2007 The Third International Symposium on Information Assurance and Security FPGA/ASIC based Cryptographic Object Store System Manchester, United Kingdom August 29-August 31 ISBN: 0-7695-2876-7
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/IAS.2007.59
To avoid re-encryption in cryptographic storage system when revoking users, Field Programmable Gate Array (FPGA) and Application Specific Integrated Circuit (ASIC) hardware module have been introduced to a cryptographic object store system, let private key never leave the hardware module and symmetric key only exist in hardware module in plaintext. Anyone doesn?t know private or symmetric key, so when revoking users, it just needs to modify access control list (ACL) to delete the privileges of the users. To facilitate file sharing and key management, group is adopted. In our system, almost all computationally expensive cryptographic operations are through FPGA/ASIC hardware module. Once creator revokes some users, objects don?t need re-encryption. How to use ACL and FPGA/ASIC hardware module to authenticate and authorize are described. And the procedure of object store and the distribution of meta-data are detailed. Finally, a cryptographic object store prototype system is implemented with tested and effective performance.
Citation:
Dan Feng, Lanxiang Chen, Lingfang Zeng, Zhongying Niu, "FPGA/ASIC based Cryptographic Object Store System," ias, pp.267-272, 2007 The Third International Symposium on Information Assurance and Security, 2007 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||