首页> 外文期刊>Information Systems >Supporting secure keyword search in the personal cloud
【24h】

Supporting secure keyword search in the personal cloud

机译:在个人云中支持安全的关键字搜索

获取原文
获取原文并翻译 | 示例
       

摘要

The Personal Cloud paradigm has emerged as a solution that allows individuals to manage under their control the collection, usage and sharing of their data. However, by regaining the full control over their data, the users also inherit the burden of protecting it against all forms of attacks and abusive usages. The Secure Personal Cloud architecture relieves the individual from this security task by employing a secure token (i.e., a tamper-resistant hardware device) to control all the sensitive information (e.g., encryption keys, metadata, indexes) and operations (e.g., authentication, data encryption/decryption, access control, and query processing). However, secure tokens are usually equipped with extremely low RAM but have significant Flash storage capacity (Gigabytes), which raises important barriers for embedded data management. This paper presents a new embedded search engine specifically designed for secure tokens, which applies to the important use-case of managing and securing documents in the Personal Cloud context. Conventional search engines privilege either insertion or query scalability but cannot meet both requirements at the same time. Moreover, very few solutions support data deletions and updates in this context. In this paper, we introduce three design principles, namely Write-Once Partitioning, Linear Pipelining and Background Linear Merging, and show how they can be combined to produce an embedded search engine matching the hardware constraints of secure tokens and reconciling high insert/delete/update rate and query scalability. Our experimental results, obtained with a prototype running on a representative hardware platform, demonstrate the scalability of the approach on large datasets and its superiority compared to state of the art methods. Finally, we also discuss the integration of our solution in another important real use-case related to performing information retrieval in smart objects. (C) 2017 Published by Elsevier Ltd.
机译:Personal Cloud范式已成为一种解决方案,允许个人在自己的控制下管理数据的收集,使用和共享。但是,通过重新获得对数据的完全控制权,用户也继承了保护数据免受各种形式的攻击和滥用的负担。安全的个人云架构通过采用安全令牌(即,防篡改硬件设备)来控制所有敏感信息(例如,加密密钥,元数据,索引)和操作(例如,身份验证,数据加密/解密,访问控制和查询处理)。但是,安全令牌通常配备了非常低的RAM,但具有显着的闪存存储容量(千兆字节),这为嵌入式数据管理增加了重要的障碍。本文提出了一种专门为安全令牌设计的新型嵌入式搜索引擎,该引擎适用于在Personal Cloud上下文中管理和保护文档的重要用例。传统的搜索引擎对插入或查询可伸缩性具有特权,但不能同时满足这两个要求。此外,在这种情况下,很少有解决方案支持数据删除和更新。在本文中,我们介绍了三种设计原则,即一次写入分区,线性流水线和背景线性合并,并展示了如何将它们组合在一起以生成嵌入式搜索引擎,以匹配安全令牌的硬件约束并协调高插入/删除/更新率和查询可扩展性。我们的实验结果是通过在具有代表性的硬件平台上运行的原型获得的,证明了该方法在大型数据集上的可伸缩性以及与最新方法相比的优越性。最后,我们还将讨论我们的解决方案在另一个重要的实际用例中的集成,该用例与在智能对象中执行信息检索有关。 (C)2017由Elsevier Ltd.发布

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号