Access-Authorizing and Privacy-Preserving Auditing with Group Dynamic for Shared Cloud Data

作者:Shen, Wenting; Yu, Jia*; Yang, Guangyang; Zhang, Yue; Fu, Zhangjie; Hao, Rong
来源:KSII Transactions on Internet and Information Systems, 2016, 10(7): 3319-3338.
DOI:10.3837/tiis.2016.07.025

摘要

Cloud storage is becoming more and more popular because of its elasticity and pay-as-you-go storage service manner. In some cloud storage scenarios, the data that are stored in the cloud may be shared by a group of users. To verify the integrity of cloud data in this kind of applications, many auditing schemes for shared cloud data have been proposed. However, all of these schemes do not consider the access authorization problem for users, which makes the revoked users still able to access the shared cloud data belonging to the group. In order to deal with this problem, we propose a novel public auditing scheme for shared cloud data in this paper. Different from previous work, in our scheme, the user in a group cannot any longer access the shared cloud data belonging to this group once this user is revoked. In addition, we propose a new random masking technique to make our scheme preserve both data privacy and identity privacy. Furthermore, our scheme supports to enroll a new user in a group and revoke an old user from a group. We analyze the security of the proposed scheme and justify its performance by concrete implementations.

全文