Towards practical oblivious cloud storage데이터 접근 패턴을 인식하지 못하는 클라우드 저장소의 실용성에 대한 연구

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 142
  • Download : 0
Many companies and individuals continue to adopt cloud storage due to the convenience of manageability and scalability. However, security concern occurs because the physical machine resides in the remote cloud. Even though a client uses strong encryption schemes to protect his contents from being leaked, a malicious cloud storage provider can still learn valuable information on encrypted data by observing data access pattern. The standard way to hide data access pattern is using a compiler, oblivious RAM. Recently, various research have been conducted to apply oblivious RAM to the cloud storage, but there are limitations such as using a lot of network bandwidth or requiring an unrealistic trust model. In this paper, we introduce a practical oblivious cloud storage by leveraging a hardware technology, trusted execution environment. Our system leverages Intel SGX technology to create secure containers inside the cloud. By executing oblivious RAM inside the secure container, our system eliminates network bandwidth bottleneck. Furthermore, the secure container provides a more realistic trust model than previous research by protecting security-sensitive data from external attacks. Finally, our novel optimistic concurrency control on the storage shows low storage usage with a reasonable performance overhead. We evaluated our system in the cloud-like environment with 20~GB of database, and the system shows 2.4x higher throughput and 2.6x shorter response time than the state-of-the-art oblivious cloud storage. The optimistic concurrency control using less storage also shows a reasonable performance overhead(<7%).
Advisors
Han, Dongsuresearcher한동수researcher
Description
한국과학기술원 :전기및전자공학부,
Publisher
한국과학기술원
Issue Date
2020
Identifier
325007
Language
eng
Description

학위논문(석사) - 한국과학기술원 : 전기및전자공학부, 2020.2,[iv, 24 p. :]

Keywords

클라우드 저장소▼a접근 패턴 유출▼a오블리비어스 램▼a신뢰 실행 환경; Cloud Storage▼aAccess pattern leakage▼aOblivious RAM▼aTrusted Execution Environment

URI
http://hdl.handle.net/10203/284774
Link
http://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=911404&flag=dissertation
Appears in Collection
EE-Theses_Master(석사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0