Skip to main content

A Hybrid Key Management System Based on ECC and Data Classification to Secure Data in the Cloud

  • Conference paper
  • First Online:
ICT Systems and Sustainability

Abstract

Cloud computing is an unparalleled innovation in the field of computer science. However, the CSPs cannot be entrusted with secret data. Data needs to be encrypted before it is uploaded to the cloud. But again, the data is only as secure as the keys used to encrypt or decrypt it. This gives rise to yet another problem, i.e., key management. This paper systematically reviews the literature, identifies the issues prevalent in key management, and presents their corresponding solutions. Post the literature review, we propose a model that borrows the best from the past efforts and fixes the shortcomings of the present models by combining all the solutions presented in this paper.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 169.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 219.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. P. Mell, T. Grance, The NIST Definition of Cloud Computing (2011)

    Google Scholar 

  2. R. Velumadhava Rao, K. Selvamani, Data Security Challenges and Its Solutions in Cloud Computing (2015)

    Google Scholar 

  3. European Parliament and the Council, General Data Protection Regulation (EU) 2016/679 of the European Parliament and of the Council

    Google Scholar 

  4. R. Dowsley, M. Gabel, G. Hübsch, G. Schiefer, A. Schwichtenberg, A Distributed Key Management Approach (2016)

    Google Scholar 

  5. A.R. Buchade, R Ingle, Key Management for Cloud Data Storage: Methods and Comparisons (2014)

    Google Scholar 

  6. B. Grobauer, T. Walloschek, E. Stocker, Understanding cloud computing vulnerabilities. IEEE Secur. Privacy 9(2), 50–57 (2011)

    Article  Google Scholar 

  7. C. Esposito, A. Castiglione, B. Martini, K.-K. Raymond Choo, Cloud Manufacturing: Security, Privacy and Forensic Concerns (2016)

    Google Scholar 

  8. R. Latif, H. Abbas, S. Assar, Q. Ali, Cloud Computing Risk Assessment: A Systematic Literature Review (2014)

    Google Scholar 

  9. H.A. Jäger, A. Monitzer, R.O. Rieken, E. Ernst, A novel set of measures against insider attacks—sealed cloud, in Lecture Notes in Informatics—Open Identity Summit 2013, ed. by D. Hühnlein, H. Roßnagel (Gesellschaft für Informatik, Bonn, 2013), pp. 187–197

    Google Scholar 

  10. D.W.K. Tse, D. Chen, Q. Liu, F. Wang, Z. Wei, Emerging Issues in Cloud Storage Security: Encryption, Key Management, Data Redundancy, Trust Mechanism (2014)

    Google Scholar 

  11. I. Indu, P.M. Rubesh Anand, S.P. Shaji, Secure File Sharing Mechanism and Key Management for Mobile Cloud Computing Environment (2016)

    Google Scholar 

  12. L. Tawalbeh, N.S. Darwazeh, R.S. Al-Qassas, F. AlDosari, A Secure Cloud Computing Model based on Data Classification (2015)

    Google Scholar 

  13. P. Paillier, Public-key cryptosystems based on composite degree residuosity classes, in Proceedings of Advances in Cryptology (Eurocrypt ‘99), Prague, Czech Republic (1999), pp. 223–238

    Google Scholar 

  14. Z.E. Dawahdeh, S.N. Yaakob, A.M. Sagheer, Modified ElGamal elliptic curve cryptosystem using hexadecimal representation. Indian J. Sci. Technol. 8(15), 1–8 (2015)

    Article  Google Scholar 

  15. US Nat’l Inst. for Standards and Technology, Security Requirements for Cryptographic Modules, Federal Information Processing Standards Publication (2011)

    Google Scholar 

  16. S. Arun, N.R. Shanker, Data security in cloud storage using elliptical curve cryptography (2018)

    Google Scholar 

  17. M. Suárez-Albela, P. Fraga-Lamas, T.M. Fernández-Caramés, A Practical Evaluation on RSA and ECC-Based Cipher Suites for IoT High-Security Energy-Efficient Fog and Mist Computing Devices (2018)

    Google Scholar 

  18. N. Jansma, B. Arrendondo, Performance Comparison of Elliptic Curve and RSA Digital Signatures (2004)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Hinddeep Purohit .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2021 The Editor(s) (if applicable) and The Author(s), under exclusive license to Springer Nature Singapore Pte Ltd.

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Purohit, H., Vaghela, R. (2021). A Hybrid Key Management System Based on ECC and Data Classification to Secure Data in the Cloud. In: Tuba, M., Akashe, S., Joshi, A. (eds) ICT Systems and Sustainability. Advances in Intelligent Systems and Computing, vol 1270. Springer, Singapore. https://doi.org/10.1007/978-981-15-8289-9_19

Download citation

Publish with us

Policies and ethics