首页 | 本学科首页   官方微博 | 高级检索  
     

基于无双线性对的可信云数据完整性验证方案
引用本文:袁文勇,李秀广,李瑞峰,易铮阁,杨晓元.基于无双线性对的可信云数据完整性验证方案[J].计算机应用,2022,42(12):3769-3774.
作者姓名:袁文勇  李秀广  李瑞峰  易铮阁  杨晓元
作者单位:武警工程大学 密码工程学院, 西安 710086
综合业务网理论及关键技术国家重点实验室(西安电子科技大学), 西安 710071
网络与信息安全武警部队重点实验室, 西安 710086
基金项目:国家重点研发计划项目(2017YFB0802000);国家自然科学基金资助项目(62172436)
摘    要:针对云审计中第三方审计机构(TPA)可能存在的恶意欺骗行为,提出一种无双线性对的、能够正确检查TPA行为的可信云审计方案。首先,利用伪随机比特生成器生成随机挑战信息,以保证TPA生成挑战信息可靠;其次,在证据生成过程中增加哈希值,从而有效保护用户数据隐私;然后,在证据验证过程中,增加用户和TPA结果的交互过程,根据这个结果检查数据完整性,并判断TPA是否如实完成审计请求;最后,扩展该方案以实现多项数据的批量审计。安全分析表明,所提方案能够抵抗替换攻击和伪造攻击,且能保护数据隐私。相比基于Merkle哈希树的无双线性对(MHT-WiBPA)审计方案,所提方案的验证证据时间接近,而标签生成时间降低约49.96%。效能分析表明,所提方案在保证审计结果可信的前提下,实现了更低的计算开销和通信开销。

关 键 词:第三方审计机构  完整性  无双线性对  可信云审计  伪随机比特生成器  
收稿时间:2021-10-18
修稿时间:2022-01-07

Trusted integrity verification scheme of cloud data without bilinear pairings
Wenyong YUAN,Xiuguang LI,Ruifeng LI,Zhengge YI,Xiaoyuan YANG.Trusted integrity verification scheme of cloud data without bilinear pairings[J].journal of Computer Applications,2022,42(12):3769-3774.
Authors:Wenyong YUAN  Xiuguang LI  Ruifeng LI  Zhengge YI  Xiaoyuan YANG
Affiliation:College of Cryptographic Engineering,Engineering University of PAP,Xi’an Shaanxi 710086,China
State Key Laboratory of Integrated Services Networks (Xidian University),Xi’an Shaanxi 710071,China
Key Laboratory of PAP for Cryptology and Information Security,Xi’an Shaanxi 710086,China
Abstract:Focusing on the malicious cheating behaviors of Third Party Auditor (TPA) in cloud audit, a trusted cloud auditing scheme without bilinear pairings was proposed to support the correct judgment of the behaviors of TPA. Firstly, the pseudo-random bit generator was used to generate random challenge information, which ensured the reliability of the challenge information generated by TPA. Secondly, the hash value was added in the process of evidence generation to protect the privacy of user data effectively. Thirdly, in the process of evidence verification, the interactive process between users and TPA results was added. The data integrity was checked and whether TPA had completed the audit request truthfully or not was judged according to the above results. Finally, the scheme was extended to realize batch audit of multiple data. Security analysis shows that the proposed scheme can resist substitution attack and forgery attack, and can protect data privacy. Compared with Merkle-Hash-Tree based Without Bilinear PAiring (MHT-WiBPA) audit scheme, the proposed scheme has close time for verifying evidence, and the time for generating labels reduced by about 49.96%. Efficiency analysis shows that the proposed scheme can achieve lower computational cost and communication cost on the premise of ensuring the credibility of audit results.
Keywords:third party auditor  integrity  without bilinear pairings  trusted cloud auditing  pseudo-random bit generator  
点击此处可从《计算机应用》浏览原始摘要信息
点击此处可从《计算机应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号