Matches in SemOpenAlex for { <https://semopenalex.org/work/W1601791261> ?p ?o ?g. }
Showing items 1 to 71 of
71
with 100 items per page.
- W1601791261 abstract "Storing data in the cloud offers a scalable and easy way to handle large amounts of data guaranteeing availability and scalability by the hosting Cloud Service Providers. The price for the gained availability is uncertainness about the integrity and confidentiality of the data. Even if common approaches provide high availability and end-to-end encryption necessary to achieve Availability and Confidentiality as security goals, other security requirements like Integrity and Accountability are neglected. The key management of those clients for encrypting data to satisfy Confidentiality must furthermore support join-/leave-operations within the client set. This work presents an architecture for a secure cloud gateway satisfying the common security goals Availability, Confidentiality, Integrity and Accountability. Mapping these security goals, XML as storage base is equipped with recursive integrity checks, encryption and versioning based on the native XML storage Treetank. A Key Manager extends this approach to provide the deployment of multiple clients sharing keys to the storage in a secure way. New key material is pushed to a server instance deployed as Platform-as-a-Service (PaaS) propagating this update to the clients. The server furthermore applies integrity checks on encrypted data within transfer and storage. Any communication between client, server and Key Manager relies on fixed defined workflows based upon web services. The proposed architecture called SecureCG thereby enables collaborative work on shared cloud storages within multiple clients ensuring confidentiality, consistency and availability of the stored data. I. MOTIVATION OF SECURE CLOUD STORAGE The flexibility of Cloud Based Services offers great possibilities to store any data in a guaranteed available and scalable manner. All data peculiarities ranging from block based byte chunks to Microsoft Word-documents are thereby persisted in the cloud. Cloud Storage Gateways represent convenient applications mapping such interfaces to common Cloud Service Providers. Most Cloud Storage Gateways thereby appear as standalone clients or centralized web applications. Even if Cloud Storage Gateways enable the power of Cloud Based Services to different kinds of clients, the gained Availability comes at a price. While Availability and Confidentiality are provided by the hosting of the encrypted primary data on Cloud Service Providers, Integrity, Confidentiality and Accountability are not sufficiently considered in existing approaches. Another drawback of current approaches is the dependency of Cloud Storage Gateways to the platform they run on, e.g. they are shipped as complete operating system images, hard coded in routers or delivered as platform dependent applications. Flexible usages representing libraries, server based infrastructures or user specific clients are not supported. A more flexible usage includes collaborative use cases and related distributed environments. Even if Availability and Confidentiality are already provided, the related key management must be adapted to satisfy this usage. Common centralized access controls use the same key for all authorized clients which complicate modifications on the set of authorized clients. Besides the necessary protection of the data from unauthorized access of excluded clients, updated key material must be propagated to the valid clients in a scalable and secure manner. An XML based architecture as Cloud Storage Gateway named SecureCG satisfies all security requirements, platform independence and flexible key management. Based upon the native XML storage Treetank [3], any data is wrapped on demand into XML[13] and persisted afterwards in the cloud. The underlaying tree structure enables SecureCG to provide easy ways of integrity checks supporting the security goal of Integrity. The Accountability is guarded through the native versioning of XML within Treetank. Encryption on the data satisfies the goal of Confidentiality whereas the underling tree structure of the XML plus the provided versioning functionality is exposed. SecureCG supports flexible handling of multiple Treetank clients with unique de-/encryption keys using a standalone Key Manager and the VersaKey approach[12]. Equipped with the platform independent, block based interface jSCSI [7], and the adaptive REST based interface JAX-RX[4], the client provides a flexible and secure storage interface. The storage itself is encapsulated by a server deployed as Platform as a Service(PaaS) implementation. The PaaS implementation provides own integrity checks to ensure Integrity within the transmission and the storage of the data. Even if the server only stores encrypted data to ensure Confidentiality on Cloud Based Services, the server also checks and propagates new encrypted keys within the authorized client set. Communication between client, server and Key Manager relies on web services with defined workflows. Within this distributed architecture and as a consequence thereof the scattered functionality, SecureCG fulfill the security requirements even on untrusted storage while working with all different types of data. Treetank as the base of SecureCG implements already the Accountability and partly the Confidentiality and the Integrity." @default.
- W1601791261 created "2016-06-24" @default.
- W1601791261 creator A5001032009 @default.
- W1601791261 date "2011-01-01" @default.
- W1601791261 modified "2023-09-27" @default.
- W1601791261 title "A secure cloud gateway based upon XML and web services" @default.
- W1601791261 cites W1517085863 @default.
- W1601791261 cites W2084044852 @default.
- W1601791261 cites W2099863431 @default.
- W1601791261 cites W2103866959 @default.
- W1601791261 cites W2123274186 @default.
- W1601791261 cites W2170679667 @default.
- W1601791261 cites W2230830246 @default.
- W1601791261 cites W2275530856 @default.
- W1601791261 cites W47952729 @default.
- W1601791261 cites W79651097 @default.
- W1601791261 cites W90764097 @default.
- W1601791261 hasPublicationYear "2011" @default.
- W1601791261 type Work @default.
- W1601791261 sameAs 1601791261 @default.
- W1601791261 citedByCount "2" @default.
- W1601791261 countsByYear W16017912612012 @default.
- W1601791261 crossrefType "journal-article" @default.
- W1601791261 hasAuthorship W1601791261A5001032009 @default.
- W1601791261 hasConcept C111919701 @default.
- W1601791261 hasConcept C148730421 @default.
- W1601791261 hasConcept C17886624 @default.
- W1601791261 hasConcept C184842701 @default.
- W1601791261 hasConcept C2777059624 @default.
- W1601791261 hasConcept C38652104 @default.
- W1601791261 hasConcept C41008148 @default.
- W1601791261 hasConcept C48044578 @default.
- W1601791261 hasConcept C77088390 @default.
- W1601791261 hasConcept C79974875 @default.
- W1601791261 hasConceptScore W1601791261C111919701 @default.
- W1601791261 hasConceptScore W1601791261C148730421 @default.
- W1601791261 hasConceptScore W1601791261C17886624 @default.
- W1601791261 hasConceptScore W1601791261C184842701 @default.
- W1601791261 hasConceptScore W1601791261C2777059624 @default.
- W1601791261 hasConceptScore W1601791261C38652104 @default.
- W1601791261 hasConceptScore W1601791261C41008148 @default.
- W1601791261 hasConceptScore W1601791261C48044578 @default.
- W1601791261 hasConceptScore W1601791261C77088390 @default.
- W1601791261 hasConceptScore W1601791261C79974875 @default.
- W1601791261 hasLocation W16017912611 @default.
- W1601791261 hasOpenAccess W1601791261 @default.
- W1601791261 hasPrimaryLocation W16017912611 @default.
- W1601791261 hasRelatedWork W121883176 @default.
- W1601791261 hasRelatedWork W1516172211 @default.
- W1601791261 hasRelatedWork W1605828827 @default.
- W1601791261 hasRelatedWork W1637670397 @default.
- W1601791261 hasRelatedWork W2005534431 @default.
- W1601791261 hasRelatedWork W2057877220 @default.
- W1601791261 hasRelatedWork W2058030385 @default.
- W1601791261 hasRelatedWork W2107544650 @default.
- W1601791261 hasRelatedWork W2110352689 @default.
- W1601791261 hasRelatedWork W2150394588 @default.
- W1601791261 hasRelatedWork W2171459834 @default.
- W1601791261 hasRelatedWork W2372882116 @default.
- W1601791261 hasRelatedWork W2385760861 @default.
- W1601791261 hasRelatedWork W2387477802 @default.
- W1601791261 hasRelatedWork W2484724943 @default.
- W1601791261 hasRelatedWork W2511590577 @default.
- W1601791261 hasRelatedWork W2833621474 @default.
- W1601791261 hasRelatedWork W2931217064 @default.
- W1601791261 hasRelatedWork W3117593533 @default.
- W1601791261 hasRelatedWork W3139792545 @default.
- W1601791261 isParatext "false" @default.
- W1601791261 isRetracted "false" @default.
- W1601791261 magId "1601791261" @default.
- W1601791261 workType "article" @default.