首页> 外文期刊>Frontiers of Information Technology & Electronic Engineering >ImgFS: a transparent cryptography for stored images using a filesystem in userspace
【24h】

ImgFS: a transparent cryptography for stored images using a filesystem in userspace

机译:ImgFS:使用用户空间中的文件系统对存储的图像进行透明加密

获取原文
           

摘要

Real-time encryption and decryption of digital images stored on end-user devices is a challenging task due to the inherent features of the images. Traditional software encryption applications generally suffered from the expense of user convenience, performance efficiency, and the level of security provided. To overcome these limitations, the concept of transparent encryption has been proposed. This type of encryption mechanism can be implemented most efficiently with kernel file systems. However, this approach has some disadvantages since developing a new file system and attaching it in the kernel level requires a deep understanding of the kernel internal data structure. A filesystem in userspace (FUSE) can be used to bridge the gap. Nevertheless, current implementations of cryptographic FUSE-based file systems suffered from several weaknesses that make them less than ideal for deployment. This paper describes the design and implementation of ImgFS, a fully transparent cryptographic file system that resides on user space. ImgFS can provide a sophisticated way to access, manage, and monitor all encryption and key management operations for image files stored on the local disk without any interaction from the user. The development of ImgFS has managed to solve weaknesses that have been identified on cryptographic FUSE-based implementations. Experiments were carried out to measure the performance of ImgFS over image files’ read and write against the cryptographic service, and the results indicated that while ImgFS has managed to provide higher level of security and transparency, its performance was competitive with other established cryptographic FUSE-based schemes of high performance.
机译:由于图像的固有特性,最终用户设备上存储的数字图像的实时加密和解密是一项艰巨的任务。传统的软件加密应用程序通常会遭受用户便利性,性能效率和提供的安全级别的损失。为了克服这些限制,已经提出了透明加密的概念。可以使用内核文件系统最有效地实现这种类型的加密机制。但是,这种方法有一些缺点,因为开发新的文件系统并将其附加到内核级别需要对内核内部数据结构有深入的了解。用户空间中的文件系统(FUSE)可用于弥合差距。但是,基于加密FUSE的文件系统的当前实现存在几个弱点,这些弱点使其不适用于部署。本文介绍了ImgFS的设计和实现,ImgFS是驻留在用户空间上的完全透明的加密文件系统。 ImgFS可以提供​​一种复杂的方式来访问,管理和监视存储在本地磁盘上的图像文件的所有加密和密钥管理操作,而无需用户进行任何交互。 ImgFS的开发设法解决了基于加密FUSE的实现中已经发现的弱点。进行了实验以衡量ImgFS在针对加密服务的图像文件读写方面的性能,结果表明,尽管ImgFS设法提供了更高级别的安全性和透明度,但其性能与其他已建立的加密FUSE-基于高性能的方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号