Title :
Benchmarking the Performance Impact of Transport Layer Security in Cloud Database Systems
Author :
Muller, Sebastian ; Bermbach, D. ; Tai, S. ; Pallas, Frank
Author_Institution :
Karlsruhe Inst. of Technol., Karlsruhe, Germany
Abstract :
Cloud storage services and NoSQL systems are optimized for performance and availability. Hence, enterprise-grade features like security mechanisms are typically neglected even though there is a need for them with increased cloud adoption by enterprises. Only Transport Layer Security (TLS) is frequently supported. Furthermore, the standard Transport Layer Security (TLS) protocol offers many configuration options which are usually chosen purely based on chance. We argue that in cloud database systems, configuration options should be chosen based on the degree of vulnerability to attacks and security threats as well as on the performance overhead of the respective algorithms. Our contributions are a benchmarking approach for transparent analysis of the performance impact of various TLS configuration options and a custom TLS socket implementation which offers more fine-grained control over the configuration options chosen. We also use our benchmarking approach to study the performance impact of TLS in Amazon DynamoDB and Apache Cassandra.
Keywords :
SQL; cloud computing; security of data; storage management; transport protocols; Amazon DynamoDB; Apache Cassandra; NoSQL systems; TLS configuration options; TLS protocol; attack vulnerability degree; cloud database systems; cloud storage services; configuration options; custom TLS socket implementation; fine-grained control; performance impact benchmarking; performance impact transparent analysis; security threats; transport layer security; Benchmark testing; Ciphers; Cloud computing; Database systems; Protocols; Sockets; Cloud Database Systems; Cloud Security; NoSQL; SSL; Security Performance; TLS;
Conference_Titel :
Cloud Engineering (IC2E), 2014 IEEE International Conference on
Conference_Location :
Boston, MA
DOI :
10.1109/IC2E.2014.48