Intrusion-Resilient Public Auditing Protocol for Data Storage in Cloud Computing
Intrusion-Resilient Public Auditing Protocol for Data Storage in Cloud Computing
复制标题
DOI:
10.1007/978-3-319-93638-3_23
复制
发表时间:
2018-07
期刊:
影响因子:
--
通讯作者:
Yan Xu;R. Ding;Jie Cui;Hong Zhong
中科院分区:
文献类型:
--
作者:
Yan Xu;R. Ding;Jie Cui;Hong Zhong
Cloud storage auditing is a crucial service that provides integrity checking for clients’ data in the cloud server. However, if the client’s auditing secret key is exposed, the malicious cloud server can tamper even throw away the client’s data without being detected. In this paper, we propose an intrusion-resilient public auditing protocol that can reduce the damage caused by key exposure. In our protocol, the auditing secret key is managed by the client with the help of a third party auditor (TPA), who cannot compute the client’s auditing secret key. Our protocol divides the lifetime of file stored on cloud into several time periods, and each time period is further divided into several refreshing periods. We show that our protocol is secure (i.e., backward security and forward security) against the adversary as long as the client and TPA are compromised in different refreshing period. Our protocol still captures the forward security when the client and TPA are compromised in the same refreshing period.