TY - JOUR
T1 - The Centrifuge of Cloud Service: Separated Cryptographic and Ciphered-storage Services
AU - Zhuang, Zheng-Yun
AU - Hsu, Yi-Chang
AU - Liu, Hsing-Hua
AU - Wu, Chien-Hsing
PY - 2016
Y1 - 2016
N2 - This study proposes a business model to provision a security-enabled cloud via splitting cryptographic and cipher-storage sub-services off from the main cloud service, being independently operated by other SPs. The security/privacy enhancements of the model over the existing approaches are proved progressively but cogently. As such, the model can alleviate the improper user data disclosure risk, raise the privacy preservation of sensitive user information and therefore, mitigate the two information-leaking threats. The interoperability (among the centrifuged services) and migration issues (i.e., seamless system transferring and SLA amending) are illustrated and studied by using the extremely security-sensitive e-banking cloud service example.
AB - This study proposes a business model to provision a security-enabled cloud via splitting cryptographic and cipher-storage sub-services off from the main cloud service, being independently operated by other SPs. The security/privacy enhancements of the model over the existing approaches are proved progressively but cogently. As such, the model can alleviate the improper user data disclosure risk, raise the privacy preservation of sensitive user information and therefore, mitigate the two information-leaking threats. The interoperability (among the centrifuged services) and migration issues (i.e., seamless system transferring and SLA amending) are illustrated and studied by using the extremely security-sensitive e-banking cloud service example.
KW - service operation risk management
KW - security service and privacy
KW - distributed cloud systems organizing principle
KW - database and storage security
KW - management and querying of encrypted data
KW - cryptography and key management
M3 - Article
SN - 1729-6056
VL - 22
SP - 39
EP - 64
JO - 資訊安全通訊
JF - 資訊安全通訊
IS - 4
ER -