• DocumentCode
    652214
  • Title

    A Mutual Nonrepudiation Protocol for Cloud Storage with Interchangeable Accesses of a Single Account from Multiple Devices

  • Author

    Gwan-Hwan Hwang ; Jenn-Zjone Peng ; Wei-Sian Huang

  • Author_Institution
    Dept. of Comput. Sci. & Inf. Eng., Nat. Taiwan Normal Univ., Taipei, Taiwan
  • fYear
    2013
  • fDate
    16-18 July 2013
  • Firstpage
    439
  • Lastpage
    446
  • Abstract
    Obtaining mutual nonrepudiation between the user and service provider is crucial in cloud storage. One of the solutions for mutual nonrepudiation is based on logging attestations, which are signed messages. For every request, clients and service provider exchange attestations. These attestations will be used in an auditing protocol to verify their behavior. The chain-hashing scheme chains attestations and stores them in service provider for supporting write serializability and read freshness of files. However, the chain-hashing scheme is inefficient when files in an account can be accessed by multiple client devices interchangeably. In this paper we first show that the chain-hashing scheme cannot resist roll-back attack from service provider unless client devices keep all the attestations or there exists a way to broadcast the last attestation to all the client devices. We propose a scheme that can guarantee mutual nonrepudiation between the user and service provider without requiring the client devices to exchange any messages, and each client device only has to store the last attestation it received. We also propose how to apply the hash tree to remove accumulated attestations. The results from related experiments demonstrate the feasibility of the proposed scheme. A service provider of cloud storage can use the proposed scheme to provide a mutual nonrepudiation guarantee in their service-level agreement.
  • Keywords
    cloud computing; protocols; security of data; auditing protocol; chain-hashing scheme; client devices; cloud storage; hash tree; interchangeable accesses; logging attestations; multiple client devices; multiple devices; mutual nonrepudiation protocol; service provider; service-level agreement; signed messages; Cloud computing; Cryptography; Digital signatures; Frequency shift keying; Performance evaluation; Protocols; Nonrepudiation; SLA; cloud security; cloud storage; hash tree; service-level agreement;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Trust, Security and Privacy in Computing and Communications (TrustCom), 2013 12th IEEE International Conference on
  • Conference_Location
    Melbourne, VIC
  • Type

    conf

  • DOI
    10.1109/TrustCom.2013.55
  • Filename
    6680872