|
ABSTRACT
The LOCKSS project has developed and deployed in a world-wide test a peer-to-peer system for preserving access to journals and other archival information published on the Web. It consists of a large number of independent, low-cost, persistent Web caches that cooperate to detect and repair damage to their content by voting in “opinion polls.” Based on this experience, we present a design for and simulations of a novel protocol for voting in systems of this kind. It incorporates rate limitation and intrusion detection to ensure that even some very powerful adversaries attacking over many years have only a small probability of causing irrecoverable damage before being detected.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Abadi, M., Burrows, M., Manasse, M., and Wobber, T. 2003. Moderately hard, memory-bound functions. In Proceedings of the 10th Annual Network and Distributed System Security Symposium (San Diego, CA).
|
| |
2
|
Anderson, R. J. 1996. The Eternity Service. In Proceedings of the 1st International Conference on the Theory and Applications of Cryptology (PRAGOCRYPT 1996, Prague, Czech Republic).
|
| |
3
|
ARL---Association of Research Libraries. 2001. ARL Statistics 2000-01. Available online at http://www.arl.org/stats/arlstat/01pub/intro.html.
|
| |
4
|
Back, A. 2002. Hashcash---a denial of service counter measure. Available online at http://www.hashcash.org/hashcash.pdf.
|
 |
5
|
Kenneth P. Birman , Mark Hayden , Oznur Ozkasap , Zhen Xiao , Mihai Budiu , Yaron Minsky, Bimodal multicast, ACM Transactions on Computer Systems (TOCS), v.17 n.2, p.41-88, May 1999
[doi> 10.1145/312203.312207]
|
| |
6
|
|
 |
7
|
Yuan Chen , Jan Edler , Andrew Goldberg , Allan Gottlieb , Sumeet Sobti , Peter Yianilos, A prototype implementation of archival Intermemory, Proceedings of the fourth ACM conference on Digital libraries, p.28-37, August 11-14, 1999, Berkeley, California, United States
[doi> 10.1145/313238.313249]
|
| |
8
|
Chor, B. and Dwork, C. 1989. Randomization in Byzantine agreement. Advan. Comput. Res. 5, 443--497.
|
| |
9
|
Ian Clarke , Oskar Sandberg , Brandon Wiley , Theodore W. Hong, Freenet: a distributed anonymous information storage and retrieval system, International workshop on Designing privacy enhancing technologies: design issues in anonymity and unobservability, p.46-66, January 2001, Berkeley, California, United States
|
| |
10
|
ConservationOnline. 2003. Electronic storage media. Available online at http://palimpsest.stanford.edu/bytopic/electronic-records/electronic-storage-media/.
|
 |
11
|
Frank Dabek , M. Frans Kaashoek , David Karger , Robert Morris , Ion Stoica, Wide-area cooperative storage with CFS, Proceedings of the eighteenth ACM symposium on Operating systems principles, October 21-24, 2001, Banff, Alberta, Canada
|
| |
12
|
Davis, D. 1996. Compliance defects in public-key cryptography. In Proceedings of the 6th USENIX Security Symposium (San Jose, CA). 171--178.
|
| |
13
|
Dean, D. and Stubblefield, A. 2001. Using client puzzles to protect TLS. In Proceedings of the 10th USENIX Security Symposium (Washington, DC).
|
| |
14
|
Diffie, W. 2003. Perspective: Decrypting the secret to strong security. Available online at http://news.com.com/2010-1071-980462.html.
|
| |
15
|
Diffie, W. and Hellman, M. E. 1976. New directions in cryptography. IEEE Trans. Inform. Theor. IT-22, 6 (Nov.), 644--654.
|
| |
16
|
|
| |
17
|
|
| |
18
|
Dwork, C., Goldberg, A., and Naor, M. 2003. On memory-bound functions for fighting spam. In Proceedings of the 23rd Annual International Cryptology Conference (Santa Barbara, CA).
|
| |
19
|
|
| |
20
|
Erdos, M. and Cantor, S. 2002. Shibboleth Architecture DRAFT v05. Available online at http://shibboleth.internet2.edu/docs/draft-internet2-shibboleth-arch-v05.pdf. Work in progress.
|
| |
21
|
Friedman, E. J. and Resnick, P. 2001. The social costs of cheap pseudonyms. J. Econom. Managem. Strat. 10, 2 (Summer), 173--199.
|
| |
22
|
Fullmer, C. 2002. Storage and multimedia: The facts and more. Available online at http://www.cse.ucsc.edu/classes/cmpe003/Fall02/L11_ch6.pps.
|
| |
23
|
Giuli, T. and Baker, M. 2002. Narses: A scalable, flow-based network simulator. Tech. rep. arXiv:cs.PF/0211024. Computer Science Department, Stanford University, Stanford, CA.
|
| |
24
|
Horlings, J. 2003. Cd-r's binnen twee jaar onleesbaar. Available online at http://www.pc-active.nl/toonArtikel.asp?artikelID=508. http://www.cdfreaks.com/news/7751.
|
| |
25
|
Keller, M., Reich, V., and Herkovic, A. 2003. What is a library anymore, anyway? First Monday 8, 5 (May). Available online at http://www.firstmonday.org/issues/issue8_5/keller/index.html.
|
 |
26
|
John Kubiatowicz , David Bindel , Yan Chen , Steven Czerwinski , Patrick Eaton , Dennis Geels , Ramakrishna Gummadi , Sean Rhea , Hakim Weatherspoon , Chris Wells , Ben Zhao, OceanStore: an architecture for global-scale persistent storage, Proceedings of the ninth international conference on Architectural support for programming languages and operating systems, p.190-201, November 2000, Cambridge, Massachusetts, United States
|
| |
27
|
|
| |
28
|
Maniatis, P., Giuli, T., Roussopoulos, M., Rosenthal, D. S. H., and Baker, M. 2004. Impeding attrition attacks in P2P systems. In Proceedings of the 11th ACM SIGOPS European Workshop (Leuven, Belgium).
|
 |
29
|
Petros Maniatis , David S. H. Rosenthal , Mema Roussopoulos , Mary Baker , TJ Giuli , Yanto Muliadi, Preserving peer replicas by rate-limited sampled voting, Proceedings of the nineteenth ACM symposium on Operating systems principles, October 19-22, 2003, Bolton Landing, NY, USA
|
| |
30
|
Manns, B. and Shahani, C. J. 2003. Longevity of CD media research at the Library of Congress. Available online at http://www.loc.gov/preserv/study\%20of\%20CD\%20longevity.pdf.
|
| |
31
|
Michalakis, N., Chiu, D.-M., and Rosenthal, D. S. H. 2003. Long term data resilience using opinion polls. In Proceedings of the 22nd IEEE International Performance Computing and Communications Conference (Phoenix, AZ).
|
| |
32
|
Mogge, D. 1999. Seven years of tracking electronic publishing: The ARL Directory of Electronic Journals, Newsletters and Academic Discussion Lists. Library Hi Tech 17, 1, 17--25.
|
| |
33
|
Moore, D., Voelker, G. M., and Savage, S. 2001. Inferring Internet denial-of-service activity. In Proceedings of the 10th USENIX Security Symposium.
|
 |
34
|
David A. Patterson , Garth Gibson , Randy H. Katz, A case for redundant arrays of inexpensive disks (RAID), Proceedings of the 1988 ACM SIGMOD international conference on Management of data, p.109-116, June 01-03, 1988, Chicago, Illinois, United States
|
| |
35
|
Quirke, C. 2002. Hard drive data corruption. Available online at http://users.iafrica.com/c/cq/cquirke/baddata.htm.
|
 |
36
|
|
| |
37
|
Rhea, S., Geels, D., Roscoe, T., and Kubiatowicz, J. 2004. Handling Churn in a DHT. In Proceedings of the Usenix Annual Technical Conference (Boston, MA).
|
| |
38
|
Rosenthal, D. S. H. 2003. A digital preservation network appliance based on OpenBSD. In Proceedings of BSDcon 2003 (San Mateo, CA).
|
| |
39
|
Rosenthal, D. S. H. and Reich, V. 2000. Permanent Web publishing. In Proceedings of the USENIX Annual Technical Conference, Freenix Track (San Diego, CA). 129--140.
|
| |
40
|
Rosenthal, D. S. H., Roussopoulos, M., Maniatis, P., and Baker, M. 2003. Economic measures to resist attacks on a peer-to-peer network. In Proceedings of the Workshop on Economics of Peer-to-Peer Systems (Berkeley, CA).
|
 |
41
|
Antony Rowstron , Peter Druschel, Storage management and caching in PAST, a large-scale, persistent peer-to-peer storage utility, Proceedings of the eighteenth ACM symposium on Operating systems principles, October 21-24, 2001, Banff, Alberta, Canada
|
| |
42
|
|
| |
43
|
Tenopir, C. 2004. Online scholarly journals: How many? The Library Journal 2 (Feb.). Available online at http://www.libraryjournal.com/index.asp?layout=articlePrint&articleID=C%A374956.
|
| |
44
|
U. S. Government. 2004. Web design and usability guidelines. Available online at http://usability.gov/guidelines/softhard.html.
|
| |
45
|
Venema, W. 1996. Murphy's Law and computer security. In Proceedings of the 6th USENIX Security Symposium (San Jose, CA).
|
 |
46
|
|
| |
47
|
|
| |
48
|
Wingfield, N. 2002. EBay's figurine scandal: Auction site merchant disappears with the goods. Wall Street J., Feb 22.
|
CITED BY 28
|
|
|
|
|
Mark W. Storer , Kevin M. Greenan , Ethan L. Miller , Kaladhar Voruganti, Pergamum: replacing tape with energy efficient, reliable, disk-based archival storage, Proceedings of the 6th USENIX Conference on File and Storage Technologies, p.1-16, February 26-29, 2008, San Jose, California
|
|
|
|
|
|
Mark W. Storer , Kevin M. Greenan , Ethan L. Miller , Kaladhar Voruganti, POTSHARDS: secure long-term storage without encryption, 2007 USENIX Annual Technical Conference on Proceedings of the USENIX Annual Technical Conference, p.1-14, June 17-22, 2007, Santa Clara, CA
|
|
|
|
|
|
Mary Baker , Mehul Shah , David S. H. Rosenthal , Mema Roussopoulos , Petros Maniatis , TJ Giuli , Prashanth Bungale, A fresh look at the reliability of long-term digital storage, ACM SIGOPS Operating Systems Review, v.40 n.4, October 2006
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Giuseppe Ateniese , Randal Burns , Reza Curtmola , Joseph Herring , Lea Kissner , Zachary Peterson , Dawn Song, Provable data possession at untrusted stores, Proceedings of the 14th ACM conference on Computer and communications security, October 28-31, 2007, Alexandria, Virginia, USA
|
|
|
|
|
|
|
|
|
|
|
|
Stephan Strodl , Florian Motlik , Kevin Stadler , Andreas Rauber, Personal & soho archiving, Proceedings of the 8th ACM/IEEE-CS joint conference on Digital libraries, June 16-20, 2008, Pittsburgh PA, PA, USA
|
|
|
S. Rabinovici-Cohen , M. E. Factor , D. Naor , L. Ramati , P. Reshef , S. Ronen , J. Satran , D. L. Giaretta, Preservation DataStores: new storage paradigm for preservation environments, IBM Journal of Research and Development, v.52 n.4, p.389-399, July 2008
|
|
|
|
|
|
|
|
|
Hakim Weatherspoon , Lakshmi Ganesh , Tudor Marian , Mahesh Balakrishnan , Ken Birman, Smoke and mirrors: reflecting files at a geographically remote location without loss of performance, Proccedings of the 7th conference on File and stroage technologies, p.211-224, February 24-27, 2009, San Francisco, California
|
|
|
Byung-Gon Chun , Petros Maniatis , Scott Shenker , John Kubiatowicz, Tiered fault tolerance for long-term integrity, Proccedings of the 7th conference on File and stroage technologies, p.267-282, February 24-27, 2009, San Francisco, California
|
|
|
|
|
|
Allen Clement , Edmund Wong , Lorenzo Alvisi , Mike Dahlin , Mirco Marchetti, Making Byzantine fault tolerant systems tolerate Byzantine faults, Proceedings of the 6th USENIX symposium on Networked systems design and implementation, p.153-168, April 22-24, 2009, Boston, Massachusetts
|
|
|
Mark W. Storer , Kevin M. Greenan , Ethan L. Miller , Kaladhar Voruganti, POTSHARDS—a secure, recoverable, long-term archival storage system, ACM Transactions on Storage (TOS), v.5 n.2, p.1-35, June 2009
|
|
|
|
|
|
|
|
|
|
|