International Peer-Reviewed JournalOpen AccessISSN 2456-8880
irejournals@gmail.com+91-7433024337

Home / Current Issue / Paper 1700356

1700356 Vol 1 · Issue 9 Download Paper

Two-Factor Data Security Protection Mechanism For Cloud Storage System

Chilaka Hari Krishna Devarapalli BhanuDhar Buraga Rakesh

Subject area: Science,Engineering and Technology  ·  Area of research: Computer Engineering

Abstract

Here, we propose a two-factor data security protection mechanism with factor revocability for cloud storage system. Our system allows a sender to send an encrypted message to a receiver through a cloud storage server. The sender only needs to know the identity of the receiver but no other information (such as its public key or its certificate). The receiver needs to possess two things in order to decrypt the cipher text. The first thing is his/her secret key stored in the computer. The second thing is a unique personal security device which connects to the computer. It is impossible to decrypt the cipher text without either piece. More importantly, once the security device is stolen or lost, this device is revoked. It cannot be used to decrypt any cipher text. This can be done by the cloud server which will immediately execute some algorithms to change the existing cipher text to be un-decryptable by this device. This process is completely transparent to the sender. Furthermore, the cloud server cannot decrypt any cipher text at any time. The security and efficiency analysis show that our system is not only secure but also practical.

References

[1] A. Akavia, S. Goldwasser, and V. Vaikuntanathan, “Simultaneous hardcore bits and cryptography against memory attacks,” in Proc. 6th Theory Cryptography Conf., 2009, pp. 474–495.

[2] S. S. Al-Riyami and K. G. Paterson, “Certificateless public key cryptography,” in Proc. 9th Int. Conf. Theory Appl. Cryptol., 2003, pp. 452–473.

[3] M. H. Au, J. K. Liu, W. Susilo, and T. H. Yuen, “Certificate based (linkable) ring signature,” in Proc. Inf. Security Practice Experience Conf., 2007, pp. 79–92.

[4] M. H. Au, Y. Mu, J. Chen, D. S. Wong, J. K. Liu, and G. Yang, “Malicious KGC attacks in certificateless cryptography,” in Proc. 2nd ACM Symp. Inf., Comput. Commun . Security, 2007, pp. 302–311.

[5] M. Blaze, G. Bleumer, and M. Strauss, “Divertible protocols and atomic proxy cryptography,” in Proc. Int. Conf. Theory Appl. Cryp-tographic Techn., 1998, pp. 127– 144.

[6] A. Boldyreva, V. Goyal, and V. Kumar, “Identity-based encryp-tion with efficient revocation,” in Proc. ACM Conf. Comput. Com-mun. Security, 2008, pp. 417–426.

[7] D. Boneh, X. Ding, and G. Tsudik, “Fine- grained control of secu-rity capabilities,” ACM Trans. Internet Techn., vol. 4, no. 1, pp. 60– 82, 2004.

[8] D. Boneh and M. Franklin, “Identity-based encryption from the Weil pairing,” in Proc. 21st Annu. Int. Cryptol. Conf., 2001, pp. 213– 229.

[9] R. Canetti and S. Hohenberger, “Chosen- ciphertext secure proxy re-encryption,” in Proc. ACM Conf. Comput. Commun. Security, 2007, pp. 185–194.

[10] H. C. H. Chen, Y. Hu, P. P. C. Lee, and Y. Tang, “NCCloud: A net-work-coding-based storage system in a cloud-of-clouds,” IEEE Trans. Comput., vol. 63, no. 1, pp. 31–44, Jan. 2014.

[11] S. S. M. Chow, C. Boyd, and J. M. G. Nieto, “Security-mediated certificateless cryptography,” in Proc. 9th Int. Conf. Theory Practice Public-Key Cryptography, 2006, pp. 508–524.

[12] C.-K. Chu, S. S. M. Chow, W.-G. Tzeng, J. Zhou, and R. H. Deng, “Key-aggregate cryptosystem for scalable data sharing in cloud storage,” IEEE Trans. Parallel Distrib. Syst., vol. 25, no. 2, pp. 468– 477, Feb. 2014.

[13] C.-K. Chu and W.-G. Tzeng, “Identity-based proxy re-encryption without random oracles,” in Proc. 10th Int. Con. Inf. Security, 2007, pp. 189–202.

[14] R. Cramer and V. Shoup, “Design and analysis of practical publickey encryption schemes secure against adaptive chosen ciphertext attack,” SIAM J. Comput., vol. 33, no. 1, pp. 167–226, Jan. 2004.

[15] Y. Dodis, Y. T. Kalai, and S. Lovett, “On cryptography with auxiliary input,” in Proc. 41st Annu. ACM Symp. Theory Comput., 2009, pp. 621–630.

[16] Y. Dodis, J. Katz, S. Xu, and M. Yung, “Key- insulated public key cryptosystems,” in Proc. Int. Conf. Theory Appl. Cryptographic Techn., 2002, pp. 65–82.

[17] Y. Dodis, J. Katz, S. Xu, and M. Yung, “Strong key-insulated signature schemes,” in Proc. Int. Conf. Theory Appl. Cryptographic Techn., 2003, pp. 130–144.

[18] L. Ferretti, M. Colajanni, and M. Marchetti, “Distributed, concurrent, and independent access to encrypted cloud databases,” IEEE Trans. Parallel Distrib. Syst., vol. 25, no. 2, pp. 437–446, Feb. 2014.

[19] C. Gentry, “Certificate-based encryption and the certificate revocation problem,” in Proc. Int. Conf. Theory Appl. Cryptographic Techn., 2003, pp. 272–293.

[20] M. Green and G. Ateniese, “Identity-based proxy re-encryption,” in Proc. 5th Int. Conf. Appl. Cryptography Netw. Security, 2007, pp. 288–306.

How to cite this paper

Chilaka Hari Krishna, Devarapalli BhanuDhar, Buraga Rakesh "Two-Factor Data Security Protection Mechanism For Cloud Storage System" Iconic Research And Engineering Journals Volume 1 Issue 9 2018 Page 157-161
Chilaka Hari Krishna, Devarapalli BhanuDhar, Buraga Rakesh "Two-Factor Data Security Protection Mechanism For Cloud Storage System" Iconic Research And Engineering Journals, vol. 1, no. 9, Mar. 2018
Chilaka Hari Krishna, Devarapalli BhanuDhar, Buraga Rakesh (2018). Two-Factor Data Security Protection Mechanism For Cloud Storage System. Iconic Research And Engineering Journals, 1(9).
Chilaka Hari Krishna, Devarapalli BhanuDhar, Buraga Rakesh "Two-Factor Data Security Protection Mechanism For Cloud Storage System" Iconic Research And Engineering Journals, vol. 1, no. 9, Mar. 2018.
@article{1700356,
      author = {Chilaka Hari Krishna, Devarapalli BhanuDhar, Buraga Rakesh},
      title = {Two-Factor Data Security Protection Mechanism For Cloud Storage System},
      journal = {Iconic Research And Engineering Journals},
      year = {2018},
      volume = {1},
      number = {9},
      pages = {157-161},
      issn = {2456-8880},
      url = {https://www.irejournals.com/formatedpaper/1700356.pdf},
      abstract = {Here, we propose a two-factor data security protection mechanism with factor revocability for cloud storage system. Our system allows a sender to send an encrypted message to a receiver through a cloud storage server. The sender only needs to know the identity of the receiver but no other information (such as its public key or its certificate). The receiver needs to possess two things in order to decrypt the cipher text. The first thing is his/her secret key stored in the computer. The second thing is a unique personal security device which connects to the computer. It is impossible to decrypt the cipher text without either piece. More importantly, once the security device is stolen or lost, this device is revoked. It cannot be used to decrypt any cipher text. This can be done by the cloud server which will immediately execute some algorithms to change the existing cipher text to be un-decryptable by this device. This process is completely transparent to the sender. Furthermore, the cloud server cannot decrypt any cipher text at any time. The security and efficiency analysis show that our system is not only secure but also practical.},
      month = {March},
  }