信息网络安全 ›› 2017, Vol. 17 ›› Issue (10): 22-28.doi: 10.3969/j.issn.1671-1122.2017.10.004

• • 上一篇    下一篇

云环境下支持数据动态更新的多副本数据完整性审计方法研究

边根庆1,2, 邵必林2(), 蔡皖东3, 王栋1   

  1. 1.西安建筑科技大学信息与控制工程学院,陕西西安 710055
    2.西安建筑科技大学管理学院,陕西西安 710055
    3.西北工业大学计算机学院,陕西西安 710072
  • 收稿日期:2017-08-01 出版日期:2017-10-10 发布日期:2020-05-12
  • 作者简介:

    作者简介: 边根庆(1968—),男,浙江,副教授,硕士,主要研究方向为信息安全管控技术;邵必林(1965—),男,云南,教授,硕士,主要研究方向为信息安全管控技术;蔡皖东(1955—),男,陕西,教授,博士,主要研究方向为复杂网络测量与分析、网络信息安全监测、信息系统安全测评;王栋(1991—) ,男,陕西,硕士,主要研究方向为信息安全管控技术。

  • 基金资助:
    国家自然科学基金[61672416,61272458]

Research on Multiple-replica Integrity Auditing Method on Supporting Data Dynamic Updating in Cloud Environment

Genqing BIAN1,2, Bilin SHAO2(), Wandong CAI3, Dong WANG1   

  1. 1.School of Information and Control Engineering, Xi’an University of Architecture and Technology, Xi’an Shannxi 710055, China
    2. School of Management, Xi’an University of Architecture and Technology, Xi’an Shannxi 710055, China
    3.School of Computer Science, Northwestern Polytechnical University, Xi’an Shannxi 710072, China
  • Received:2017-08-01 Online:2017-10-10 Published:2020-05-12

摘要:

在云存储环境下,如何高效、动态地完成多副本数据的完整性审计是一项极具挑战性的问题。文章研究并提出了一种支持数据动态更新的多副本数据完整性审计方法。首先利用BLS签名和双线性映射技术实现多副本的批量审计,避免了CSP与TPA之间的多次交互,降低审计过程中的通信开销;其次在各副本编号与文件连接后,利用ElGamal密码系统生成相应的副本;最后对审计方法的安全性进行了理论分析,对审计方法的性能进行了实验比较。结果表明,本文算法在通信、计算开销方面的性能优于现有的方法,能有效提高文件存储和验证的效率,减少计算开销。

关键词: 云存储, 多副本, 数据完整性审计, ElGamal

Abstract:

In the cloud storage environment, how to efficiently and dynamically complete the integrity of multi-replica data auditing is a challenging issue. This paper studies and proposes a Multiple-replica Integrity Auditing Method on Supporting Data Dynamic Updating. Firstly, BLS signature and bilinear mapping technology are used to realize the batch audit of multi-replica, which avoids the interaction between CSP and TPA, thus reducing the communication overhead in the audit process. Secondly, after connecting each replica number and the file, corresponding replicas are generated by using ElGamal system. Finally, the security of the verification method is analyzed theoretically, and the performance of the verification method is compared experimentally. The results show that the performance of the method is better than the existing methods in communication and computing overhead, which can effectively improve the efficiency of file storage and verification and reduce the computational cost.

Key words: cloud storage, multiple-replica, integrity auditing, ElGamal

中图分类号: