期刊文献+

面向云数据库的多租户属性基安全隔离与数据保护方案 被引量:4

Scheme of Cloud Database Oriented Multi-tenant Attribute-based Security Isolation and Data Protection
下载PDF
导出
摘要 云数据库作为一种新兴的云计算应用,得到了广泛关注,而数据安全问题也成为云数据库进一步发展的难点。针对大型数据中心多租户云数据库的数据保护和业务QoS问题,文章提出了一种基于属性加密的多租户云数据库安全隔离和数据保护方案。首先,设计并实现了多租户云数据库管理系统,保证租户间的数据隔离;其次,提出了一个基于属性加密的中间件为租户数据进行加密和细粒度的权限控制,保证数据的安全性;最后,设计并实现了一套基于SDN网络架构的QoS系统,对云数据库服务的业务带宽进行保障。实验结果表明,文章设计的云数据库能够满足多租户的安全要求,当网络出现拥塞时,基于SDN的QoS系统可以保障加密数据库系统的业务带宽,确保租户的服务体验。 As a new cloud computing application,cloud database has been widely concerned,but data security has become the difficulty of further development of cloud database.Targeting the problem of data protection and Qo S of muitl-tanant cloud database in large data center,a multi-tenant cloud database security isolation and data protection based on attribute based encryption scheme is proposed.Firstly,the multi-tenant cloud database management system is designed and implemented to guarantee the data isolation between tenants.Secondly,a middleware based on attribute based encryption is proposed to encrypt the tenant data to ensure the security of the data and realize the fine grainen rank control.Finally,a Qo S system based on SDN is designed and implemented to ensure the service bandwidth of the cloud database service.The experimental results show that the proposed system can meet the security requirements of multi-tenant.When the network is congested,the Qo S system can protect the business bandwidth of the encrypted database system and ensure the service experience of the tenant.
作者 董庆贺 何倩 江炳城 刘鹏 DONG Qinghe;HE Qian;JIANG Bingcheng;LIU Peng(1.Guangxi Key Laboratory of Cryptography and Information Security,Guilin University of Electronic Technology;Guangxi Collaborative Innovation Center of Cloud Computing and Big Data,Guilin University of Electronic Technology,Guilin Guangxi 541004,China)
出处 《信息网络安全》 CSCD 北大核心 2018年第7期60-68,共9页 Netinfo Security
基金 国家自然科学基金[61661015] 认知无线电与信息处理教育部重点实验室基金[CRKL160101] 广西云计算与大数据协同创新基金[YD16801 C77KYS02SX18] 广西密码学与信息安全重点实验室基金[GCIS201701]
关键词 多租户 云数据库 属性基加密 QOS SDN multi-tenant cloud database attribute-based encryption QoS SDN
  • 相关文献

参考文献9

二级参考文献168

  • 1吴吉义,沈千里,章剑林,沈忠华,平玲娣.云计算:从云安全到可信云[J].计算机研究与发展,2011,48(S1):229-233. 被引量:54
  • 2林秦颖,桂小林,史德琴,王小平.面向云存储的安全存储策略研究[J].计算机研究与发展,2011,48(S1):240-243. 被引量:19
  • 3卓继亮,蔺慧丽,李先贤.具有可信第三方的认证协议的安全性[J].计算机应用研究,2004,21(12):109-112. 被引量:4
  • 4王飞,康晓博.基于第三方支付平台的银行卡网上支付模式研究[J].华南金融电脑,2006,14(10):56-59. 被引量:3
  • 5Hacigümüs H,Mehrotra S,Iyer B.Providing database as a service.In:Proc.of the Int'l Conf.on Data Engineering.Washington:IEEE Computer Society Press,2002.29-38.
  • 6Mykletun E,Narasimha M,Tsudik G.Authentication and integrity in outsourced databases.ACM Trans.on Storage,2006,2(2):107-138.
  • 7Schneier B,Wrote; Wu SZ,Zhu SX,Zhang WZ,Trans.Applied Cryptography-Protocols,Algorithms,and Source Code in C (Second Edition).Beijing:China Machine Press,2006 (in Chinese).
  • 8Shmueli E,Waisenberg R,Elovici Y,Gudes E.Designing secure indexes for encrypted databases.In:Proc.of the IFIP Conf.on Database and Applications Security.LNCS 3654,Heidelberg,Berlin:Springer-Verlag,2005.54-68.
  • 9Yang ZQ,Zhong S,Wright RN.Privacy-Preserving queries on encrypted data.In:Proc.of the 11th European Symp.on Research in Computer Security.LNCS 4189,Heidelberg,Berlin:Springer-Verlag,2006.479-495.
  • 10Davida GI,Wells DL,Kam JB.A database encryption system with subkeys.ACM Trans.on Database Systems,1981,6(2):312-328.[doi:10.1145/319566.319580].

共引文献233

同被引文献32

引证文献4

二级引证文献4

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部