loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
23rd IEEE International Conference on Distributed Computing Systems (ICDCS'03)
Responsive Security for Stored Data
Providence, Rhode Island
May 19-May 22
ISBN: 0-7695-1920-2
Subramanian Lakshmanan, Georgia Institute of Technology
Mustaque Ahamad, Georgia Institute of Technology
H. Venkateswaran, Georgia Institute of Technology
We present the design of a distributed store that offers various levels of security guarantees while tolerating a limited number of nodes that are compromised by an adversary. The store uses secret sharing schemes to offer security guarantees namely availability, confidentiality and integrity. However, a pure secret sharing scheme could suffer from performance problems and high access costs. We integrate secret sharing with replication for better performance and to keep access costs low. The tradeoffs involved between availability and access cost on one hand and confidentiality and integrity on the other are analyzed. Our system differs from traditional approaches such as state machine or quorum based replication that have been developed to tolerate Byzantine failures. Unlike such systems, we augment replication with secret sharing and demonstrate that such a hybrid scheme offers additional flexibility that is not possible with replication alone.
Index Terms:
Security, Byzantine fault tolerance, replication, secret sharing, availability, confidentiality, data integrity, distributed storage service
Citation:
Subramanian Lakshmanan, Mustaque Ahamad, H. Venkateswaran, "Responsive Security for Stored Data," icdcs, pp.146, 23rd IEEE International Conference on Distributed Computing Systems (ICDCS'03), 2003
Usage of this product signifies your acceptance of the Terms of Use.