Proof of retrieval and ownership protocols for enterprise-level data deduplication

  • Authors:
  • Fatema Rashid;Ali Miri;Isaac Woungang

  • Affiliations:
  • Ryerson University, Toronto, Ontario, Canada;Ryerson University, Toronto, Ontario, Canada;Ryerson University, Toronto, Ontario, Canada

  • Venue:
  • CASCON '13 Proceedings of the 2013 Conference of the Center for Advanced Studies on Collaborative Research
  • Year:
  • 2013

Quantified Score

Hi-index 0.00

Visualization

Abstract

The cloud computing paradigm is emerging as the next big thing in the world of information technology. Cloud technology offers a completely new set of benefits and savings in terms of computational costs, storage costs, bandwidth and transmission costs to its users. Cloud storage represents one of the most popular cloud services used. Data deduplication is a promising practice which facilitates saving high volumes of storage by allowing the cloud provider to store only a single copy of duplicated data. Client-side data deduplication offers additional savings in terms of bandwidth and storage. Applying data deduplication across enterprises also allows the cloud storage providers to apply data deduplication across users from different domains, providing additional savings. However, some of the advantages of cloud storage may be lost if additional steps are not taken to address some of the security and privacy issues associated with remotely stored data. Since users outsource their data to the cloud, they have to ensure the integrity of their data and its privacy from the cloud storage provider who now has complete access to it. In this paper, we present a solution for assuring data integrity in terms of proof of retrievability and ownership in the context of cross-user client-side data deduplication for medium- and small-sized enterprises. We propose a secure scheme which enables cloud service users to run their proof of retrievability with minimum storage and computational overheads in the case of honest-but-curious cloud storage providers. At the same time, the cloud storage provider will also be able to save digital storage by practising cross-enterprise data deduplication. We extend our scheme to include a proof of ownership scheme to assist the cloud in authenticating the user as the owner of the data before releasing it. Our scheme does not introduce any additional structural or storage overheads to either of the parties.