• DocumentCode
    2645182
  • Title

    Design and Implementation of a Forced Encryption Kernel Module

  • Author

    Furukawa, Jun ; Sakai, Akihiro ; Nishide, Takashi ; Hori, Yoshiaki ; Sakurai, Kouichi

  • Author_Institution
    Dept. of Adv. Inf. Technol., Kyushu Univ., Fukuoka, Japan
  • fYear
    2011
  • fDate
    June 30 2011-July 2 2011
  • Firstpage
    607
  • Lastpage
    611
  • Abstract
    Access control mechanisms such as access control lists (ACLs)are often used against divulging of sensitive information. However, when this is implemented as apart of a kernel, if someone stole the storage media, he can easily avoid the access control mechanisms. To complement the defect of the access control mechanisms, we designed and implemented an LKM that applies forced encryption to the data that is transmitted to an external storage media. Advantages of our LKM-based approach include fast encryption in kernel space, easy activation/deactivation of the functionality and the possibility to easily share encrypted files within an authorized group.
  • Keywords
    authorisation; cryptography; operating system kernels; access control lists; access control mechanisms; forced encryption kernel module; loadable kernel module; storage media; Access control; Encryption; File systems; Kernel; Linux; Cryptographic Filesystem; Forced Encryption; I/O Management; Loadable Kernel Module;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Innovative Mobile and Internet Services in Ubiquitous Computing (IMIS), 2011 Fifth International Conference on
  • Conference_Location
    Seoul
  • Print_ISBN
    978-1-61284-733-7
  • Electronic_ISBN
    978-0-7695-4372-7
  • Type

    conf

  • DOI
    10.1109/IMIS.2011.68
  • Filename
    5976283