为验证云存储服务提供商是否完整地存储了客户的数据,修复了一个混合云环境下协同的可证明数据持有方案存在的安全漏洞,提出了一个改进的混合云环境下协同的可证明数据持有方案。改进方案能够抵抗云存储服务提供商的伪造攻击,利用分层Hash索引和同态验证响应技术,将多个云存储服务提供商的响应消息聚合为一个消息。与原方案相比,改进方案降低了计算开销和通信开销,且具有完备性、可靠性和零知识性等属性,是一个可行的完整性检查方案。
This paper presents a method to correct a flaw in a cooperative provable data possession scheme for multicloud storage that allows clients to verify that the cloud service provider properly stored the client's data. The scheme also resists forgery attacks on cloud service providers. The scheme is based on the homomorphic verifiable response and the Hash index hierarchy. The responses from multiple cloud service providers can be combined into a single response. The computation and communication overhead for this scheme are less than those of the original scheme. The scheme satisfies completeness, knowledge soundness and zero-knowledge properties. Therefore, this scheme provides a practicable method for checking data integrity.