给其他人。对整个共享文件进行加密可以实现敏感信息的隐藏,但会使该共享文件无法被他人使用。到目前为止,还没有探索如何在远程数据完整性审计中隐藏敏感信息来实现数据共享。为了解决这个问题,本文提出了一种远程数据完整性审计方案,该方案可以实现隐藏敏感信息的数据共享。在此方案中,使用清理程序来清理与文件的敏感信息相对应的数据块,并将这些数据块的签名转换为已清理文件的有效签名。这些签名用于在完整性审核阶段验证已清理文件的完整性。结果,我们的方案使存储在云中的文件能够在敏感信息被隐藏的情况下被他人共享和使用,而远程数据完整性审核仍然能够被有效地执行。同时,该方案基于基于身份的加密技术,简化了复杂的证书管理。安全分析和性能评估表明,该方案是安全有效的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号