A management approach to key-used times based on trusted platform module in cloud storage

被引:0
|
作者
机构
[1] [1,Wang, Lina
[2] Ren, Zhengwei
[3] Dong, Yongfeng
[4] 1,Yu, Rongwei
[5] Deng, Ruyi
来源
Ren, Z. (zhengwei_ren@163.com) | 1628年 / Science Press卷 / 50期
关键词
Cloud storage - Authentication - Information management - Storage management - Trusted computing - Electronic document identification systems;
D O I
暂无
中图分类号
学科分类号
摘要
A management approach to key used times based on trusted platform module (TPM) is proposed to protect the confidentiality of data in cloud storage and control the key-used times. Firstly, the data is encrypted by a symmetric encryption scheme using a data encryption key (DEK). And then DEK is encrypted by the ciphertext-policy attribute-based encryption (CP-ABE) scheme to control the access of DEK. Only those whose attributes satisfy the access control tree adopted by CP-ABE can decrypt and access DEK. Then DEK will be stored securely by binding the key and the TPM with a digital signature locally. The physical monotonic counter of the TPM is utilized to generate virtual monotonic counter (VMC) for each DEK. Secondly, comparing the monotonically increased value of VMC and the pre-set times that DEK can be used, DEK is judged to be deleted or to be used unceasingly so that the used times of DEK is controlled. Finally, the replay attack of the hard disk is prevented by the anti-physical tampering functionality of TPM, monotonicity of the counter, and digital signature. The experiment results show that the performance cost is low and the proposed scheme can securely store and effectively protect DEK, thus achieving the goal that the times of DEK can be used is limited.
引用
收藏
相关论文
共 50 条
  • [41] Symmetric Key-Based Secure Storage and Retrieval of IoT Data on a Semi-trusted Cloud Server
    Shabisha, Placide
    Braeken, An
    Steenhaut, Kris
    WIRELESS PERSONAL COMMUNICATIONS, 2020, 113 (01) : 537 - 553
  • [42] Symmetric Key-Based Secure Storage and Retrieval of IoT Data on a Semi-trusted Cloud Server
    Placide Shabisha
    An Braeken
    Kris Steenhaut
    Wireless Personal Communications, 2020, 113 : 537 - 553
  • [43] STYX: A Trusted and Accelerated Hierarchical SSL Key Management and Distribution System for Cloud Based CDN Application
    Wei, Changzheng
    Li, Jian
    Li, Weigang
    Yu, Ping
    Guan, Haibing
    PROCEEDINGS OF THE 2017 SYMPOSIUM ON CLOUD COMPUTING (SOCC '17), 2017, : 201 - 213
  • [44] An approach to data sealing based on trusted virtualization platform
    State Key Laboratory of Information Security, Institute of Software, Chinese Academy of Sciences, Beijing 100190, China
    不详
    Jisuanji Yanjiu yu Fazhan, 2009, 8 (1325-1333):
  • [45] Novel hyper-combined public key based cloud storage key management scheme
    Song Ningning
    Chen Yueyun
    CHINA COMMUNICATIONS, 2014, 11 (02) : 185 - 194
  • [46] The Research and Design of Trusted Cloud Computing Platform based on Group theory
    Yang, Ying
    Shao, Xuehang
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION APPLICATIONS (ICCIA 2012), 2012, : 1179 - 1182
  • [47] KEY MANAGEMENT PROCESS ON THE HARDWARE CRYPTOGRAPHIC MODULE IN THE CLOUD COMPUTING
    Delgado Barroso, John Manuel
    Joyanes Aguilar, Luis
    Garcia Gundin, Pablo
    KEOD 2010: Proceedings of the International Conference on Knowledge Engineering and Ontology Development, 2010, : 493 - 496
  • [48] KEY ISSUES IN CLOUD SIMULATION PLATFORM BASED ON CLOUD COMPUTING
    Ren, Lei
    Zhang, Lin
    Zhang, Yabin
    Luo, Yongliang
    Li, Qian
    23RD EUROPEAN MODELING & SIMULATION SYMPOSIUM, EMSS 2011, 2011, : 502 - 507
  • [49] Reliable Migration Module in Trusted Cloud based on Security Level - Design and Implementation
    Chen, Ying
    Shen, Qingni
    Sun, Pengfei
    Li, Yangwei
    Chen, Zhong
    Qing, Sihan
    2012 IEEE 26TH INTERNATIONAL PARALLEL AND DISTRIBUTED PROCESSING SYMPOSIUM WORKSHOPS & PHD FORUM (IPDPSW), 2012, : 2230 - 2236
  • [50] Research on Security of the Extended SSL/TLS Protocol Based on Trusted Platform Module
    Yu, Yue
    Sun, Hao
    Yu, Fajiang
    Kong, Yanan
    ASIA-PACIFIC YOUTH CONFERENCE ON COMMUNICATION TECHNOLOGY 2010 (APYCCT 2010), 2010, : 861 - 866