摘要
云计算作为一种传统计算的替代方式,发展迅速。因为它可以提供给和商业环境一种灵活的、动态的、有弹性的架构。在公共云环境中,客户端将其数据上传到公有云服务器PCS中,无法控制其远程数据,因此检查远程数据的完整性是至关重要的工作。在原始数据不需下载的情况下,确保用户能够检测其外包数据完整性。在某些情况下,客户没有能力检查其远程数据的完整性,不得不将远程数据完整性检测任务委托给其代理。基于双线性对和计算Diffie-Hellman问题的困难性,设计了身份基代理远程数据完整性证明协议。在该协议中采用身份基的密码体系,减少了对公钥证书的验证,降低了用户和云服务器的储存、通信开销。通过安全性分析和性能分析,表明该协议是可证安全的和高效的。
Cloud computing as an alternative to conventional computing has a rapid development because it can provide a flexible,dynam- ic and resilient infrastructure for both academy and business. In public cloud environment, the clients move their data to Public Cloud Server (PCS). Since remote data are uncontrollable, checking its integrity is of crucial importance. It enables the clients to check whether their outsourced data have been kept intact without downloading the original data. In some cases, the clients are failed to check the integri- ty of remote data so that they have to delegate their proxy for checking of remote data integrity. Based on the bilinear pairing technique and the hardness of computational Diffie-Hellman problem,a protocol of remote data integrity checking of identity-based proxy is de- signed where identity-based cryptography system is used to reduce authentication of public key certificates and lower the storage and communication costs of user and public cloud server. Through analysis of security and performance,the protocol proposed is provably se- cure and efficient.
出处
《计算机技术与发展》
2017年第12期93-97,共5页
Computer Technology and Development
基金
辽宁省自然科学基金(20102042)
关键词
公开云
身份基
代理
完整性检验
public cloud
identity-based
proxy
integrity checking