Journal of Computer Applications ›› 2013, Vol. 33 ›› Issue (07): 1880-1884.DOI: 10.11772/j.issn.1001-9081.2013.07.1880

• Network and distributed techno • Previous Articles     Next Articles

Secure and distributed cloud storage model from threshold attribute-based encryption

WU Shengyan,XU Li,LIN Changlu   

  1. Key Laboratory of Network Security and Cryptology, Fujian Normal University, Fuzhou Fujian 350007, China
  • Received:2013-01-28 Revised:2013-03-06 Online:2013-07-06 Published:2013-07-01
  • Contact: XU Li

基于门限属性加密的安全分布式云存储模型

吴胜艳,许力,林昌露   

  1. 福建师范大学 网络安全与密码技术福建省高校重点实验室,福州 350007
  • 通讯作者: 许力
  • 作者简介:吴胜艳(1986-),男,江西上饶人,硕士研究生,主要研究方向:密码学、云计算;许力(1970 -),男,福建福州人,教授,博士生导师,CCF高级会员,主要研究方向:网络与信息安全、无线网络、移动通信;林昌露(1978-),男,福建三明人,博士,主要研究方向:密码学。
  • 基金资助:

    国家自然科学基金资助项目(61072080,61103247);福建省自然科学基金资助项目(2011J05147);福建师范大学青年骨干教师资助项目(fjsdjk2012049);福建省2013年战略性新兴产业技术开发项目(闽发改高技[2013]266号)

Abstract: Since there are more and more security issues in cloud storage, this paper designed a new secure and distributed cloud storage model based on the threshold Attribute-Based Encryption (ABE). Three phases in the model included: the encryption phase, the data storage phase and the decryption phase, and all messages in these phases were distributed through the whole process. It not only enhanced the security of the storage data by using the ABE but also supported the threshold decryption and allowed to add or remove the arbitrary attribute authorities, with the use of the multi-attribute authorities method in the model. In the data storage phase, this paper used the distributed erasure code to improve the robustness of our model and this model could resist against collusion attack. It can be applied in some special cloud situations and provides secure cloud storage service for users.

Key words: distributed cloud storage, cloud computing, threshold Attribute-Based Encryption (ABE), erasure code

摘要: 针对云存储存在越来越多的安全问题,设计了一种新的基于门限属性加密的安全分布式云存储模型。该模型由加密、存储、解密三个阶段组成且均具有分布式特点。利用基于属性加密体制不仅提高数据存储的安全性,而且多属性服务器的模式也使得该模型能支持门限解密功能及任意个属性服务器的加入与撤出问题;在存储阶段使用的分布式删除码可充分保障模型的健壮性,且该模型能抵抗共谋攻击。在一些特有云环境中,该模型可向用户提供较好的安全云存储服务。

关键词: 分布式云存储, 云计算, 门限属性加密, 纠删码

CLC Number: