DocumentCode
1340932
Title
A Secure Erasure Code-Based Cloud Storage System with Secure Data Forwarding
Author
Lin, Hsiao-Ying ; Tzeng, Wen-Guey
Author_Institution
Dept. of Comput. Sci., Nat. Chiao Tung Univ., Hsinchu, Taiwan
Volume
23
Issue
6
fYear
2012
fDate
6/1/2012 12:00:00 AM
Firstpage
995
Lastpage
1003
Abstract
A cloud storage system, consisting of a collection of storage servers, provides long-term storage services over the Internet. Storing data in a third party´s cloud system causes serious concern over data confidentiality. General encryption schemes protect data confidentiality, but also limit the functionality of the storage system because a few operations are supported over encrypted data. Constructing a secure storage system that supports multiple functions is challenging when the storage system is distributed and has no central authority. We propose a threshold proxy re-encryption scheme and integrate it with a decentralized erasure code such that a secure distributed storage system is formulated. The distributed storage system not only supports secure and robust data storage and retrieval, but also lets a user forward his data in the storage servers to another user without retrieving the data back. The main technical contribution is that the proxy re-encryption scheme supports encoding operations over encrypted messages as well as forwarding operations over encoded and encrypted messages. Our method fully integrates encrypting, encoding, and forwarding. We analyze and suggest suitable parameters for the number of copies of a message dispatched to storage servers and the number of storage servers queried by a key server. These parameters allow more flexible adjustment between the number of storage servers and robustness.
Keywords
cloud computing; distributed processing; security of data; Internet; data back retrieval; data confidentiality; data encryption; data forwarding security; distributed storage system security; general encryption schemes; secure erasure code based cloud storage system; storage server collection; Cloud computing; Encoding; Encryption; Robustness; Secure storage; Servers; Decentralized erasure code; proxy re-encryption; secure storage system.; threshold cryptography;
fLanguage
English
Journal_Title
Parallel and Distributed Systems, IEEE Transactions on
Publisher
ieee
ISSN
1045-9219
Type
jour
DOI
10.1109/TPDS.2011.252
Filename
6035700
Link To Document