sec-cs: Getting the Most out of Untrusted Cloud Storage

sec-cs: Getting the Most out of Untrusted Cloud Storage
复制标题

DOI:
10.1109/lcn.2017.98
复制
发表时间:
2016-06
期刊:
2017 IEEE 42nd Conference on Local Computer Networks (LCN)
影响因子:
--
通讯作者:
Dominik Leibenger;Christoph Sorge
Dominik Leibenger;Christoph Sorge
中科院分区:
其他
文献类型:
--
作者:
Dominik Leibenger;Christoph Sorge

文献摘要

被引文献

相似文献

我们提出了sec,这是一种类似散列表的数据结构,用于不可信存储上的内容,可证明是安全和存储效率高的。我们使用确定性身份验证加密以零存储开销实现真实性和机密性。最先进的数据重复删除方法可以防止对不同内容的共享部分进行冗余存储,而不管内容之间的关系是否已知。,,,,我们不只是采用现有的方法,而是引入了新的(多层次)分块策略,ML-SC和ML-CDC,它们在存在高冗余的情况下比现有方法具有更高的存储效率。,,,,我们证明了sec-cs的安全性,发布了一个实现,并给出了评估结果,表明其适用性,例如,未来的备份系统应该在很少的可用存储上保存许多版本的文件。
We present sec-cs, a hash-table-like data structure for contents on untrusted storage that is provably secure and storage-efficient. We achieve authenticity and confidentiality with zero storage overhead using deterministic authenticated encryption. State-of-the-art data deduplication approaches prevent redundant storage of shared parts of different contents irrespective of whether relationships between contents are known a priori.,,,,Instead of just adapting existing approaches, we introduce novel (multi-level) chunking strategies, ML-SC and ML-CDC, which are significantly more storage-efficient than existing approaches in presence of high redundancy.,,,,We prove sec-cs's security, publish an implementation, and present evaluation results indicating suitability for, e.g., future backup systems that should preserve many versions of files on little available storage.