Securely Managing the Lifetime of Versions in Digital Archives
安全管理数字档案中版本的生命周期
基本信息
- 批准号:0456027
- 负责人:
- 金额:--
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2005
- 资助国家:美国
- 起止时间:2005-07-01 至 2008-12-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Intellectual MeritThe proposed research will develop sophisticated techniques for managing the lifetime of data in secure versioning systems, a practical application of the AON transform that leverages its semantics, rather than just its security properties. The problem of revocation will also be addressed in order to refine the security and granularity of key regression techniques.Recent legislation has created new requirements for retaining and securing electronic information. More than 4,000 state, local, and federal acts govern archives. The specifics of each act vary by domain, but, when taken as a whole, they can be distilled down to a set of technical requirements. An archive must provide privacy, confidentiality, and non-repudiation for information. Archives must use strong encryption with authentication for data on disk, as well as a means for secure transmission. Legislation mandates an auditable trail of changes made to electronic records that can be accessed on-line, which requires versioning data over time and providing access to past versions. Governmental and corporate organizations must ensure that compliance does not degrade security, privacy, or the enforcement of retention policies. The combination of regulatory and organizational requirements bring up two technical problems for secure versioning systems. First, there is no efficient way to securely delete information, i.e. so that no computationally practical way to recover deleted data exists. Second, systems must provide an efficient means to change the accessibility of information throughout time. This includes downgrading information, e.g. declassifying information as part of the Freedom of Information Act, or, revoking privileges, e.g. disallowing future access to information after an employee leaves the company or transferring the rights to medical records from one health care provider to another. Without technical solutions to these problems, organizations and individuals will be subject to informationleakage and will fail to comply with regulations. Data that are not securely deleted are recoverable and subject to subpoena or cryptographic attacks. After a legislated retention period, information often represents a legal and competitive liability. Also, some regulations require that personal medical and financial records be deleted based on time or circumstance. Again, this deletion must be permanent, and thus, secure. Existing solutions for secure deletion and for scoping access to information over the lifetime of data are inadequate. They either fail to meet requirements or they are intolerably inefficient. In this project, mew technologies will be created that efficiently implement secure deletion and revocation in versioning systems. A novel application of All-or-Nothing (AON) encryption will be applied that both provides authenticated, strong encryption of data on disk and pioneers efficient secure deletion. ImpactThe project will lead to curriculum development at Johns Hopkins, including a short course on the Policy and Technology in Data Storage. The PIs will offer three tutorials based on the short course; one geared toward governmental agencies, one toward health care providers, and one toward corporations. Tutorials will be organized and promoted through StorageNetworking.org, an initiative for the education of storage professionals and will be freely available to the community. The proposed research will address problems introduced by recent legislation, which effect financial and medical organizations and all levels of government. Because the solutions are general to all storage systems that share content among versions, they apply to file systems, distributed archives, and databases. Open-source software produced by the project will permit anyone to construct a compliantstorage system, with security and deletion guarantees, at little expense.
智力MeritThe拟议的研究将开发复杂的技术,用于管理安全版本系统中的数据的生命周期,AON变换的实际应用,利用其语义,而不仅仅是其安全属性。撤销的问题也将得到解决,以改善关键回归技术的安全性和粒度。最近的立法为保留和保护电子信息制定了新的要求。4,000多个州、地方和联邦法案管理档案。每项法案的具体内容因领域而异,但是,当作为一个整体时,它们可以被提炼为一套技术要求。归档必须提供信息的隐私性、机密性和不可否认性。归档必须对磁盘上的数据使用强加密和身份验证,以及安全传输的方法。立法要求对可以在线访问的电子记录进行可审计的更改跟踪,这需要随着时间的推移对数据进行版本控制,并提供对过去版本的访问。政府和企业组织必须确保法规遵从性不会降低安全性、隐私性或保留策略的执行。法规和组织要求的结合为安全版本控制系统带来了两个技术问题。首先,不存在安全地删除信息的有效方式,即,使得不存在恢复已删除数据的计算上实用的方式。第二,系统必须提供一种有效的手段来改变信息的可访问性。这包括降低信息等级,例如作为《信息自由法》的一部分对信息进行解密,或者撤销特权,例如在员工离开公司后不允许未来访问信息,或者将医疗记录的权利从一个医疗保健提供者转移到另一个医疗保健提供者。如果没有这些问题的技术解决方案,组织和个人将受到信息泄露的影响,并且无法遵守法规。未被安全删除的数据是可恢复的,并且会受到传票或密码攻击。在法定的保留期之后,信息通常代表法律的和竞争性的责任。此外,一些法规要求根据时间或情况删除个人医疗和财务记录。同样,这种删除必须是永久的,因此是安全的。用于安全删除和用于在数据的生命周期内确定对信息的访问范围的现有解决方案是不够的。它们要么达不到要求,要么效率低得令人难以忍受。在这个项目中,将创建新的技术,有效地实现安全删除和撤销版本系统。将应用All-or-Nothing(AON)加密的一种新应用,该应用既提供对磁盘上数据的身份验证、强加密,又开创了高效安全删除的先河。该项目将导致约翰霍普金斯大学的课程开发,包括关于数据存储政策和技术的短期课程。PI将提供三个基于短期课程的教程;一个面向政府机构,一个面向医疗保健提供者,一个面向企业。Tuesday将通过StorageNetworking.org组织和推广,这是一项存储专业人员教育计划,并将免费提供给社区。拟议的研究将解决最近的立法所带来的问题,这些立法影响到金融和医疗组织以及各级政府。由于这些解决方案适用于在版本之间共享内容的所有存储系统,因此它们也适用于文件系统、分布式归档和数据库。 该项目开发的开源软件将允许任何人以很低的成本构建一个具有安全和删除保证的兼容存储系统。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Randal Burns其他文献
Towards Optimal Line of Sight Coverage
实现最佳视线覆盖范围
- DOI:
10.1109/escience55777.2022.00028 - 发表时间:
2022 - 期刊:
- 影响因子:0
- 作者:
Peter Gu;T. Budavári;Amanda Galante;Randal Burns - 通讯作者:
Randal Burns
DETERMINISTIC CONSTRUCTION OF SYNCHRONIZATION STRING OVER SMALL ALPHABET
小字母同步串的确定性构造
- DOI:
- 发表时间:
2017 - 期刊:
- 影响因子:0
- 作者:
Ke Wu;X. Li;Yanif Ahmad;V. Braverman;Randal Burns;Zachary Burwell;M. Dinitz;Mark Dredze;Abhishek Jain;Philipp Koehn - 通讯作者:
Philipp Koehn
Randal Burns的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Randal Burns', 18)}}的其他基金
Computational Infrastructure for Brain Research: EAGER: BrainLab CI: Collaborative, Community Experiments with Data-Quality Controls through Continuous Integration
脑研究的计算基础设施:EAGER:BrainLab CI:通过持续集成进行数据质量控制的协作社区实验
- 批准号:
1649880 - 财政年份:2017
- 资助金额:
-- - 项目类别:
Standard Grant
USENIX Student Stipend Grant, FAST 2014
USENIX 学生助学金,FAST 2014
- 批准号:
1424276 - 财政年份:2014
- 资助金额:
-- - 项目类别:
Standard Grant
USENIX Student Stipend Grant, FAST 2013
USENIX 学生助学金,FAST 2013
- 批准号:
1322157 - 财政年份:2013
- 资助金额:
-- - 项目类别:
Standard Grant
CRAM: A Congestion-Aware Resource and Allocation Manager for Data-Intensive High-Performance Computing
CRAM:用于数据密集型高性能计算的拥塞感知资源和分配管理器
- 批准号:
0937810 - 财政年份:2009
- 资助金额:
-- - 项目类别:
Continuing Grant
Archival Introspection and Maintenance Metadata
档案自省和维护元数据
- 批准号:
0734862 - 财政年份:2007
- 资助金额:
-- - 项目类别:
Standard Grant
COLLABORATIVE RESEARCH: SEI + II (AST): Bypass-Yield Caching for Large-Scale Scientific Database Workloads in the World-Wide Telescope
协作研究:SEI II (AST):全球望远镜中大规模科学数据库工作负载的旁路产量缓存
- 批准号:
0430848 - 财政年份:2004
- 资助金额:
-- - 项目类别:
Continuing Grant
CAREER: Interoperation Among Heterogeneous Global-Scale Storage Systems
职业:异构全球规模存储系统之间的互操作
- 批准号:
0238305 - 财政年份:2003
- 资助金额:
-- - 项目类别:
Continuing Grant
相似海外基金
Managing the Activity of Pollinators in Protected Cropping Systems (MAPP-CS)
管理保护性耕作系统中授粉媒介的活动 (MAPP-CS)
- 批准号:
BB/Z514366/1 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Research Grant
Unlocking the sensory secrets of predatory wasps: towards predictive tools for managing wasps' ecosystem services in the Anthropocene
解开掠食性黄蜂的感官秘密:开发用于管理人类世黄蜂生态系统服务的预测工具
- 批准号:
NE/Y001397/1 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Research Grant
Towards Evaluating and Managing Risks Associated with Legacy Wells and Offshore Gas Storage in Scotland
评估和管理与苏格兰传统油井和海上天然气储存相关的风险
- 批准号:
2902920 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Studentship
Conference on Science and Law of Sea Level Rise: Reducing Legal Obstacles to Managing Rising Seas; Fort Lauderdale, Florida; Spring 2024
海平面上升科学与法律会议:减少管理海平面上升的法律障碍;
- 批准号:
2330829 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Standard Grant
Managing diversity in the context of digitalization and novel technologies: integrating profitability and well-being in Japanese firms
在数字化和新技术背景下管理多样性:整合日本企业的盈利能力和福祉
- 批准号:
24K05065 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Grant-in-Aid for Scientific Research (C)
Doctoral Dissertation Research: Managing the mixed messages of meta-analysis: How surgeons, policy makers, and judges cope with uncertainty
博士论文研究:管理荟萃分析的混合信息:外科医生、政策制定者和法官如何应对不确定性
- 批准号:
2341547 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Standard Grant
CAREER: Managing uncertainties in renewable powered grids
职业:管理可再生能源电网的不确定性
- 批准号:
2338383 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Continuing Grant
Cessation of Volunteering in Later Life: Managing long-term impacts for volunteers and volunteer managers of cultural heritage organisations
晚年停止志愿服务:管理对文化遗产组织志愿者和志愿者管理者的长期影响
- 批准号:
ES/X013847/1 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Research Grant
NSF-NSERC: SaTC: CORE: Small: Managing Risks of AI-generated Code in the Software Supply Chain
NSF-NSERC:SaTC:核心:小型:管理软件供应链中人工智能生成代码的风险
- 批准号:
2341206 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Standard Grant
Collaborative Research: EPIIC: Managing Culture Change on Two Fronts: Strengthening Our Capacity to Develop Partnerships
合作研究:EPIIC:从两个方面管理文化变革:加强我们发展伙伴关系的能力
- 批准号:
2331373 - 财政年份:2023
- 资助金额:
-- - 项目类别:
Standard Grant














{{item.name}}会员




