项目名称: 云数据安全审计的理论模型与新方法研究
项目编号: No.U1405254
项目类型: 联合基金项目
立项/批准年度: 2015
项目学科: 管理科学
项目作者: 黄永峰
作者单位: 清华大学
项目金额: 245万元
中文摘要: 如何正确地评价云数据的安全风险、增强用户与云服务方间的互信,是云计算安全领域的一项具有挑战性的课题。项目拟通过研究云数据安全审计的理论和新方法,提升云平台的数据安全保障能力和数据安全监管服务,增强用户对云存储的信任度。项目将围绕云数据安全审计理论模型的科学性和海量云数据审计计算的高效性两大科学问题展开,研究内容包括云数据安全审计理论模型、云数据存储安全审计方法、隐私安全审计方法、操作行为安全审计方法以及原型系统研发等五个方面。项目将在审计模型的多模式架构、按需审计机制及协同审计机制三个方面进行系统创新,在面向归档数据的基于水印标记和秘钥控制的存储安全审计、面向更新数据的基于双线性签名和同态认证机制的存储安全审计、面向加密数据的可监督存储安全审计、基于第三方水印协议的隐私安全审计以及审计日志完整性验证等五项关键技术上取得突破,并在论文发表、专利申请和人才培养等方面取得具有国际水平的研究成果。
中文关键词: 云计算;云计算安全;云存储;云数据安全;数字水印
英文摘要: How to evaluate security risks of cloud data exactly and enhance mutual trust between users and cloud servers, is a challenging research topic in cloud computing security. In this project, we are devoted to promote the guarantee capacity and supervision services of data security in the cloud platform by studying theories and new methods for cloud data security auditing (CDSA). This project centers around two important scientific problems, i.e., the scientificity of the theoretical model for CDSA and high efficiency of auditing computing for massive cloud data, and the main research contents include theoretical model for CDSA, the auditing methods for cloud data storage security, the auditing methods for privacy security, the auditing methods for operation behaviors, and the development of the CDSA prototype system. The expected innovations involve the multimode architecture of auditing model, auditing-on-demand mechanism and co- auditing mechanism. It is also planned to achieve breakthroughs in five key techniques, namely, storage security auditing based on watermark and key control for archived data, storage security auditing based on bilinear signature and homomorphic authenticator for data updating, storage security auditing with supervision for encrypted data, privacy security auditing based on the third-party watermarking protocol, and integrality verifying for auditing records. Moreover, world-class research work will be carried out in paper publication, patent application, personnel training and so on.
英文关键词: Cloud Computing;Cloud Computing Security;Cloud Storage;Cloud Data Security ;Digital Watermarking