• DocumentCode
    263805
  • Title

    MS2: Practical data privacy and security framework for data at rest in cloud

  • Author

    Raghuwanshi, Dharmendra S. ; Rajagopalan, M.R.

  • Author_Institution
    Cloud Security Group, Centre for Dev. of Adv. Comput., Chennai, India
  • fYear
    2014
  • fDate
    17-19 Jan. 2014
  • Firstpage
    1
  • Lastpage
    8
  • Abstract
    Security and performance are two major concerns in cloud, to manage balance between security and performance is really another big practical challenge for researchers today. In cloud computing, cloud consumers´ or clients´ data is kept on cloud service provider´s premises which raises the data privacy and integrity concerns, consequently decreases degree of trust on cloud computing paradigm. In this paper, we proposed the unified data encryption architecture which ensures the data security and privacy with reasonable performance overhead of computing system. Our proposed system is practically viable and based on multilevel identity encryption approach with two level/factor identity verification process. Proposed data security architecture includes encryption and verification services both at file and block storage level to satisfy the data protection needs of different cloud service models, especially computing service (IaaS) model. In IaaS model, elastic block storage (EBS) volumes are dynamically provisioned to full-fill the additional storage requirement of running computing Virtual servers (VMs).While in storage service, data objects (files) are stored directly on shared storage media. Our solution facilitates cloud consumers to store their sensitive information and application data objects in corresponding storage devices with complete data privacy and security. It also leverages both CSP and cloud vendors for achieving transparency in security processes of cloud.
  • Keywords
    client-server systems; cloud computing; cryptography; data integrity; data protection; storage management; EBS volumes; IaaS model; MS2; block storage level; cloud client data; cloud computing; cloud consumer data; cloud service models; computing service model; data files; data integrity concerns; data objects; data protection; data security framework; elastic block storage volumes; file storage level; multilevel identity encryption approach; practical data privacy; shared storage media; two factor identity verification process; two level identity verification process; unified data encryption architecture; virtual server storage requirement; Cloud computing; Clouds; Data privacy; Encryption; Servers; Cloud Computing; Data encryption; Data integrity; Infrastructure as a service (IaaS);
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Applications and Information Systems (WCCAIS), 2014 World Congress on
  • Conference_Location
    Hammamet
  • Print_ISBN
    978-1-4799-3350-1
  • Type

    conf

  • DOI
    10.1109/WCCAIS.2014.6916583
  • Filename
    6916583