DocumentCode
3144914
Title
Versatile Key Management for Secure Cloud Storage
Author
Graf, Sebastian ; Lang, Philippe ; Hohenadel, S.A. ; Waldvogel, Marcel
Author_Institution
Distrib. Syst. Group, Univ. of Konstanz, Konstanz, Germany
fYear
2012
fDate
8-11 Oct. 2012
Firstpage
469
Lastpage
474
Abstract
Not only does storing data in the cloud utilize specialized infrastructures facilitating immense scalability and high availability, but it also offers a convenient way to share any information with user-defined third-parties. However, storing data on the infrastructure of commercial third party providers, demands trust and confidence. Simple approaches, like merely encrypting the data by providing encryption keys, which at most consist of a shared secret supporting rudimentary data sharing, do not support evolving sets of accessing clients to common data. Based on approaches from the area of stream-encryption, we propose an adaption for enabling scalable and flexible key management within heterogeneous environments like cloud scenarios. Representing access-rights as a graph, we distinguish between the keys used for encrypting hierarchical data and the encrypted updates on the keys enabling flexible join-/leave-operations of clients. This distinction allows us to utilize the high availability of the cloud as updating mechanism without harming confidentiality. Our graph-based key management results in an adaption of nodes related to the changed key. The updates on the keys again continuously create an overhead related to the number of these updated nodes. The proposed scalable approach utilizes cloud-based infrastructures for confidential data and key sharing in collaborative workflows supporting variable client-sets.
Keywords
cloud computing; cryptography; storage management; access-rights; data storage; encryption keys; secure cloud storage; stream-encryption; versatile key management; Availability; Cloud computing; Encryption; Materials; Permission; Scalability; cloud; confidentiality; encryption; key management; versakey;
fLanguage
English
Publisher
ieee
Conference_Titel
Reliable Distributed Systems (SRDS), 2012 IEEE 31st Symposium on
Conference_Location
Irvine, CA
ISSN
1060-9857
Print_ISBN
978-1-4673-2397-0
Type
conf
DOI
10.1109/SRDS.2012.80
Filename
6424897
Link To Document