Data-sharing scheme shows the way towards low-cost, flexible and secure cloud storage

Aug 14, 2013
Data storage: Maintaining privacy on the cloud
A data sharing scheme involving an encryption key manager could make storage on the cloud secure as well as searchable. Credit: iStockphoto/Thinkstock

Wider adoption of cloud storage services by organizations has been hindered by security and privacy issues. A consequence of storing data on the cloud is that, by its very nature, the storage infrastructure is not owned by the same organization that owns the data. In addition, the data of one user is stored along with that of many others. Traditional schemes for ensuring security can only protect data privacy by sacrificing convenient operations such as searching and sharing.

Now, Shu Qin Ren and his colleague Khin Mi Mi Aung at the A*STAR Data Storage Institute in Singapore have devised a scheme that would not only allow organizations to store data on the cloud without loss of privacy but also permit searching and sharing of the data. The system is able to preserve the benefit of the cloud's specialized low-cost storage infrastructure while overcoming its current privacy and flexibility limitations. "The scheme may potentially push forward the wider adoption of cloud storage usage for organizations," says Ren.

The solution proposed by the researchers involves a central 'key manager', who specifically manages data authentication and access authorization. In their scheme, data stored on the cloud is encrypted by its owner and hence is indecipherable to anyone else—including the cloud storage provider. A required to unlock the encryption is generated and kept by the owner, who also determines an for other users. This policy is implemented by the key manager, who generates a second access key, which is then passed back to the owner. Next, the owner wraps the original in this second layer of protection. The key manager is then able to pass on the second 'public' key to authorized third parties to allow them to access the data.

Under traditional privacy schemes, the owner manages both the encryption of and access to their data. Sharing with a third party typically involves retrieval and of the data by the owner and therefore some loss of privacy. Under Ren and Aung's scheme—entitled 'Privacy Preserved Data Sharing'—the third party only deals with the key manager and, after authorization, receives the public key without interacting with the data's owner, thus allowing privacy to be maintained.

"The research team is now building a secure data searching and sharing prototype to test on structured data such as in databases," says Ren. "The next step is to support unstructured data."

Explore further: Google DeepMind acquisition researchers working on a Neural Turing Machine

More information: Ren, S. Q. & Aung, K. M. M. PPDS: Privacy Preserved Data Sharing scheme for cloud storage, International Journal of Advancements in Computing Technology 4, 493–499 (2012). www.aicit.org/ijact/global/pap… l?jname=IJACT&q=1294

add to favorites email to friend print save as pdf

Related Stories

The trustworthy cloud

Mar 07, 2012

Not a week goes by without reports on security gaps, data theft or hacker attacks. Both businesses and private users are becoming increasingly uneasy. However, when it comes to technologies like cloud computing, trust and ...

Head for the clouds, feet firmly on the ground

Mar 05, 2012

Computer engineers in the US writing in the International Journal of Communication Networks and Distributed Systems have reviewed the research literature to get a clear picture of cloud computing, its adoption, use and th ...

Recommended for you

Saving lots of computing capacity with a new algorithm

Oct 29, 2014

The control of modern infrastructure such as intelligent power grids needs lots of computing capacity. Scientists of the Interdisciplinary Centre for Security, Reliability and Trust (SnT) at the University of Luxembourg have ...

User comments : 0

Please sign in to add a comment. Registration is free, and takes less than a minute. Read more

Click here to reset your password.
Sign in to get notified via email when new comments are made.