云存储模式的出现为海量海洋遥感影像的存储和管理带来了机遇,越来越多的用户选择将海洋遥感影像数据移植到云中,但云存储环境的开放性对海洋遥感影像数据的安全性提出了挑战。以保障云环境下海洋遥感敏感数据的安全性为前提,提出一种影像认证方案,将哈希函数与(k,n)门限秘密共享方法相结合,检测敏感区影像信息变化,并对加密前和恢复后的影像进行一致性验证,保护加密影像数据的机密性。同时,为避免n个子秘密中,因多于n-k个子秘密的篡改或丢失,造成敏感区影像不可恢复情况的发生,采用对敏感区影像进行分块的策略,对每个子影像块做进一步的秘密共享处理,以保证部分影像的无损恢复。实验对比分析表明,所提出的安全认证方案可以有效防止秘密恢复过程中的欺诈行为,同时可获得比传统方法更高的遥感影像云存储安全性。
The emergence of cloud storage model has brought new opportunities to the storage and management of massive ocean remote sensing images, and more and more users choose to transfer their image data into the cloud, which brings challenges for image data security and usability due to the open ness of cloud. We propose an image authentication scheme to protect the ocean remote sensing image confidentiality in cloud environment, which combines the Hash function with the (k, n) threshold secret sharing method to detect the changes of the image data in sensitive regions and verify the consistency between encrypted and recovered images. The sensitive-region image cannot be restored when more than n -k out of n sub-secrets get lost or tampered. To avoid this, we divide the sensitive region image into blocks, and implement secret sharing for each sub block, thus guaranteeing the lossless recovery of partial images and enhancing the availability of image data. Analysis on comparison experiments shows that the algorithm can effectively prevent fraud in the process of secret image recovery, and obtain higher cloud storage security for remote sensing images than traditional methods.