信息网络安全 ›› 2019, Vol. 19 ›› Issue (6): 28-36.doi: 10.3969/j.issn.1671-1122.2019.06.004

• 技术研究 • 上一篇    下一篇

云存储数据完整性审计技术研究综述

邵必林1, 李肖俊1(), 边根庆1,2, 赵煜1   

  1. 1.西安建筑科技大学管理学院,陕西西安 710055
    2.西安建筑科技大学信息与控制工程学院,陕西西安 710055
  • 收稿日期:2019-02-15 出版日期:2019-06-10 发布日期:2020-05-11
  • 作者简介:

    作者简介:邵必林(1965—),男,云南,教授,硕士,主要研究方向为信息安全、人工智能、推荐系统;李肖俊(1981—),男,陕西,博士研究生,主要研究方向为信息安全、数据挖掘、推荐系统;边根庆(1968—),男,浙江,副教授,硕士,主要研究方向为信息安全、大数据与存储、推荐系统;赵煜(1981—),男,陕西,博士研究生,主要研究方向为人工智能、大数据安全与存储。

  • 基金资助:
    国家自然科学基金[61672416,61872284,61272458];陕西省自然科学基金[2018JM6105]

A Survey on Data Integrity Auditing Technology in Cloud Storage

Bilin SHAO1, Xiaojun LI1(), Genqing BIAN1,2, Yu ZHAO1   

  1. 1. School of Management, Xi’an University of Architecture and Technology, Xi’an Shannxi 710055, China
    2. School of Information and Control Engineering, Xi’an University of Architecture and Technology,Xi’an Shannxi 710055, China
  • Received:2019-02-15 Online:2019-06-10 Published:2020-05-11

摘要:

云存储是解决数据量爆发式增长所导致的数据存储成本不断增长的问题的最佳解决方案。然而,当用户将数据存储到云端时,便失去了对数据的物理控制权,检验外包数据的完整性是保障云存储数据安全的一个迫切需要解决的问题。文章从数据持有性证明(PDP)、数据可恢复性证明(PoR)和数据所有权证明(PoW)三个方面归纳总结现有数据审计协议的优缺点,并从技术原理、时间成本、可靠性、检测概率等指标对典型协议进行性能评估。研究发现:大多数审计协议只能针对特定场景,各方面性能均衡的普适审计协议亟待进一步研究;与云际存储、雾存储、区块链等技术相匹配的审计协议尚处于探索阶段。文章最后从云际审计协议、联盟链审计协议、组件池审计协议等5个方面预测外包数据审计方法的未来发展趋势。

关键词: 云存储, 数据完整性, 审计技术

Abstract:

Cloud storage is the best way to address the growing dilemma of data storage costs caused by explosive bursts of data. When users store data in the cloud, they lose the physical control of the data. Testing the integrity of the outsourced data is an urgent problem to be solved. This paper summarizes the advantages and disadvantages of existing data auditing protocols from three perspectives: Provable Data Possession (PDP), Proof of Retrievability (PoR) and Proof of Ownership (PoW), andevaluate the performance of a typical protocol from technical principle, time cost, reliability, detection probability and other indicators. The research finds that: Most audit protocols are only for specific scenarios, and the universal audit protocol for balancing performance in all aspects needs to be improved; the audit protocol matching the technologies such as cloud storage, fog storage, and blockchain is still in the process of exploration phase. Finally, we predict the future development trend of outsourcing data auditing methods from five aspects: cloud auditing protocol, alliance chain auditing protocol and component pool auditing protocol and so on.

Key words: cloud storage, data integrity, auditing technology

中图分类号: