4.6 Article

A Hybrid Multi-Cloud Framework Using the IBBE Key Management System for Securing Data Storage

Journal

SUSTAINABILITY
Volume 14, Issue 20, Pages -

Publisher

MDPI
DOI: 10.3390/su142013561

Keywords

multi-clouds; storage security; client-side cryptography; key management

Funding

  1. King Saud University [RSP2022R459]

Ask authors/readers for more resources

This paper presents a multi-cloud framework for securing users' data from untrusted Cloud Service Providers. The framework uses client-side encryption and splits the data into parts that are encrypted and uploaded to different clouds. It also introduces a hybrid cryptographic approach for managing encryption keys and proves its security against attacks.
Information storage and access in multi-cloud environments have become quite prevalent. In this paper, a multi-cloud framework is presented that secures users' data. The primary goal of this framework is to secure users' data from untrusted Cloud Service Providers (CSPs). They can collude with other malicious users and can hand over users' data to these malicious users for their beneficial interests. In order to achieve this goal, the data are split into parts, and then each part is encrypted and uploaded to a different cloud. Therefore, client-side cryptography is used in this framework. For encrypting users' data, the BDNA encryption technique is used. This framework presents a hybrid cryptographic approach that uses Identity-based Broadcast Encryption (IBBE) for managing the keys of the symmetric key algorithm (BDNA) by encrypting them with the particular version of IBBE. The work presented in this research paper is the first practical implementation of IBBE for securing encryption keys. Earlier, IBBE was only used for securely broadcasting data across many users over a network. The security of this hybrid scheme was proved through Indistinguishable Chosen-Ciphertext Attacks. This double encryption process makes the framework secure against all insiders and malicious users' attacks. The proposed framework was implemented as a web application, and real-time storage clouds were used for storing the data. The workflow of the proposed framework is presented through screenshots of different working modules.

Authors

I am an author on this paper
Click your name to claim this paper and add it to your profile.

Reviews

Primary Rating

4.6
Not enough ratings

Secondary Ratings

Novelty
-
Significance
-
Scientific rigor
-
Rate this paper

Recommended

No Data Available
No Data Available