期刊文献+

基于Ceph的私有云平台加密存储方案设计与分析 被引量:2

Design and Analysis of Encrypted Storage Scheme of Private Cloud Platform Based on Ceph
下载PDF
导出
摘要 针对云存储在存储性能和存储安全方面日益增长的需求,在研究私有云平台最新存储技术及政务云需求分析的基础上,结合云密码服务,设计一套基于Ceph的私有云平台加密存储方案。其中,私有云存储以Ceph为核心组件,并在与Swift的对比测试中显示出Ceph的强大动力;密钥管理模块以云服务密码机为基础,结合门限共享思想、分割思想,设计多级密钥保护机制;数据加密存储模块以Ceph组件为支撑、多级密钥保护机制为基础,利用国密SM4算法实现政务私有云文件安全存储。通过分析或部件测试发现,该方案具有良好的可行性以及安全性,适用于小文件突出的政务私有云平台的安全保障。 In view of the increasing demand of cloud storage for storage performance and storage security,based on a research on the latest storage technology of private cloud platform and an analysis of the government cloud demand,combined with the cloud cryptography service,an encrypted storage scheme of private cloud platform based on the Ceph is designed.In the scheme,the Ceph is the core component of the private cloud storage and exhibits strong power in a comparison test with the Swift.The key management module is based on the cryptographic machine of cloud service.Combined with the idea of threshold sharing and segmentation,a multi-level key protection mechanism is designed.The data encryption storage module is supported by the Ceph component and based on the multi-level key protection mechanism.The SM4 algorithm of State Secret is used to realize the secure storage of government private cloud files.Analysis and component testing results show that the scheme has good feasibility and security,and is suitable for the security guarantee of the government private cloud platform with small files.
作者 于淼 王雄 池亚平 YU Miao;WANG Xiong;CHI Yaping(Beijing Electronic Science and Technology Institute,Beijing 100070,P.R.China)
出处 《北京电子科技学院学报》 2022年第1期32-42,共11页 Journal of Beijing Electronic Science And Technology Institute
基金 国家重点研发计划项目(项目编号:2018YFB1004100)
关键词 私有云 云存储 数据安全 Ceph 密钥管理 private cloud cloud storage data security Ceph key management
  • 相关文献

参考文献14

二级参考文献73

  • 1李建军,郁滨,陈武平.面向服务组合的密码服务调度智能优化研究[J].通信学报,2013,34(S1):216-222. 被引量:2
  • 2张蕾,吴文玲.SMS4密码算法的差分故障攻击[J].计算机学报,2006,29(9):1596-1602. 被引量:66
  • 3王雷,荆继武,向继.基于CIFS协议的存储加密代理设计与实现[C].第二十四次全国计算机安全学术交流会,2009.
  • 4尚涛.CIFS协议的分析与实现[D].上海:上海交通大学论文库,2001.
  • 5SNIA CIFS Technical Work Group. Common Internet File System (CIFS) Technical Reference Revision: 1.0 [C].2002.
  • 6Yang Tang, Patrick P. C. Lee, John C. S. Lui, Radia Perlman. Secure Overlay Cloud Storage with File Assured DeletionlJ]. Computer Science and Engineering ,2010.
  • 7Amazon Simple Storage Service (S3),[DB/OL].http://aws.amazon. com/s3/,2012/2/21.
  • 8AnthonyJones JimOhlund著 杨合庆译.Windows网络编程[M].北京:清华大学出版社,2002..
  • 9Schaudin.com. Machine Translation Add-On for RC-WinTrans [EB/ OL]. http://rc-wintrans.s,.chaudin.com/addons/MT/,February 07, 2012/ June 07,2012.
  • 10Amazon web services. Amazon Elastic Compute Cloud[EB/OL]. http:// aws.amazon.com/documentation/ec2/,June 01,2012/ June 07,21)12.

共引文献406

同被引文献19

引证文献2

二级引证文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部