ACM Home Page
Please provide us with feedback. Feedback
Improving secure long-term archival of digitally signed documents
Full text PdfPdf (977 KB)
Source
Conference on Computer and Communications Security archive
Proceedings of the 4th ACM international workshop on Storage security and survivability table of contents
Alexandria, Virginia, USA
SESSION: Data security table of contents
Pages 27-36  
Year of Publication: 2008
ISBN:978-1-60558-299-3
Authors
Carmela Troncoso  K.U. Leuven, ESAT/COSIC-IBBT, Leuven-Heverlee, Belgium
Danny De Cock  K.U. Leuven, ESAT-IBBT, Leuven-Heverlee, Belgium
Bart Preneel  K.U. Leuven, ESAT-IBBT, Leuven-Heverlee, Belgium
Sponsors
ACM: Association for Computing Machinery
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 1
Additional Information:

abstract   references   cited by   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1456469.1456476
What is a DOI?

ABSTRACT

Long-term archival of signed documents presents specific challenges that do not need to be considered in short-term storage systems. In this paper we present a Secure Long-Term Archival System (SLTAS) that protects, in a verifiable way, the validity of today's digital signatures in a distant future. Moreover, our protocol is the first proposal that provides a proof of when a signature was created, without the possibility of backdating. We include a description of our scheme and an evaluation of its performance in terms of computing time and storage space. Finally, we discuss how to extend our system to achieve additional security properties. This paper does not focus on the long-term availability of archived information. nor on format migration problems.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
 
2
R. Anderson. The eternity service. In J. Pribyl, editor, Proceedings of Pragocrypt '96, pages 242--252, Prague, 1996. Czech Technical University Publishing House.
3
 
4
M. Baker, K. Leaton, and S. Martin. Why traditional storage systems don't help us save stuff forever. In Proceedings of the IEEE/IFIP International Conference on Dependable Systems and Networks, 1st Workshop on Hot Topics in System Dependability (HotDep--05), Yokohama, Japan, June 2005. IEEE Computer Society Press.
5
 
6
 
7
A. Jerman Blazic and B. Dzonova-Jerman-Blazic. Implementing trustworthy internet based long term electronic preservation service - the eKeeper project. In M. H. Hamza, editor, IASTED International Conference on Communications, Internet, and Information Technology, pages 291--296, 2004.
 
8
A. Jerman Blazic and P. Sylvester. Provision of long-term archiving service for digitally signed documents using an archive interaction protocol. In D. W. Chadwick and G. Zhao, editors, EuroPKI, pages 240--254, 2005.
 
9
R. Brandner, U. Pordesch, and T. Gondrom. RFC 4998: Evidence record syntax (ERS). RFC 4998, Internet Engineering Task Force, August 2007.
 
10
R. Brinkman, J. Doumen, and W. Jonker. Using secret sharing for searching in encrypted data. In W. Jonker and M. Petkovic, editors, Secure Data Management, volume 3178 of Lecture Notes in Computer Science, pages 18--27. Springer, 2004.
 
11
 
12
C. Casten. The power of XAM. SNIA Data Management Forum.
13
 
14
S. Chokhani and C. Wallace. Trusted archiving. In Proceedings of the 3rd Annual PKI R& D Workshop. NIST, April 2004.
 
15
G. Danezis and C. Diaz. Space-efficient private search. In R. Dhamija and S. Dietrich, editors, Proceedings of Financial Cryptography (FC2007), volume 4886 of Lecture Notes in Computer Science, pages 148--162, Tobago, 2007. Springer-Verlag.
16
 
17
 
18
D. G. Filho and P. Barreto. Demonstrating data possession and uncheatable data transfer. Technical report, 2006. http://eprint.iacr.org/.
 
19
International Comitee for Information Technology. ANSI/INCITS 400--2004 SCSI Object--based Storage Device Commands (OSD), 2004.
 
20
International Organization for Standarization. ISO standard 14721:2003 space data and information transfer systems-a reference model for an open archival information system (OAIS), 2003.
 
21
G. R. Ganger, P. K. Khosla, M. Bakkaloglu, M. W. Bigrigg, G. R. Goodson, S. Oguz, V. Pandurangan, C. A. N. Soules, J. D. Strunk, and J. J. Wylie. Survivable storage systems. In Proceedings of the DARPA Information Survivability Conference & Exposition (DISCEX), pages 184--195, Anaheim, CA, USA, June 2001. IEEE CS Press.
 
22
S. Haber and P. Kamat. A content integrity service for long-term digital archives. In IS&T Archiving Conference (Archiving 2006), volume 3, pages 159--164. The Society for Imaging Science and Technology, May 2006.
 
23
 
24
European Telecommunication Standard Institute. ETSI TS 101 903 - XML advanced electronic signatures (XAdES), 2002.
 
25
ITU. ITU-T rec. X.509|ISO/IEC 9594--8: The directory: Authentication framework, 2000.
26
 
27
 
28
 
29
RSA Laboratories. PKCS#1v2.1: RSA cryptography standard, June 2002.
 
30
A. Lenstra. Key lengths. Handbook of Information Security, Volume II: Information Warfare; Social, Legal and International Issues; and Security Foundations, Volume II: Information Warfare; Social, Legal and International Issues; and Security Foundations: 617--635, 2006.
 
31
 
32
33
 
34
J. McAdams. 27 billion gigabytes to be archived by 2010. Computerworld, December 2007.
 
35
 
36
G. E. Moore. Cramming more components onto integrated circuits. Proceedings of the IEEE, 86(1):82--85, 1998.
 
37
 
38
R. Ostrovsky and W. E. Skeith III. A survey of single-database private information retrieval: Techniques and applications. In T. Okamoto and X. Wang, editors, Public Key Cryptography, volume 4450 of Lecture Notes in Computer Science, pages 393--411. Springer-Verlag, 2007.
39
40
 
41
 
42
C. Wallace, R. Brandner, and U. Pordesch. Long-term archive service requirements. RFC 4810, Internet Engineering Task Force, March 2007.
 
43
C. Walter. Kryder's law. Scientific American, page 2, 2005.
44


Collaborative Colleagues:
Carmela Troncoso: colleagues
Danny De Cock: colleagues
Bart Preneel: colleagues