基于Merkle树的安全云存储系统
作者:

Secure Cloud Storage System Based on Merkle Tree
Author:
  • 摘要
  • | |
  • 访问统计
  • |
  • 参考文献 [18]
  • | | | |
  • 文章评论
    摘要:

    随着云存储的普及, 越来越多的文件存储在云存储服务器中而不是用户的计算机中, 这使得用户失去了对数据的绝对控制权, 数据安全性难以保障. 为了解决这一问题, 本文提出了一种新的安全云存储系统. 这套系统在用户态实现, 可以直接架设在计算机的文件系统上, 对计算机硬件、软件要求都很低. 通过使用分组加密算法和Merkle-B+树的设计提供了端到端的数据加密保护、完整性检查和访问权限控制等功能. 本系统使用简单, 对于用户来说是完全透明的, 降低了用户的使用门槛. 对本系统的测试结果显示, 本系统架在NFS文件系统上时, 在大文件环境下表现出来的I/O性能下降约为5%, 这说明本系统在保证用户数据安全性、系统易用性的同时, 其性能也是较好的.

    Abstract:

    With the popularity of cloud storage, increasingly more files are stored in cloud storage servers rather than in users’ computers, which makes users lose absolute control over the data and data security difficult to guarantee. To solve this problem, this study proposes a secure cloud storage system. It is implemented in the user model and can be directly set up on the computer file system, with low requirements for computer hardware and software. Functions such as end-to-end data encryption protection, integrity check, and access control are provided through the block encryption algorithm and the design of Merkle-B+ tree. The system is simple to use and completely transparent to users, with a reduced user threshold. The test results of this system show that when it is mounted on the network file system (NFS), its input/output (I/O) performance in a large file environment is reduced by about 5%, which indicates that the system has good performance in addition to ensured user data security and system ease of use.

    参考文献
    [1] Vengala DVK, Kavitha D, Kumar APS. Three factor authentication system with modified ECC based secured data transfer: Untrusted cloud environment. Complex & Intelligent Systems, 2021, doi: 10.1007/s40747-021-00305-0.
    [2] 李思莉, 杨井荣, 苟强. 轻量级Web服务器的高并发技术研究与实现. 计算机技术与发展, 2020, 30(10): 75–78, 85. [doi: 10.3969/j.issn.1673-629X.2020.10.014
    [3] Prajapati P, Shah P. A review on secure data deduplication: Cloud storage security issue. Journal of King Saud University- Computer and Information Sciences, 2020.
    [4] 余海波, 陈洁, 张凯. 一种基于区块链的安全云存储方案设计. 计算机应用与软件, 2021, 38(4): 64–68. [doi: 10.3969/j.issn.1000-386x.2021.04.011
    [5] Miller EL, Long DDE, Freeman WE, et al. Strong security for network-attached storage. Proceedings of Conference on File and Storage Technologies. Monterey: USENIX, 2002: 1–13
    [6] O’Shanahan DP. CryptosFS: Fast cryptographic secure NFS [Master’s thesis]. Dublin: The University of Dublin, 2000.
    [7] 余宇劲, 凌捷. 基于多云存储的Android密钥管理技术. 计算机应用与软件, 2020, 37(9): 286–290. [doi: 10.3969/j.issn.1000-386x.2020.09.047
    [8] Kallahalla M, Riedel E, Swaminathan R, et al. Plutus: Scalable secure file sharing on untrusted storage. Proceedings of FAST’03 Conference on File and Storage Technologies. San Francisco: USENIX, 2003. 29–42.
    [9] 李晖, 孙文海, 李凤华, 等. 公共云存储服务数据安全及隐私保护技术综述. 计算机研究与发展, 2014, 51(7): 1397–1409
    [10] Blaze M. A cryptographic file system for unix. Proceedings of the 1st Conference on Computer and Communications Security. New York:ACM, 1993: 9–16
    [11] Fu KE. Group sharing and random access in cryptographic storage file systems [Master’s Thesis]. Massachusetts: Massachusetts Institute of Technology, 1999.
    [12] 薛矛, 薛巍, 舒继武, 等. 一种云存储环境下的安全存储系统. 计算机学报, 2015, 38(5): 987–998
    [13] Goh EJ, Shacham H, Modadugu N, et al. SiRiUS: Securing remote untrusted storage. Proceedings of Network and Distributed System Security Symposium. San Diego: NDSS, 2003. 131–145.
    [14] Merkle RC. A digital signature based on a conventional encryption function. Proceedings of Conference on the Theory and Application of Cryptographic Techniques. Santa Barbara: Springer, 1987. 369–378.
    [15] 傅颖勋, 罗圣美, 舒继武. 安全云存储系统与关键技术综述. 计算机研究与发展, 2013, 50(1): 136–145.
    [16] 邓彬, 成卫青. 基于改进慢启动算法的大文件快速传输. 计算机应用研究, 2020, 37(3): 860–863.
    [17] 张俊林, 查东辉. 增强云存储系统安全功能的方法探讨. 网络安全技术与应用, 2021, (4): 69–70.
    [18] 王铁滨, 杨晶, 齐秀丽. 基于属性加密的云存储安全技术. 电子技术与软件工程, 2021, (6): 259–260.
    相似文献
    引证文献
    网友评论
    网友评论
    分享到微博
    发 布
引用本文

郑李伟,王雪平.基于Merkle树的安全云存储系统.计算机系统应用,2022,31(4):81-90

复制
分享
文章指标
  • 点击次数:810
  • 下载次数: 1855
  • HTML阅读次数: 1367
  • 引用次数: 0
历史
  • 收稿日期:2021-06-14
  • 最后修改日期:2021-07-29
  • 在线发布日期: 2022-03-22
文章二维码
您是第11325615位访问者
版权所有:中国科学院软件研究所 京ICP备05046678号-3
地址:北京海淀区中关村南四街4号 中科院软件园区 7号楼305房间,邮政编码:100190
电话:010-62661041 传真: Email:csa (a) iscas.ac.cn
技术支持:北京勤云科技发展有限公司

京公网安备 11040202500063号