{"title":"基于可信计算平台的面向对象加密存储系统的设计与实现","authors":"Junjian Chen, Jingning Liu, D. Feng","doi":"10.1109/CIS.2010.125","DOIUrl":null,"url":null,"abstract":"Object-oriented storage system is a distributed storage systems with a storage device directly connected to the network. In existing encryption schemes the protection of the sensitive data is achieved mainly through an encrypted data storage system, but the encryption key is protected only by a weak password. This is a security risk to storage system, so the key protection is an important issue that needs to be resolved. This paper presents an Object-oriented Encryption Storage System based on Trusted Computing Platform (OESSTCP). A trusted computing platform is adapted in OESSTCP to the file system to protect the encryption keys, thereby enhancing the security of the entire storage system. We have designed and implemented OESSTCP scheme on an object-oriented storage system. Experimental results show that the OESSTCP key cryptographic security protection occupies only 0.3% of the entire encryption overhead and it does not bring great impact on performance of the storage system.","PeriodicalId":420515,"journal":{"name":"2010 International Conference on Computational Intelligence and Security","volume":"28 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-12-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"Design and Implementation of Object-Oriented Encryption Storage System Based on Trusted Computing Platform\",\"authors\":\"Junjian Chen, Jingning Liu, D. Feng\",\"doi\":\"10.1109/CIS.2010.125\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Object-oriented storage system is a distributed storage systems with a storage device directly connected to the network. In existing encryption schemes the protection of the sensitive data is achieved mainly through an encrypted data storage system, but the encryption key is protected only by a weak password. This is a security risk to storage system, so the key protection is an important issue that needs to be resolved. This paper presents an Object-oriented Encryption Storage System based on Trusted Computing Platform (OESSTCP). A trusted computing platform is adapted in OESSTCP to the file system to protect the encryption keys, thereby enhancing the security of the entire storage system. We have designed and implemented OESSTCP scheme on an object-oriented storage system. Experimental results show that the OESSTCP key cryptographic security protection occupies only 0.3% of the entire encryption overhead and it does not bring great impact on performance of the storage system.\",\"PeriodicalId\":420515,\"journal\":{\"name\":\"2010 International Conference on Computational Intelligence and Security\",\"volume\":\"28 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2010-12-11\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2010 International Conference on Computational Intelligence and Security\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/CIS.2010.125\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 International Conference on Computational Intelligence and Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CIS.2010.125","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Design and Implementation of Object-Oriented Encryption Storage System Based on Trusted Computing Platform
Object-oriented storage system is a distributed storage systems with a storage device directly connected to the network. In existing encryption schemes the protection of the sensitive data is achieved mainly through an encrypted data storage system, but the encryption key is protected only by a weak password. This is a security risk to storage system, so the key protection is an important issue that needs to be resolved. This paper presents an Object-oriented Encryption Storage System based on Trusted Computing Platform (OESSTCP). A trusted computing platform is adapted in OESSTCP to the file system to protect the encryption keys, thereby enhancing the security of the entire storage system. We have designed and implemented OESSTCP scheme on an object-oriented storage system. Experimental results show that the OESSTCP key cryptographic security protection occupies only 0.3% of the entire encryption overhead and it does not bring great impact on performance of the storage system.