基于可信计算平台的面向对象加密存储系统的设计与实现

Junjian Chen, Jingning Liu, D. Feng
{"title":"基于可信计算平台的面向对象加密存储系统的设计与实现","authors":"Junjian Chen, Jingning Liu, D. Feng","doi":"10.1109/CIS.2010.125","DOIUrl":null,"url":null,"abstract":"Object-oriented storage system is a distributed storage systems with a storage device directly connected to the network. In existing encryption schemes the protection of the sensitive data is achieved mainly through an encrypted data storage system, but the encryption key is protected only by a weak password. This is a security risk to storage system, so the key protection is an important issue that needs to be resolved. This paper presents an Object-oriented Encryption Storage System based on Trusted Computing Platform (OESSTCP). A trusted computing platform is adapted in OESSTCP to the file system to protect the encryption keys, thereby enhancing the security of the entire storage system. We have designed and implemented OESSTCP scheme on an object-oriented storage system. Experimental results show that the OESSTCP key cryptographic security protection occupies only 0.3% of the entire encryption overhead and it does not bring great impact on performance of the storage system.","PeriodicalId":420515,"journal":{"name":"2010 International Conference on Computational Intelligence and Security","volume":"28 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-12-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"Design and Implementation of Object-Oriented Encryption Storage System Based on Trusted Computing Platform\",\"authors\":\"Junjian Chen, Jingning Liu, D. Feng\",\"doi\":\"10.1109/CIS.2010.125\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Object-oriented storage system is a distributed storage systems with a storage device directly connected to the network. In existing encryption schemes the protection of the sensitive data is achieved mainly through an encrypted data storage system, but the encryption key is protected only by a weak password. This is a security risk to storage system, so the key protection is an important issue that needs to be resolved. This paper presents an Object-oriented Encryption Storage System based on Trusted Computing Platform (OESSTCP). A trusted computing platform is adapted in OESSTCP to the file system to protect the encryption keys, thereby enhancing the security of the entire storage system. We have designed and implemented OESSTCP scheme on an object-oriented storage system. Experimental results show that the OESSTCP key cryptographic security protection occupies only 0.3% of the entire encryption overhead and it does not bring great impact on performance of the storage system.\",\"PeriodicalId\":420515,\"journal\":{\"name\":\"2010 International Conference on Computational Intelligence and Security\",\"volume\":\"28 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2010-12-11\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2010 International Conference on Computational Intelligence and Security\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/CIS.2010.125\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 International Conference on Computational Intelligence and Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CIS.2010.125","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2

摘要

面向对象存储系统是一种分布式存储系统,存储设备直接接入网络。在现有的加密方案中,对敏感数据的保护主要是通过加密的数据存储系统来实现的,而对加密密钥的保护只有弱密码。这将给存储系统带来安全风险,因此密钥保护是一个需要解决的重要问题。提出了一种基于可信计算平台(OESSTCP)的面向对象加密存储系统。OESSTCP在文件系统中采用可信计算平台对加密密钥进行保护,从而提高了整个存储系统的安全性。我们在一个面向对象的存储系统上设计并实现了OESSTCP方案。实验结果表明,OESSTCP密钥加密安全保护仅占整个加密开销的0.3%,对存储系统的性能影响不大。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Design and Implementation of Object-Oriented Encryption Storage System Based on Trusted Computing Platform
Object-oriented storage system is a distributed storage systems with a storage device directly connected to the network. In existing encryption schemes the protection of the sensitive data is achieved mainly through an encrypted data storage system, but the encryption key is protected only by a weak password. This is a security risk to storage system, so the key protection is an important issue that needs to be resolved. This paper presents an Object-oriented Encryption Storage System based on Trusted Computing Platform (OESSTCP). A trusted computing platform is adapted in OESSTCP to the file system to protect the encryption keys, thereby enhancing the security of the entire storage system. We have designed and implemented OESSTCP scheme on an object-oriented storage system. Experimental results show that the OESSTCP key cryptographic security protection occupies only 0.3% of the entire encryption overhead and it does not bring great impact on performance of the storage system.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信