ACM Home Page
Please provide us with feedback. Feedback
iDataGuard: an interoperable security middleware for untrusted internet data storage
Full text PdfPdf (315 KB)
Source Middleware Conference archive
Proceedings of the ACM/IFIP/USENIX Middleware '08 Conference Companion table of contents
Leuven, Belgium
SESSION: Work in progress table of contents
Pages 36-41  
Year of Publication: 2008
ISBN:978-1-60558-369-3
Authors
Ravi Chandra Jammalamadaka  eBay, Inc.
Roberto Gamboni  YellowPages.com
Sharad Mehrotra  University of California, Irvine
Kent Seamons  Brigham Young Univerisity
Nalini Venkatasubramanian  University of California, Irvine
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 4,   Downloads (12 Months): 58,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1462735.1462744
What is a DOI?

ABSTRACT

Businesses that provide data storage facilities on the internet (IDP) have exploded recently. Such businesses provide the following benefits to end users: a) anytime, anywhere access to data; b) low cost; and c) good quality of service. Examples of data storage providers include Amazon S3 service, Windows SkyDrive, Nirvarnix, etc.

Users face two challenges in utilizing the storage infrastructures of the IDPs: a) Heterogeneity: Different IDPs provide different interfaces to application developers to store and fetch data with them due to lack of accepted standards; and b) Security: Data outsourced to IDPs is vulnerable to attacks from internet thieves and from malicious employees of IDPs.

In this paper, we present the design of iDataGuard, a client side interoperable security middleware that adapts to the heterogeneity of interfaces of IDPs and enforces security constraints on outsourced data. This significantly simplifies the effort for application development. To combat heterogeneity, iDataGuard incorporates an abstract service model that can be easily customized to individual IDPs. To address the security challenges, iDataGuard supports a security model that protects the confidentiality and integrity of outsourced data. We propose a novel indexing technique that allows search on the encrypted data stored at the IDPs. We illustrate the feasibility/efficacy of iDataGuard by implementing the middleware and executing it on two popular IDPs, Amazon S3 service and Gmail.com.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
G. Aggarwal, M. Bawa, P. Ganesan, H. Garcia-Molina, K. Kenthapadi, R. Motwani, U. Srivastava. D. Thomas, Y. Xu. Two Can Keep a Secret: A Distributed Architecture for Secure Database Services. 2nd Biennial Conference on Innovative Data Systems Research, CIDR 2005.
2
 
3
A. Briney. The 2001 Information Security Industry Survey. http://www.infosecuritymag.com/archives2001.shtml
4
 
5
G. Dhillon, and S. Moores. Computer crimes: theorizing about the enemy within. Computers & Security 20 (8):715--723.
 
6
E. Goh, H. Shacham, N. Modadugu, and D. Boneh, "SiRiUS: Securing remote untrusted storage," in Proc. Network and Distributed Systems Security (NDSS) Symposium 2003.
 
7
E. J. Goh. Secure Indexes. In submission
8
 
9
iDataGuard Project page. http://DataGuard.ics.uci.edu. (A full version of the paper is available here).
 
10
 
11
R. C. Jammalamadaka, R. Gamboni, S. Mehrotra, K. Seamons, N. Venkatasubramanian. gVault: A Gmail Based Cryptographic Network File System. In the proceedings of 21st Annual IFIP WG 11.3 Working Conference on Data and Applications.
12
 
13
 
14
 
15
 
16
RSA Laboraties. PKCS #5 V2.1: Password Based Cryptography Standard. ftp://ftp.rsasecurity.com/pub/pkcs/pkcs-5v2/pkcs5v2_1.pdf
 
17
 
18
 
19
 
20
 
21

Collaborative Colleagues:
Ravi Chandra Jammalamadaka: colleagues
Roberto Gamboni: colleagues
Sharad Mehrotra: colleagues
Kent Seamons: colleagues
Nalini Venkatasubramanian: colleagues