A framework with data-centric accountability and auditability for cloud storage

被引:0
|
作者
Hao Jin
Ke Zhou
Yan Luo
机构
[1] Wuhan Institute of Technology,School of Computer Science and Engineering
[2] Wuhan Institute of Technology,Wuhan National Lab for Optoelectronics, School of Computer Science and Technology
[3] University of Massachusetts,Department of Electrical and Computer Engineering
来源
关键词
Accountability; Auditing; Arbitration; Record history; Misbehavior;
D O I
暂无
中图分类号
学科分类号
摘要
The cross-domain characteristic of cloud storage service decides that both users and service providers have limited trust toward each other. Judging from a real-world perspective, both parties may have the motivation to engage in dishonest activity for monetary reasons. Hence, accountability should be seriously treated in designing storage systems with practical security. This paper proposes a general accountable framework for cloud storage in a data-centric manner. We design non-repudiable action records to log all data-related access behavior, and through later auditing to detect possible misbehavior. To resist replay attacks, we adopt signature exchange idea to let both parties verify and maintain different metadata signatures signed by the other party. For potential disputes about data content or access records, we also design arbitration protocol to fairly and efficiently settle the dispute and find out the cheating party. Experimental evaluation of our prototype shows that cryptographic cost, storage overhead and throughput are reasonable and acceptable.
引用
收藏
页码:5903 / 5926
页数:23
相关论文
共 50 条
  • [1] A framework with data-centric accountability and auditability for cloud storage
    Jin, Hao
    Zhou, Ke
    Luo, Yan
    [J]. JOURNAL OF SUPERCOMPUTING, 2018, 74 (11): : 5903 - 5926
  • [2] A Data-Centric Internet of Things Framework Based on Azure Cloud
    Liu, Yu
    Hassan, Kahin Akram
    Karlsson, Magnus
    Pang, Zhibo
    Gong, Shaofang
    [J]. IEEE ACCESS, 2019, 7 : 53839 - 53858
  • [3] RDF Data-Centric Storage
    Levandoski, Justin J.
    Mokbel, Mohamed F.
    [J]. 2009 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, VOLS 1 AND 2, 2009, : 911 - 918
  • [4] Practical data-centric storage
    Ee, Cheng Tien
    Ratnasamy, Sylvia
    Shenker, Scott
    [J]. USENIX ASSOCIATION PROCEEDINGS OF THE 3RD SYMPOSIUM ON NETWORKED SYSTEMS DESIGN & IMPLEMENTATION (NSDI 06), 2006, : 325 - +
  • [5] Data-centric storage in sensornets
    Shenker, S
    Ratnasamy, S
    Karp, B
    Govindan, R
    Estrin, D
    [J]. ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2003, 33 (01) : 137 - 142
  • [6] Gaspar Data-Centric Framework
    Silva, Rui
    Sobral, J. L.
    [J]. HIGH PERFORMANCE COMPUTING FOR COMPUTATIONAL SCIENCE - VECPAR 2016, 2017, 10150 : 234 - 247
  • [7] Comprehensive Survey of Security Issues & Framework in Data-Centric Cloud Applications
    Department of Computer Applications, National Institute of Technology, Jamshedpur, India
    [J]. J. Eng. Sci. Technol. Rev, 2021, 1 (1-24): : 1 - 24
  • [8] Adaptive data replicas management based on active data-centric framework in cloud environment
    Chen, Lingfeng
    Hoang, Doan B.
    [J]. 2013 IEEE 15TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS & 2013 IEEE INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING (HPCC_EUC), 2013, : 101 - 108
  • [9] A Framework for Verifying Data-Centric Protocols
    Deng, Yuxin
    Grumbach, Stephane
    Monin, Jean-Francois
    [J]. FORMAL TECHNIQUES FOR DISTRIBUTED SYSTEMS, 2011, 6722 : 106 - 120
  • [10] A New Fog-Cloud Storage Framework with Transparency and Auditability
    Kim, Yeojin
    Kim, Donghyun
    Son, Junggab
    Wang, Wei
    Noh, YoungTae
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2018,