• DocumentCode
    2922317
  • Title

    Ensuring data storage security in Cloud Computing

  • Author

    Wang, Cong ; Wang, Qian ; Ren, Kui ; Lou, Wenjing

  • Author_Institution
    Dept. of ECE, Illinois Inst. of Technol., Chicago, IL, USA
  • fYear
    2009
  • fDate
    13-15 July 2009
  • Firstpage
    1
  • Lastpage
    9
  • Abstract
    Cloud computing has been envisioned as the next-generation architecture of IT enterprise. In contrast to traditional solutions, where the IT services are under proper physical, logical and personnel controls, cloud computing moves the application software and databases to the large data centers, where the management of the data and services may not be fully trustworthy. This unique attribute, however, poses many new security challenges which have not been well understood. In this article, we focus on cloud data storage security, which has always been an important aspect of quality of service. To ensure the correctness of users´ data in the cloud, we propose an effective and flexible distributed scheme with two salient features, opposing to its predecessors. By utilizing the homomorphic token with distributed verification of erasure-coded data, our scheme achieves the integration of storage correctness insurance and data error localization, i.e., the identification of misbehaving server (s). Unlike most prior works, the new scheme further supports secure and efficient dynamic operations on data blocks, including: data update, delete and append. Extensive security and performance analysis shows that the proposed scheme is highly efficient and resilient against Byzantine failure, malicious data modification attack, and even server colluding attacks.
  • Keywords
    Internet; matrix algebra; quality of service; security of data; storage management; Byzantine failure; IT enterprise; cloud computing; cloud data storage security; data error localization; data management; data modification attack; databases; erasure-coded data distributed verification; flexible distributed scheme; homomorphic token; large data center; next-generation architecture; quality of service; server colluding attack; storage correctness insurance; Application software; Cloud computing; Computer architecture; Data security; Databases; Error correction; Insurance; Memory; Personnel; Quality of service;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Quality of Service, 2009. IWQoS. 17th International Workshop on
  • Conference_Location
    Charleston, SC
  • ISSN
    1548-615X
  • Print_ISBN
    978-1-4244-3875-4
  • Electronic_ISBN
    1548-615X
  • Type

    conf

  • DOI
    10.1109/IWQoS.2009.5201385
  • Filename
    5201385