Open Access Open Access  Restricted Access Subscription Access

The Centrifuge of Cloud Service: Separated Cryptographic and Ciphered-storage Services

Zheng-Yun Zhuang,
Yi-Chang Hsu,
Hsing-Hua Liu,
Chien-Hsing Wu,

Abstract


This study proposes a business model to provision a security-enabled cloud via splitting cryptographic and cipher-storage sub-services off from the main cloud service, being independently operated by other SPs. The security/privacy enhancements of the model over the existing approaches are proved progressively but cogently. As such, the model can alleviate the improper user data disclosure risk, raise the privacy preservation of sensitive user information and therefore, mitigate the two information-leaking threats. The interoperability (among the centrifuged services) and migration issues (i.e., seamless system transferring and SLA amending) are illustrated and studied by using the extremely security-sensitive e-banking cloud service example.

Keywords


service operation risk management; security service and privacy; distributed cloud systems organizing principle; database and storage security; management and querying of encrypted data; cryptography and key management

Citation Format:
Zheng-Yun Zhuang, Yi-Chang Hsu, Hsing-Hua Liu, Chien-Hsing Wu, "The Centrifuge of Cloud Service: Separated Cryptographic and Ciphered-storage Services," Communications of the CCISA, vol. 22, no. 4 , pp. 39-64, Oct. 2016.

Full Text:

PDF

Refbacks

  • There are currently no refbacks.





Published by Chinese Cryptology and Information Security Association (CCISA), Taiwan, R.O.C
CCCISA Editorial Office, No.1, Sec. 1, Shennong Rd., Yilan City, Yilan County 260, Taiwan (R.O.C.)
E-mail: ccisa.editor@gmail.com