• DocumentCode
    1340932
  • Title

    A Secure Erasure Code-Based Cloud Storage System with Secure Data Forwarding

  • Author

    Lin, Hsiao-Ying ; Tzeng, Wen-Guey

  • Author_Institution
    Dept. of Comput. Sci., Nat. Chiao Tung Univ., Hsinchu, Taiwan
  • Volume
    23
  • Issue
    6
  • fYear
    2012
  • fDate
    6/1/2012 12:00:00 AM
  • Firstpage
    995
  • Lastpage
    1003
  • Abstract
    A cloud storage system, consisting of a collection of storage servers, provides long-term storage services over the Internet. Storing data in a third party´s cloud system causes serious concern over data confidentiality. General encryption schemes protect data confidentiality, but also limit the functionality of the storage system because a few operations are supported over encrypted data. Constructing a secure storage system that supports multiple functions is challenging when the storage system is distributed and has no central authority. We propose a threshold proxy re-encryption scheme and integrate it with a decentralized erasure code such that a secure distributed storage system is formulated. The distributed storage system not only supports secure and robust data storage and retrieval, but also lets a user forward his data in the storage servers to another user without retrieving the data back. The main technical contribution is that the proxy re-encryption scheme supports encoding operations over encrypted messages as well as forwarding operations over encoded and encrypted messages. Our method fully integrates encrypting, encoding, and forwarding. We analyze and suggest suitable parameters for the number of copies of a message dispatched to storage servers and the number of storage servers queried by a key server. These parameters allow more flexible adjustment between the number of storage servers and robustness.
  • Keywords
    cloud computing; distributed processing; security of data; Internet; data back retrieval; data confidentiality; data encryption; data forwarding security; distributed storage system security; general encryption schemes; secure erasure code based cloud storage system; storage server collection; Cloud computing; Encoding; Encryption; Robustness; Secure storage; Servers; Decentralized erasure code; proxy re-encryption; secure storage system.; threshold cryptography;
  • fLanguage
    English
  • Journal_Title
    Parallel and Distributed Systems, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1045-9219
  • Type

    jour

  • DOI
    10.1109/TPDS.2011.252
  • Filename
    6035700