• DocumentCode
    3144914
  • Title

    Versatile Key Management for Secure Cloud Storage

  • Author

    Graf, Sebastian ; Lang, Philippe ; Hohenadel, S.A. ; Waldvogel, Marcel

  • Author_Institution
    Distrib. Syst. Group, Univ. of Konstanz, Konstanz, Germany
  • fYear
    2012
  • fDate
    8-11 Oct. 2012
  • Firstpage
    469
  • Lastpage
    474
  • Abstract
    Not only does storing data in the cloud utilize specialized infrastructures facilitating immense scalability and high availability, but it also offers a convenient way to share any information with user-defined third-parties. However, storing data on the infrastructure of commercial third party providers, demands trust and confidence. Simple approaches, like merely encrypting the data by providing encryption keys, which at most consist of a shared secret supporting rudimentary data sharing, do not support evolving sets of accessing clients to common data. Based on approaches from the area of stream-encryption, we propose an adaption for enabling scalable and flexible key management within heterogeneous environments like cloud scenarios. Representing access-rights as a graph, we distinguish between the keys used for encrypting hierarchical data and the encrypted updates on the keys enabling flexible join-/leave-operations of clients. This distinction allows us to utilize the high availability of the cloud as updating mechanism without harming confidentiality. Our graph-based key management results in an adaption of nodes related to the changed key. The updates on the keys again continuously create an overhead related to the number of these updated nodes. The proposed scalable approach utilizes cloud-based infrastructures for confidential data and key sharing in collaborative workflows supporting variable client-sets.
  • Keywords
    cloud computing; cryptography; storage management; access-rights; data storage; encryption keys; secure cloud storage; stream-encryption; versatile key management; Availability; Cloud computing; Encryption; Materials; Permission; Scalability; cloud; confidentiality; encryption; key management; versakey;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Reliable Distributed Systems (SRDS), 2012 IEEE 31st Symposium on
  • Conference_Location
    Irvine, CA
  • ISSN
    1060-9857
  • Print_ISBN
    978-1-4673-2397-0
  • Type

    conf

  • DOI
    10.1109/SRDS.2012.80
  • Filename
    6424897