ACM Home Page
Please provide us with feedback. Feedback
Efficient integrity checking of untrusted network storage
Full text PdfPdf (637 KB)
Source
Conference on Computer and Communications Security archive
Proceedings of the 4th ACM international workshop on Storage security and survivability table of contents
Alexandria, Virginia, USA
SESSION: Untrusted storage table of contents
Pages 43-54  
Year of Publication: 2008
ISBN:978-1-60558-299-3
Authors
Alexander Heitzmann  Brown University, Providence, RI, USA
Bernardo Palazzi  Brown University, Providence, RI, Roma TRE University, and ISCOM, Rome, Italy
Charalampos Papamanthou  Brown University, Providence, RI, USA
Roberto Tamassia  Brown University, Providence, RI, USA
Sponsors
ACM: Association for Computing Machinery
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 16,   Downloads (12 Months): 181,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1456469.1456479
What is a DOI?

ABSTRACT

Outsourced storage has become more and more practical in recent years. Users can now store large amounts of data in multiple servers at a relatively low price. An important issue for outsourced storage systems is to design an efficient scheme to assure users that their data stored at remote servers has not been tampered with. This paper presents a general method and a practical prototype application for verifying the integrity of files in an untrusted network storage service. The verification process is managed by an application running in a trusted environment (typically on the client) that stores just one cryptographic hash value of constant size, corresponding to the "digest" of an authenticated data structure. The proposed integrity verification service can work with any storage service since it is transparent to the storage technology used. Experimental results show that our integrity verification method is efficient and practical for network storage systems.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
Amazon S3 (simple storage service). http://aws.amazon.com/s3.
 
2
JetS3t, an open source java toolkit for Amazon S3. http://jets3t.s3.amazonaws.com/index.html.
3
 
4
 
5
G. Di Battista and B. Palazzi. Authenticated relational tables and authenticated skip lists. In Proc. IFIP Working Conference on Data and Applications Security, pp. 31--46, 2007.
6
 
7
E.-J. Goh, H. Shacham, N. Modadugu, and D. Boneh. SiRiUS: Securing remote untrusted storage. In Proc. Network and Distributed System Security, pp. 131--145, 2003.
 
8
M. T. Goodrich, M. Shin, R. Tamassia, and W. H. Winsborough. Authenticated dictionaries for fresh attribute credentials. In Proc. Trust Management Conference, pp. 332--347, 2003.
 
9
 
10
M. T. Goodrich, R. Tamassia, and A. Schwerin. Implementation of an authenticated dictionary with skip lists and commutative hashing. In DARPA Information Survivability Conference and Exposition II, pp. 68--82, 2001.
 
11
R. C. Jammalamadaka, R. Gamboni, S. Mehrotra, K. E. Seamons, and N. Venkatasubramanian. gVault: A gmail based cryptographic network file system. In Proc. Working Conference on Data and Applications Security, pp. 161--176, 2007.
12
 
13
14
 
15
 
16
 
17
J. Manger. Response on Jungle Disk Blog. http://blog.jungledisk.com/2006/06/06/ encryption/#comment-26.
 
18
 
19
 
20
G. Miklau and D. Suciu. Implementing a tamper-evident database system. In Proc. Asian Computing Science Conference, pp. 28--48, 2005.
21
 
22
M. Narasimha and G. Tsudik. Authentication of Outsourced Databases Using Signature Aggregation and Chaining. In Proc. In. Conf. on Database Systems for Advanced Applications, pp. 420--436, 2006.
 
23
 
24
C. Papamanthou and R. Tamassia. Time and Space Efficient Algorithms for Two-Party Authenticated Data Structures. In Proc. Information and Communications Security, pp. 1--15, 2007.
25
 
26
 
27
H. Shacham and B. Waters. Compact proofs of retrievability. Crypto. ePrint Arch., 08/073, 2008.
 
28
R. Tamassia. Authenticated data structures. In Proc. European Symposium on Algorithms, pp. 2--5, 2003.
 
29
R. Tamassia and N. Triandopoulos. Computational bounds on hierarchical data processing with applications to information security. In Proc. Int. Colloquium on Automata, Languages and Programming, pp. 153--165, 2005.
 
30

Collaborative Colleagues:
Alexander Heitzmann: colleagues
Bernardo Palazzi: colleagues
Charalampos Papamanthou: colleagues
Roberto Tamassia: colleagues