A Method for Data Access Control and Key Management in Mobile Cloud Storage Services
暂无分享,去创建一个
Cloud storage services are used for efficient sharing or synchronizing of user’s data across multiple mobile devices. Although cloud storages provide flexibility and scalability in storing data, security issues should be handled. Currently, typical cloud storage services offer data encryption for security purpose but we think such method is not secure enough because managing encryption keys by software and identifying users by simple ID and password are main defectives of current cloud storage services. We propose a secure data access method to cloud storage in mobile environment. Our framework supports hardware-based key management, attestation on the client software integrity, and secure key sharing across the multiple devices. We implemented our prototype using ARM TrustZone and TPM Emulator which is running on secure world of the TrustZone environment.
[1] Steven L. Kinney. Trusted Platform Module Basics: Using TPM in Embedded Systems (Embedded Technology) , 2006 .
[2] Ahmad Hamad,et al. Evaluation of the RC4 Algorithm for Data Encryption , 2006, Int. J. Comput. Sci. Appl..
[3] Jae-Bok Shin,et al. (A Secure Data Management Framework based on ARM TrustZone for Cloud Storage Services) , 2013 .
[4] Heiko Stamer,et al. A Software-Based Trusted Platform Module Emulator , 2008, TRUST.