期刊导航

论文摘要

基于可信模块的云存储用户密钥管理机制研究

ResearchofKeyManagementBasedonTrustedModuleforCloudStorageUser

作者:赵波(武汉大学计算机学院;空天信息安全与可信计算教育部重点实验室);李逸帆(武汉大学计算机学院;空天信息安全与可信计算教育部重点实验室);米兰·黑娜亚提(新疆广播电视大学远程教育学院);费永康(武汉大学计算机学院;空天信息安全与可信计算教育部重点实验室)

Author:Zhao Bo(Computer School,WuhanUniv.;KeyLab.ofAerospaceInfo.SecurityandTrustedComputingofMinistryofEducation,WuhanUniv.);Li Yifan(Computer School,WuhanUniv.;KeyLab.ofAerospaceInfo.SecurityandTrustedComputingofMinistryofEducation,WuhanUniv.);MilanHeinayati(DistanceLearningCollege,XinjiangRadioandTVUniv.);Fei Yongkang(Computer School,WuhanUniv.;KeyLab.ofAerospaceInfo.SecurityandTrustedComputingofMinistryofEducation,WuhanUniv.)

收稿日期:2014-06-23          年卷(期)页码:2014,46(6):25-31

期刊名称:工程科学与技术

Journal Name:Advanced Engineering Sciences

关键字:云存储;隐私数据;可信硬件;密钥管理

Key words:cloudstorage;dataprivacy;trustedhardware;keymanagement

基金项目:国家重点基础研究发展计划资助项目(2014CB340600);国家自然科学基金重点项目(61332019);国家自然科学基金项目(61173138; 61272452);湖北省重点新产品新工艺研究开发项目(2012BAA03004)资助;企业合作项目(YB2012120174;YB2013110084)

中文摘要

针对目前对云存储用户隐私数据保护缺乏密钥保护的问题, 提出一种基于可信模块的云存储用户密钥管理机制, 通过引入可信硬件模块, 基于无证书密码学基本原理生成和存储用户密钥信息, 建立安全高效的密钥备份和恢复机制, 同时, 采用数据分割理论提高基于可信硬件模块密钥管理的数据保护效率。 描述了基于可信模块的密钥管理机制的实现方法, 并进行了安全性和效率测试分析。实验表明, 该机制具有很好的安全性和数据保护效率。

英文摘要

The current method of cloud storage data protection for user privacy is lack of the protection for keys. In order to solve this problem, a key management mechanism based on trusted module for cloud storage user was proposed. By introducing the trusted hardware module, a secure and efficient key backup and restore mechanism was established based on the basic principles of cryptography without a certificate to generate and store the user key information. Meanwhile, the efficiency of data protection was improved based on the theory of data segmentation. The implementation of key management based on trusted hardware module was described and detailed analysis focusing on security and efficiency was carried out. The experimental results showed that the mechanism can effectively protect the security of the users’ privacy data.

关闭

Copyright © 2020四川大学期刊社 版权所有.

地址:成都市一环路南一段24号

邮编:610065