摘要
由于云存储的安全需求,传统的认证授权模式存在一些安全漏洞,无法保证云存储数据的安全。针对这种情况,在云存储环境下,提出了集"认证、授权和保护"三位一体的增强认证授权模型。模型结合Open ID认证技术和OAuth授权技术,并引入存储加密,同时增加两个云服务,一个是Open Bio ID生物特征认证服务,另一个是Key Service密钥服务。初步原型系统实验表明,文中提出的模型能够在云存储环境下为用户提供认证、授权和加密服务,可以更好地保护用户云存储中的敏感数据。
Because of the security requirement of cdoud storage, the traditional mode of authentication and authorizationexists some security loopholes, and it cannot guarantee the security of the data cloud storage. In allusion to this instance, this paper presents an enhanced authentication service model with "authentication, authorization and protection" function in the cloud storage environment. Combined with the OpenID authentication and 0Auth authorization technology,the model also introduces storage encryption together with two cloud services. One is the OpenBioID biometric authentication,the other is Key Service. The initial prototype system shows that the model proposed in this paper can provide authentication, authorization and encryption service for the user in the cloud storage environment,and can better protect user's sensitive data in the cdoud storage as well.
出处
《信息技术》
2016年第6期54-58,62,共6页
Information Technology
基金
信息保障技术重点实验室开放基金课题(KJ-14-102)