A Simple Technique for Securing Data at Rest Stored in a Computing Cloud

  • Authors:
  • Jeff Sedayao;Steven Su;Xiaohao Ma;Minghao Jiang;Kai Miao

  • Affiliations:
  • Intel Corporation, Shanghai, China 200131;Intel Corporation, Shanghai, China 200131;Intel Corporation, Shanghai, China 200131;Intel Corporation, Shanghai, China 200131;Intel Corporation, Shanghai, China 200131

  • Venue:
  • CloudCom '09 Proceedings of the 1st International Conference on Cloud Computing
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

"Cloud Computing" offers many potential benefits, including cost savings, the ability to deploy applications and services quickly, and the ease of scaling those application and services once they are deployed. A key barrier for enterprise adoption is the confidentiality of data stored on Cloud Computing Infrastructure. Our simple technique implemented with Open Source software solves this problem by using public key encryption to render stored data at rest unreadable by unauthorized personnel, including system administrators of the cloud computing service on which the data is stored. We validate our approach on a network measurement system implemented on PlanetLab. We then use it on a service where confidentiality is critical --- a scanning application that validates external firewall implementations.