uCloud: a user-centric key management scheme for cloud data protection

نویسندگان

  • Yung-Wei Kao
  • Kuan-Ying Huang
  • Hui-Zhen Gu
  • Shyan-Ming Yuan
چکیده

One of the most challenging problems of cloud service solicitation is to persuade users to trust the security of cloud service and upload their sensitive data. Although cloud service providers can claim that their services are well-protected by elaborate encryption mechanisms, traditional cloud systems still cannot persuade the users that even if the cloud servers are compromised, the data are still securely protected. This study proposes uCloud, a user-centric key management scheme for cloud data protection, to solve this problem. uCloud utilises RSA and indirectly encrypts users’ data by users’ public keys, but stores the users’ private keys on neither servers nor users’ PCs; instead, the private keys are stored on users’ mobile devices and presented via two-dimensional (2D) barcode images when they are utilised to decrypt users’ sensitive data. In this manner, users’ data are safely protected even if the cloud servers are compromised. Also, uCloud provides users with the experience of managing visible private keys by storing the keys into mobile phones and displaying them via 2D barcodes. Moreover, three scenarios: personal storage, home surveillance and enterprise storage scenarios are proposed to present the practicability of uCloud. In addition, a hierarchical structure is designed for basic key backup and data sharing in the proposed scheme. www.ietdl.org

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Attribute-based Access Control for Cloud-based Electronic Health Record (EHR) Systems

Electronic health record (EHR) system facilitates integrating patients' medical information and improves service productivity. However, user access to patient data in a privacy-preserving manner is still challenging problem. Many studies concerned with security and privacy in EHR systems. Rezaeibagha and Mu [1] have proposed a hybrid architecture for privacy-preserving accessing patient records...

متن کامل

Procure Data Centre Sharing Scheme in Virtual Cloud Environment Using Cloudsim

Procure Data Centre (PDC) is a coming forth patient data-centric framework of data interchange, large scale data centric applications. In which the data is been outsourced to be stored to general IT providers, such as cloud providers and how to assure their private data while being stored in the cloud servers. To secure the information govern over entree to their own file, it is a hopeful metho...

متن کامل

Towards an Efficient and Secure Online Digital Rights Management Scheme in Cloud Computing

Streaming media is widely adopted by thousands of applications in cloud computing, how to effectively protect streaming media contents is a new challenge. In this paper, we propose an efficient online digital rights management (DRM) scheme supporting dynamic license in cloud computing. The content provider encrypts media content and outsources the encrypted content to cloud storage, while the u...

متن کامل

RESCUE: Reputation based Service for Cloud User Environment

Exceptional characteristics of Cloud computing has replaced all traditional computing. With reduced resource management and without in-advance investment, it has been victorious in making the IT world to migrate towards it. Microsoft announced its office package as Cloud, which can prevent people moving from Windows to Linux. As this drift is escalating in an exponential rate, the cloud environ...

متن کامل

Patient-Centric Secure Sharing of Personal Health Records in Cloud Storage

In a modern healthcare environment, personal health record(PHR) owners are willing to store and share electronic medical records via the cloud because of its ubiquity and on-demand self service. Secure and efficient data sharing scheme enable patients to have full control over their PHRs and at the same time provide confidentiality and authenticity of personal health data. Selective data sharin...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • IET Information Security

دوره 7  شماره 

صفحات  -

تاریخ انتشار 2013