首页> 外文会议>Proceedings of the EuroSys 2011 conference. >Keypad: An Auditing File System for Theft-Prone Devices
【24h】

Keypad: An Auditing File System for Theft-Prone Devices

机译:键盘:用于盗窃设备的审核文件系统

获取原文
获取原文并翻译 | 示例

摘要

This paper presents Keypad, an auditing file system for theft-prone devices, such as laptops and USB sticks. Keypad provides two important properties. First, Keypad supports finegrained file auditing: a user can obtain explicit evidence that no files have been accessed after a device's loss. Second, a user can disable future tile access after a device's loss, even in the absence of device network connectivity. Keypad achieves these properties by weaving together encryption and remote key storage. By encrypting files locally but storing encryption keys remotely, Keypad requires the involvement of an audit server with every protected file access. By alerting the audit server to refuse to return a particular file's key, the user can prevent new accesses after theft. We describe the Keypad architecture, a prototype implementation on Linux, and our evaluation of Keypad's performance and auditing fidelity. Our results show that Keypad overcomes the challenges posed by slow networks or disconnection, providing clients with usable forensics and control for their (increasingly) missing mobile devices.
机译:本文介绍了键盘,这是一个易于盗用的设备(例如笔记本电脑和USB随身碟)的审核文件系统。键盘提供两个重要的属性。首先,键盘支持细粒度的文件审核:用户可以获取明确的证据,证明设备丢失后没有文件被访问。其次,即使设备没有网络连接,用户也可以在设备丢失后禁用将来的图块访问。键盘通过将加密和远程密钥存储结合在一起来实现这些属性。通过本地加密文件但远程存储加密密钥,键盘要求审计服务器参与每个受保护的文件访问。通过警告审核服务器拒绝返回特定文件的密钥,用户可以防止盗窃后的新访问。我们描述了键盘架构,Linux上的原型实现以及对键盘性能和审核保真度的评估。我们的结果表明,键盘克服了缓慢的网络或断开连接所带来的挑战,可为客户(越来越多)丢失的移动设备提供可用的取证和控制。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号