TimeCrypt: Encrypted Data Stream Processing at Scale with Cryptographic Access Control

TimeCrypt: Encrypted Data Stream Processing at Scale with Cryptographic Access Control
复制标题

TimeCrypt:使用加密访问控制进行大规模加密数据流处理

DOI:
--
复制
发表时间:
2018
期刊:
Symposium on Networked Systems Design and Implementation
影响因子:
--
通讯作者:
Sylvia Ratnasamy
Sylvia Ratnasamy
中科院分区:
--
文献类型:
--
作者:
Lukas Burkhalter;Anwar Hithnawi;Alexander Viand;Hossein Shafagh;Sylvia Ratnasamy

文献摘要

被引文献

相似文献

越来越多的设备和服务收集存储在云中的详细时间序列数据。保护这些庞大且不断生成的数据的机密性是该领域许多应用程序的迫切需求。同时,我们必须通过允许授权服务安全地、有选择地访问和运行分析来保持这些数据的实用性。本文介绍了TimeCrypt,这是一个对大量加密时间序列数据提供可扩展和实时分析的系统。TimeCrypt允许用户定义富有表现力的数据访问和隐私策略,并通过加密来强制执行。在TimeCrypt中,数据是端到端加密的,授权方只能在其授权访问范围内解密和验证查询。我们对TimeCrypt的评估表明,它的内存开销和性能是有竞争力的,接近于在清晰的数据上操作。
A growing number of devices and services collect detailed time series data that is stored in the cloud. Protecting the confidentiality of this vast and continuously generated data is an acute need for many applications in this space. At the same time, we must preserve the utility of this data by enabling authorized services to securely and selectively access and run analytics. This paper presents TimeCrypt, a system that provides scalable and real-time analytics over large volumes of encrypted time series data. TimeCrypt allows users to define expressive data access and privacy policies and enforces it cryptographically via encryption. In TimeCrypt, data is encrypted end-to-end, and authorized parties can only decrypt and verify queries within their authorized access scope. Our evaluation of TimeCrypt shows that its memory overhead and performance are competitive and close to operating on data in the clear.