• DocumentCode
    61620
  • Title

    Cost-Effective Authentic and Anonymous Data Sharing with Forward Security

  • Author

    Xinyi Huang ; Liu, Joseph K. ; Shaohua Tang ; Yang Xiang ; Kaitai Liang ; Li Xu ; Jianying Zhou

  • Author_Institution
    Fujian Provincial Key Lab. of Network Security & Cryptology, Fujian Normal Univ., Fuzhou, China
  • Volume
    64
  • Issue
    4
  • fYear
    2015
  • fDate
    April 1 2015
  • Firstpage
    971
  • Lastpage
    983
  • Abstract
    Data sharing has never been easier with the advances of cloud computing, and an accurate analysis on the shared data provides an array of benefits to both the society and individuals. Data sharing with a large number of participants must take into account several issues, including efficiency, data integrity and privacy of data owner. Ring signature is a promising candidate to construct an anonymous and authentic data sharing system. It allows a data owner to anonymously authenticate his data which can be put into the cloud for storage or analysis purpose. Yet the costly certificate verification in the traditional public key infrastructure (PKI) setting becomes a bottleneck for this solution to be scalable. Identity-based (ID-based) ring signature, which eliminates the process of certificate verification, can be used instead. In this paper, we further enhance the security of ID-based ring signature by providing forward security: If a secret key of any user has been compromised, all previous generated signatures that include this user still remain valid. This property is especially important to any large scale data sharing system, as it is impossible to ask all data owners to reauthenticate their data even if a secret key of one single user has been compromised. We provide a concrete and efficient instantiation of our scheme, prove its security and provide an implementation to show its practicality.
  • Keywords
    cloud computing; data analysis; digital signatures; public key cryptography; storage management; ID-based ring signature; PKI; analysis purpose; anonymous data sharing; certificate verification; cloud computing; cost-effective authentic data sharing; forward security; identity-based ring signature; public key infrastructure; shared data analysis; storage; Data handling; Educational institutions; Information management; Public key; Smart grids; Authentication; cloud computing; data sharing; forward security; smart grid;
  • fLanguage
    English
  • Journal_Title
    Computers, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    0018-9340
  • Type

    jour

  • DOI
    10.1109/TC.2014.2315619
  • Filename
    6782632