Key management for large-scale distributed storage systems

  • Authors:
  • Hoon Wei Lim

  • Affiliations:
  • SAP Research, Sophia Antipolis, France

  • Venue:
  • EuroPKI'09 Proceedings of the 6th European conference on Public key infrastructures, services and applications
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

Petabyte-scale file systems are often extremely large, containing gigabytes or terabytes of data that can be spread across hundreds or thousands of storage devices. Hence, the cost of security operations can be very high. Recent security proposals for large-scale file systems have been focussing on the use of hybrid symmetric and asymmetric key cryptographic techniques, in order to strive for a balance between security and performance. However, key management issues, such as distribution, renewal and revocation of keys, have not been explicitly addressed. In this paper, we first show that key management can be very challenging and costly in large-scale systems, and can have significant impact on the scalability of the systems. We then propose a file system security architecture which makes use of lightweight key management techniques. Our approach not only addresses essential key management concerns, it also improves existing proposals with stronger security and better usability.