Key Management for Encrypted Data Storage in Distributed Systems

  • Authors:
  • Affiliations:
  • Venue:
  • SISW '03 Proceedings of the Second IEEE International Security in Storage Workshop
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

Confidential data stored on mass storage devices is atrisk to be disclosed to persons getting physical or administratoraccess to the device. Encrypting the data reducesthis risk, at the cost of more cumbersome administration.In this publication, we examine the problem of encrypteddata storage in a grid computing environment,where storage capacity and data is shared across organizationalboundaries. We propose an architecture thatallows users to store and share encrypted data in this environment.Access to decryption keys is granted based onthe grids data access permissions. The system is thereforeusable as an additional security feature togetherwith a classical access control mechanism. Data ownerscan choose different tradeoffs of security versusefficiency. Storage servers need not to be trusted and commonaccess control models are supported.