Title :
MS2: Practical data privacy and security framework for data at rest in cloud
Author :
Raghuwanshi, Dharmendra S. ; Rajagopalan, M.R.
Author_Institution :
Cloud Security Group, Centre for Dev. of Adv. Comput., Chennai, India
Abstract :
Security and performance are two major concerns in cloud, to manage balance between security and performance is really another big practical challenge for researchers today. In cloud computing, cloud consumers´ or clients´ data is kept on cloud service provider´s premises which raises the data privacy and integrity concerns, consequently decreases degree of trust on cloud computing paradigm. In this paper, we proposed the unified data encryption architecture which ensures the data security and privacy with reasonable performance overhead of computing system. Our proposed system is practically viable and based on multilevel identity encryption approach with two level/factor identity verification process. Proposed data security architecture includes encryption and verification services both at file and block storage level to satisfy the data protection needs of different cloud service models, especially computing service (IaaS) model. In IaaS model, elastic block storage (EBS) volumes are dynamically provisioned to full-fill the additional storage requirement of running computing Virtual servers (VMs).While in storage service, data objects (files) are stored directly on shared storage media. Our solution facilitates cloud consumers to store their sensitive information and application data objects in corresponding storage devices with complete data privacy and security. It also leverages both CSP and cloud vendors for achieving transparency in security processes of cloud.
Keywords :
client-server systems; cloud computing; cryptography; data integrity; data protection; storage management; EBS volumes; IaaS model; MS2; block storage level; cloud client data; cloud computing; cloud consumer data; cloud service models; computing service model; data files; data integrity concerns; data objects; data protection; data security framework; elastic block storage volumes; file storage level; multilevel identity encryption approach; practical data privacy; shared storage media; two factor identity verification process; two level identity verification process; unified data encryption architecture; virtual server storage requirement; Cloud computing; Clouds; Data privacy; Encryption; Servers; Cloud Computing; Data encryption; Data integrity; Infrastructure as a service (IaaS);
Conference_Titel :
Computer Applications and Information Systems (WCCAIS), 2014 World Congress on
Conference_Location :
Hammamet
Print_ISBN :
978-1-4799-3350-1
DOI :
10.1109/WCCAIS.2014.6916583