Title
A framework with data-centric accountability and auditability for cloud storage.
Abstract
The cross-domain characteristic of cloud storage service decides that both users and service providers have limited trust toward each other. Judging from a real-world perspective, both parties may have the motivation to engage in dishonest activity for monetary reasons. Hence, accountability should be seriously treated in designing storage systems with practical security. This paper proposes a general accountable framework for cloud storage in a data-centric manner. We design non-repudiable action records to log all data-related access behavior, and through later auditing to detect possible misbehavior. To resist replay attacks, we adopt signature exchange idea to let both parties verify and maintain different metadata signatures signed by the other party. For potential disputes about data content or access records, we also design arbitration protocol to fairly and efficiently settle the dispute and find out the cheating party. Experimental evaluation of our prototype shows that cryptographic cost, storage overhead and throughput are reasonable and acceptable.
Year
DOI
Venue
2018
10.1007/s11227-018-2504-5
The Journal of Supercomputing
Keywords
Field
DocType
Accountability, Auditing, Arbitration, Record history, Misbehavior
Metadata,Computer security,Cryptography,Computer science,Service provider,Accountability,Arbitration,Cheating,Replay attack,Cloud storage,Distributed computing
Journal
Volume
Issue
ISSN
74
11
0920-8542
Citations 
PageRank 
References 
0
0.34
41
Authors
3
Name
Order
Citations
PageRank
Hao Jin1377.33
Ke Zhou245251.98
Yan Luo361.81