Assessing Run-time Overhead of Securing Kepler

Assessing Run-time Overhead of Securing Kepler
复制标题

评估保护 Kepler 安全的运行时开销

DOI:
10.1016/j.procs.2016.05.412
复制
发表时间:
2016
影响因子:
3
通讯作者:
M. Vouk
M. Vouk
中科院分区:
地球科学3区
文献类型:
--
作者:
Donghoon Kim;M. Vouk

文献摘要

被引文献

相似文献

我们已经开发了一个模型,用于保护基于数据流的应用程序链。我们已经实现了一个附加包的形式,科学的工作流程系统称为开普勒的模型。我们的安全分析包(SAP)利用开普勒的出处记录器(PR)。SAP可保护数据流免受基于外部输入的攻击、对未经授权的埃克斯特站点的访问以及数据完整性问题的影响。实时安全性的成本是一定量的运行时开销,这并不奇怪。大约一半的开销来自开普勒PR的使用,另一半来自SAP增加的安全功能。
We have developed a model for securing data-flow based application chains. We have imple- mented the model in the form of an add-on package for the scientific workflow system called Kepler. Our Security Analysis Package (SAP) leverages Kepler's Provenance Recorder (PR). SAP secures data flows from external input-based attacks, from access to unauthorized exter- nal sites, and from data integrity issues. It is not a surprise that cost of real-time security is a certain amount of run-time overhead. About half of the overhead appears to come from the use of the Kepler PR and the other half from security function added by SAP.