项目名称: 云计算平台的安全性增强技术研究
项目编号: No.61272543
项目类型: 面上项目
立项/批准年度: 2013
项目学科: 自动化技术、计算机技术
项目作者: 许峰
作者单位: 河海大学
项目金额: 80万元
中文摘要: 云计算作为未来主流的信息技术,正以其动态服务的技术特征,按需供给的商业模式引领着信息产业的重大变革,同时也给信息安全领域带来了巨大的冲击。在人们准备迎接云计算的今天,安全问题已成为它进一步发展与应用的最大障碍。工业界与学术界都将云安全问题列为首要解决的研究课题之一。本项目围绕云计算应用中亟待解决的关键安全问题展开研究,将提出隐私保护的身份联合管理方案,实现云环境下用户身份的联合管理;提出云环境下基于层次密钥的可调节访问控制机制,实现云中资源高效、合理、安全地分配;提出云环境下公开可验证的动态数据安全存储方案,满足用户对数据高效存取、公开验证及动态更新的需求;提出基于属性验证的可信云计算平台,解决云服务商与用户之间的信任问题。
中文关键词: 隐私保护;一次交互认证;层次密钥;Merkle哈希树;可信属性验证
英文摘要: As the main trend information technology in the future, cloud computing is characterized by its dynamical service techniques and on-demand business model, leading the tremendous revolution of information industry. It also has made considerable impact on information security. Nowadays the security and privacy risks have become the biggest hurdle to the further adoption and development of cloud computing. Cloud security has been weighted as one of the most imperative research subject in both academia and industry. In this project, we are focusing on the crucial security issues in the applications of cloud computing: To realize federated management of users'identity in cloud environment, a Privacy-Preserving Federated Identity Management Scheme will be proposed; To achieve the resources in cloud being efficiently and securely allocated, a Modified Access Control Mechanism based on Hierarchical Key Assignment for Cloud Computing Environment will be proposed; To satisfy the consumers'demands on accessing data efficiently, verifying the integrity of data publicly and updating data dynamically, a Secure Storage Scheme enabling Public Verifiability and Data Dynamics for Cloud Computing Environment will be proposed; To resolve the confidence concern between the cloud service provider and the consumer, a Trusted Cloud Com
英文关键词: Privacy-preserving;One-time Interacting Authentication;Hierarchical Key;Merkle Hash Tree;Trusted Property Verification