DocumentCode :
1734138
Title :
HASS: Highly Available, Scalable and Secure Distributed Data Storage Systems
Author :
Xu, Zhiqian ; Jiang, Hai
Author_Institution :
Inf. Security, FedEx Corp., Memphis, TN, USA
Volume :
2
fYear :
2009
Firstpage :
772
Lastpage :
780
Abstract :
As computers become pervasive and data size increases dramatically, data management systems´ security, scalability and availability features turn into major design issues, especially in distributed computing environments. This paper proposes a highly available, scalable and secure distributed data storage system (HASS) for high performance and secure data management. Distributed and parallel data storage or file systems such as Object-based Storage Devices (OSD) and flexible key distribution schemes such as stateless Identity Based Encryption (IBE) are integrated to achieve scalability in terms of performance and key management. OSD provides high performance parallel I/O whereas IBE eliminates pre-shared secrete/symmetric keys and simplifies key distribution. Data at rest (static) and in transit (dynamic) are protected with different encryption strategies for privacy and integrity. With IBE, public keys are not stored whereas private and session keys are generated dynamically for data in transit protection/encryption. SecretSharing is used for data at rest protection. Replication on OSD sites duplicates data shares for high availability. Overall, the proposed HASS system delivers high performance data management with security, scalability and high availability features.
Keywords :
data integrity; data privacy; distributed databases; parallel processing; private key cryptography; HASS system; data integrity; data privacy; distributed computing; distributed data storage system security; encryption strategy; file system; identity based encryption; object-based storage device; parallel I/O operation; parallel data storage; private key; session key; transit protection; Availability; Cryptography; Data security; Data storage systems; Distributed computing; Environmental management; Identity-based encryption; Pervasive computing; Protection; Scalability; data protection; identity based encryption; key management; object-based storage devices; secret sharing;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computational Science and Engineering, 2009. CSE '09. International Conference on
Conference_Location :
Vancouver, BC
Print_ISBN :
978-1-4244-5334-4
Electronic_ISBN :
978-0-7695-3823-5
Type :
conf
DOI :
10.1109/CSE.2009.70
Filename :
5283024
Link To Document :
بازگشت