DocumentCode
2645182
Title
Design and Implementation of a Forced Encryption Kernel Module
Author
Furukawa, Jun ; Sakai, Akihiro ; Nishide, Takashi ; Hori, Yoshiaki ; Sakurai, Kouichi
Author_Institution
Dept. of Adv. Inf. Technol., Kyushu Univ., Fukuoka, Japan
fYear
2011
fDate
June 30 2011-July 2 2011
Firstpage
607
Lastpage
611
Abstract
Access control mechanisms such as access control lists (ACLs)are often used against divulging of sensitive information. However, when this is implemented as apart of a kernel, if someone stole the storage media, he can easily avoid the access control mechanisms. To complement the defect of the access control mechanisms, we designed and implemented an LKM that applies forced encryption to the data that is transmitted to an external storage media. Advantages of our LKM-based approach include fast encryption in kernel space, easy activation/deactivation of the functionality and the possibility to easily share encrypted files within an authorized group.
Keywords
authorisation; cryptography; operating system kernels; access control lists; access control mechanisms; forced encryption kernel module; loadable kernel module; storage media; Access control; Encryption; File systems; Kernel; Linux; Cryptographic Filesystem; Forced Encryption; I/O Management; Loadable Kernel Module;
fLanguage
English
Publisher
ieee
Conference_Titel
Innovative Mobile and Internet Services in Ubiquitous Computing (IMIS), 2011 Fifth International Conference on
Conference_Location
Seoul
Print_ISBN
978-1-61284-733-7
Electronic_ISBN
978-0-7695-4372-7
Type
conf
DOI
10.1109/IMIS.2011.68
Filename
5976283
Link To Document