摘要
云存储系统数据管理权和所有权的分离导致数据安全和隐私保护难题。传统的基于单纯加密技术的云存储数据隐私保障机制在实际的数据操作过程中带来了较大的系统开销。为了以低开销实现云存储系统中异地托管数据的隐私保护机制,提出了一种基于数据分割与分级的云存储数据隐私保护机制。机制首先将数据合理分割为大小数据块;再分别将小块数据和大块数据部署在本地和异地;然后按数据不同的安全级别需求,联合采用数据染色和不同强度的数据加密技术进行数据染色或加密,以在保护云存储用户数据隐私的同时,提高灵活性,降低系统开销。
The data management and ownership separation in cloud storage systems lead to the difficulties of data securi ty and privacy protection. The traditional cloud storage data privacy protection mechanism based on simple encryption technologies brings larger extra-overhead in the actual process of data manipulation. In order to achieve low overhead of the data privacy protection mechanism {or cloud storage systems, this paper proposed a novel data privacy protection mechanism based on data partition and classification. The mechanism reasonably partitions the original data into two block: one is small, which is deployed locally, and the other one is large, which is deployed remotely, and then according to different security requirements of data, the data dyeing and data encryption technologies are adopted jointly in order to protect the cloud data privacy, improve flexibility and reduce overhead at the same time.
出处
《计算机科学》
CSCD
北大核心
2013年第2期98-102,共5页
Computer Science
基金
国家自然科学基金(61202004
61272084)
国家教育部高等学校博士学科点专项科研基金(20093223120001
20113223110003)
中国博士后科学基金(2011M500095)
江苏省自然科学基金(BK2011754
BK2009426)
江苏省博士后科研项目(1102103C)
江苏省高校自然科学研究计划(12KJB520007)
江苏省科技支撑计划(BE2009158)
信息安全国家重点实验室开放课题(03-01-1)资助
关键词
云存储
隐私保护
数据分割
数据分级
Cloud storage,Privacy protection,Data partition,Data classification