Skip to main content
Back to USENIX
  • Conferences
  • Students
Sign in

USENIX Conference Policies

  • Event Code of Conduct
  • Conference Network Policy
  • Statement on Environmental Responsibility Policy

A Framework for Evaluating Storage System Security

There are a variety of ways to ensure the security of data and the integrity of data transfer, depending on the set of anticipated attacks, the level of security desired by data owners, and the level of inconvenience users are willing to tolerate. Current storage systems secure data either by encrypting data on the wire, or by encrypting data on the disk. These systems seem very different, and currently there are no common parameters for comparing them. In this paper we propose a framework in which both types of systems can be evaluated along the security and performance axes. In particular, we show that all of the existing systems merely make different trade-offs along a single continuum and among a set of related security primitives. We use a trace from a time-sharing UNIX server used by a medium-sized workgroup to quantify the costs associated with each of these secure storage systems. We show that encrypt-on-disk systems offer both increased security and improved performance over encrypt-on-wire in the traced environment.

Erik Riedel, Hewlett-Packard Labs

Mahesh Kallahalla, Hewlett-Packard Labs

Ram Swaminathan, Hewlett-Packard Labs

BibTeX
@inproceedings {270757,
author = {Erik Riedel and Mahesh Kallahalla and Ram Swaminathan},
title = {A Framework for Evaluating Storage System Security},
booktitle = {Conference on File and Storage Technologies (FAST 02)},
year = {2002},
address = {Monterey, CA},
url = {https://www.usenix.org/conference/fast-02/framework-evaluating-storage-system-security},
publisher = {USENIX Association},
month = jan
}
Download

Links

Paper: 
http://www.usenix.org/publications/library/proceedings/fast02/full_papers/riedel/riedel.pdf
Paper (HTML): 
http://www.usenix.org/publications/library/proceedings/fast02/full_papers/riedel/riedel_html/index.html
  • Log in or register to post comments

© USENIX
EIN 13-3055038

  • Privacy Policy
  • Contact Us