Cargando…

A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP)

Data Integrity Auditing (DIA) is a security service for verifying the integrity of outsourced data in Public Cloud Storage (PCS) by users or by Third-Party Auditors (TPAs) on behalf of the users. This paper proposes a novel DIA framework, called DIA-MTTP. The major novelty of the framework lies in t...

Descripción completa

Detalles Bibliográficos
Autores principales: Almarwani, Reem, Zhang, Ning, Garside, James
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Public Library of Science 2021
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7790547/
https://www.ncbi.nlm.nih.gov/pubmed/33412563
http://dx.doi.org/10.1371/journal.pone.0244731
_version_ 1783633447928987648
author Almarwani, Reem
Zhang, Ning
Garside, James
author_facet Almarwani, Reem
Zhang, Ning
Garside, James
author_sort Almarwani, Reem
collection PubMed
description Data Integrity Auditing (DIA) is a security service for verifying the integrity of outsourced data in Public Cloud Storage (PCS) by users or by Third-Party Auditors (TPAs) on behalf of the users. This paper proposes a novel DIA framework, called DIA-MTTP. The major novelty of the framework lies in that, while providing the DIA service in a PCS environment, it supports the use of third parties, but does not require full trust in the third parties. In achieving this property, a number of ideas also have been embedded in the design. These ideas include the use of multiple third parties and a hierarchical approach to their communication structure making the service more suited to resource-constrained user devices, the provision of two integrity assurance levels to balance the trade-off between security protection levels and the costs incurred, the application of a data deduplication measure to both new data and existing data updates to minimise the number of tags (re-)generated. In supporting the dynamic data and deduplication measure, a distributed data structure, called Multiple Mapping Tables (M2T), is proposed. Security analysis indicates that our framework is secure with the use of untrusted third parties. Performance evaluation indicates that our framework imposes less computational, communication and storage overheads than related works.
format Online
Article
Text
id pubmed-7790547
institution National Center for Biotechnology Information
language English
publishDate 2021
publisher Public Library of Science
record_format MEDLINE/PubMed
spelling pubmed-77905472021-01-27 A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP) Almarwani, Reem Zhang, Ning Garside, James PLoS One Research Article Data Integrity Auditing (DIA) is a security service for verifying the integrity of outsourced data in Public Cloud Storage (PCS) by users or by Third-Party Auditors (TPAs) on behalf of the users. This paper proposes a novel DIA framework, called DIA-MTTP. The major novelty of the framework lies in that, while providing the DIA service in a PCS environment, it supports the use of third parties, but does not require full trust in the third parties. In achieving this property, a number of ideas also have been embedded in the design. These ideas include the use of multiple third parties and a hierarchical approach to their communication structure making the service more suited to resource-constrained user devices, the provision of two integrity assurance levels to balance the trade-off between security protection levels and the costs incurred, the application of a data deduplication measure to both new data and existing data updates to minimise the number of tags (re-)generated. In supporting the dynamic data and deduplication measure, a distributed data structure, called Multiple Mapping Tables (M2T), is proposed. Security analysis indicates that our framework is secure with the use of untrusted third parties. Performance evaluation indicates that our framework imposes less computational, communication and storage overheads than related works. Public Library of Science 2021-01-07 /pmc/articles/PMC7790547/ /pubmed/33412563 http://dx.doi.org/10.1371/journal.pone.0244731 Text en © 2021 Almarwani et al http://creativecommons.org/licenses/by/4.0/ This is an open access article distributed under the terms of the Creative Commons Attribution License (http://creativecommons.org/licenses/by/4.0/) , which permits unrestricted use, distribution, and reproduction in any medium, provided the original author and source are credited.
spellingShingle Research Article
Almarwani, Reem
Zhang, Ning
Garside, James
A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP)
title A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP)
title_full A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP)
title_fullStr A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP)
title_full_unstemmed A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP)
title_short A novel approach to data integrity auditing in PCS: Minimising any Trust on Third Parties (DIA-MTTP)
title_sort novel approach to data integrity auditing in pcs: minimising any trust on third parties (dia-mttp)
topic Research Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7790547/
https://www.ncbi.nlm.nih.gov/pubmed/33412563
http://dx.doi.org/10.1371/journal.pone.0244731
work_keys_str_mv AT almarwanireem anovelapproachtodataintegrityauditinginpcsminimisinganytrustonthirdpartiesdiamttp
AT zhangning anovelapproachtodataintegrityauditinginpcsminimisinganytrustonthirdpartiesdiamttp
AT garsidejames anovelapproachtodataintegrityauditinginpcsminimisinganytrustonthirdpartiesdiamttp
AT almarwanireem novelapproachtodataintegrityauditinginpcsminimisinganytrustonthirdpartiesdiamttp
AT zhangning novelapproachtodataintegrityauditinginpcsminimisinganytrustonthirdpartiesdiamttp
AT garsidejames novelapproachtodataintegrityauditinginpcsminimisinganytrustonthirdpartiesdiamttp