Privacy and Security in Data Storage Using Two Layer Encryption and MAC Verification
Ashly k.Achenkunju · IOSR Journal of Computer Engineering · 2014
For the privacy and security of data stored in data storage a new Two Layer Encryption (TLE) approach is developed.This technique performs an encryption at two layers based on some ACP(Access Control Policies)on the data owner as well as on the datastorage.The data owner and the data storage utilizes a key management scheme with the help of a key generating algorithmABGKM (Attribute Based Group Key Management)whereby the actual keys do not need to be distributed by the users.The single layer encryption approach using keyword search has some drawbacks such as the privacy of the identity attributes of the users is not taken into account so that the data storage can learn some information about the users and the organization.The random keyword search request also cause loss of information and degrade the privacy of encrypted data.This thesis of two layer encryption allows more secure and private way to handle data updates, user dynamics and policy changes.If there is a change in user dynamics or policy the outer layer of encryption needs to be updated.Since the outer layer encryption is done at the data storage, no transmission of data required between the data owner and data storage.The user who satisfies the access control policies should be able to decrypt the keys twice in order to access the data makes the system more secure and private.Hence my propped thesis has a newly added advantage of two layer encryption using Attribute Based Group Key management (ABGKM) provides a strong secure layer for data storage in servers.