摘要
针对云存储中数据的安全性问题,提出一种基于身份的门限签密方案在云存储中的应用。首先,建立信息保持同步的双目录服务器用来保存数据地址,使用用户公钥和管理员公钥对相应目录服务器的路径签密,用户使用自己私钥解签密并读取信息;其次,为避免管理员对用户信息的任意操作,通过门限数字签名在至少t个管理员同时使用自己的私钥生成部分签名时生成整体签名,从而获得目录服务器中的路径,实现对数据的合法操作。方案的设计实现了对云存储中用户信息地址的有效保护,限制了管理员的非法操作,保证了信息的高度安全性。
For data security reasons in the cloud storage,the paper proposed an identity-based threshold signcryption scheme.First,we establish two directory servers store data addresses which keep pace.Using a user public key and an administrator public key to encrypt path which in the directory server.User uses their private key solution signcryption and read information.Second,in order to avoid any of the operations of the user information by administrator,threshold digital signature is used.At least t or more administrators use their own private keys to generate partial signature then generating the overall signature.So,we can get the path of the directory server and carry out lawful operation to the user information.Program show that we can achieve the effective protection of user information addresses in the cloud storage.Then limit the illegal operation of the administrator and ensure the information security.
出处
《计算机安全》
2012年第8期35-39,共5页
Network & Computer Security
关键词
云存储
数据安全
信息同步
基于身份的门限签密
cloud storage
data security
information synchronization
identity-based threshold signcryption