EAGER: Collaborative: Secure and Efficient Data Provenance
EAGER: Collaborative: Secure and Efficient Data Provenance
批准号:
1540216
负责人:
Kevin Butler
金额:
$11.01万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2014
资助国家:
美国
项目状态:
已结题
起止时间:
2014-08-15 至 2017-03-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Data provenance involves determining the conditions under which information was originally generated, as well as all subsequent modifications to that information and the conditions under which those modifications were performed. As systems become increasingly distributed and organizations become reliant on cloud computing for processing their data, the need to securely manage and validate the provenance of that data becomes critical.This project develops new frameworks for evaluating secure fine-grained provenance collection and management in hosts. The research activities examine the architectures and algorithms required to make the collection and management of trustworthy provenance feasible at scale. We provide a general architecture for collecting provenance at the kernel level and consider methods of reducing the amount of provenance generated and managed while maintaining high-fidelity provenance records. The project introduces a number of optimizations to enable scalable and performant provenance collection, including policy-based log reduction and provenance deduplication. The project's main scientific contributions include (1) the development of Linux Provenance Modules that provide complete provenance mediation within the Linux kernel; (2) the design of policy-reduced provenance through the use of mandatory access control policies to reduce the number of subjects and actions that are provenance-generating events to those of interest in a system; and (3) techniques for deduplication of provenance such that minimal records for commonly occurring events can be stored and later fully reconstructed. We will demonstrate that our approach makes provenance collection practical at scale, enabling more secure and trustworthy computing environments.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: SaTC: CORE: Medium: Enabling Practically Secure Cellular Infrastructure
-
批准号:2055014
-
项目类别:Standard Grant
-
资助金额:$59.8万
-
财政年份:2022
-
负责人:Kevin Butler
-
依托单位:
Collaborative Proposal: SaTC: Frontiers: Securing the Future of Computing for Marginalized and Vulnerable Populations
-
批准号:2206950
-
项目类别:Continuing Grant
-
资助金额:$403.58万
-
财政年份:2022
-
负责人:Kevin Butler
-
依托单位:
Travel Grant Support for Association for Computing Machinery (AC) WiSec 2018
-
批准号:1823067
-
项目类别:Standard Grant
-
资助金额:$0.9万
-
财政年份:2018
-
负责人:Kevin Butler
-
依托单位:
SaTC: STARSS: Small: Domain Informed Techniques for Detecting and Defending Against Malicious Firmware
-
批准号:1815883
-
项目类别:Standard Grant
-
资助金额:$33.33万
-
财政年份:2018
-
负责人:Kevin Butler
-
依托单位:
EAGER: Collaborative: Secure and Efficient Data Provenance
-
批准号:1445983
-
项目类别:Standard Grant
-
资助金额:$11.01万
-
财政年份:2014
-
负责人:Kevin Butler
-
依托单位:
TC: Small: Protection Mechanisms for Portable Storage
-
批准号:1540218
-
项目类别:Continuing Grant
-
资助金额:$20.78万
-
财政年份:2014
-
负责人:Kevin Butler
-
依托单位:
CAREER: Securing Critical Infrastructure with Autonomously Secure Storage
-
批准号:1540217
-
项目类别:Continuing Grant
-
资助金额:$32.2万
-
财政年份:2014
-
负责人:Kevin Butler
-
依托单位:
CAREER: Securing Critical Infrastructure with Autonomously Secure Storage
-
批准号:1254198
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2013
-
负责人:Kevin Butler
-
依托单位:
TC: Small: Protection Mechanisms for Portable Storage
-
批准号:1118046
-
项目类别:Continuing Grant
-
资助金额:$49.95万
-
财政年份:2011
-
负责人:Kevin Butler
-
依托单位:
海外基金