信息网络安全 ›› 2018, Vol. 18 ›› Issue (11): 57-65.doi: 10.3969/j.issn.1671-1122.2018.11.008

• • 上一篇    下一篇

云平台下数据完整性验证方案设计

周悦1(), 王威1, 宋红波1, 何泾沙2   

  1. 1. 北京市软件产品质量检测检验中心和软件测试技术北京市重点实验室,北京 100085
    2. 北京工业大学信息学部,北京 100024
  • 收稿日期:2018-06-04 出版日期:2018-11-10 发布日期:2020-05-11
  • 作者简介:

    作者简介:周悦(1979—),女,北京,高级工程师,硕士,主要研究方向为软件测试和安全测试;王威(1977—),女,河南,高级工程师,硕士,主要研究方向为软件测试、质量保障;宋红波(1976—),女,北京,高级工程师,硕士,主要研究方向为软件工程、软件测试;何泾沙(1961—),男,陕西,教授,博士,主要研究方向为信息安全、无线通信网络和电子取证。

  • 基金资助:
    国家重点研发计划[2017YFF0209602]

Design of Data Integrity Verification Scheme under Cloud Platform

Yue ZHOU1(), Wei WANG1, Hongbo SONG1, Jingsha HE2   

  1. 1.Beijing Software Testing & QA Center and Beijing Key Laboratory for Software Testing Technology, Beijing 100085,China;
    2.Faculty of Information Technology, Beijing University of Technology, Beijing 100124,China
  • Received:2018-06-04 Online:2018-11-10 Published:2020-05-11

摘要:

将检测系统部署在云平台上有助于提高检测方和被检方的工作效率,降低检测成本。由于云平台本身的不足以及整个数据交互过程需要经过网络传输,因而无法确保数据的安全。解决云平台上应用数据的安全性问题最常见的方式是验证远端数据的完整性。文章利用云环境下经典验证远端数据完整性的技术,结合云平台下数据的特性和数据交互的特点设计云平台下数据完整性验证方案。该方案采用一种混合策略来保证检测方和被检方数据都能满足完整性验证需求。性能分析表明,文章方案的计算代价和通信代价都低于使用单一策略的方案。

关键词: 云平台, 数据完整性, 动态变化性

Abstract:

Deploying the detection system on the cloud platform helps to improve the efficiency of the detection party and the detected party and reduce the detection cost. Because of the shortages of cloud platform and because the whole data interaction process needs to be transmitted through the network, it is impossible to ensure the security of data. The most common way to solve the security problem of application data on cloud platform is to verify the integrity of remote data. This paper designs a data integrity verification scheme on cloud platform by using the classical technology of verifying the integrity of remote data in cloud environment and combining the characteristics of data under cloud platform and the characteristics of data interaction. The scheme adopts a hybrid strategy to ensure that both the detection and the detected data can meet the requirements of integrity verification. Performance analysis shows that the computational and communication costs of the scheme are lower than those of the scheme using a single strategy.

Key words: cloud platform, data integrity, dynamic variability

中图分类号: