...
首页> 外文期刊>Journal of Parallel and Distributed Computing >A session key caching and prefetching scheme for secure communication in cluster systems
【24h】

A session key caching and prefetching scheme for secure communication in cluster systems

机译:用于集群系统中安全通信的会话密钥缓存和预取方案

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

With the widespread use of cluster systems and ever increasing threat to computer security, it becomes more necessary to design and build secure cluster systems. Most cluster systems rely on security products like Firewalls for their security, but they cannot guarantee security of intra-cluster communications, which can be a weak spot that hackers exploit for further security attacks. A recent study by Lee and Kim (2007) [22] proposed a security framework to protect intra-cluster communications by encrypting and authenticating all packets with fine-grained security where any two communicating processes dynamically generate and share a cryptographic key, called a session key. However, the fine-grained security scheme can incur serious performance degradation in large-scale cluster systems since it may take a long time to access session keys. To solve this problem, we propose to incorporate a session key cache inside a cluster interconnect card to speed up accesses to the session keys and build an analytical cluster traffic model to estimate the behavior of the cache in large-scale cluster systems. For further performance improvement, we propose a prefetching scheme speculating job scheduler's decision without OS interventions. Simulation results indicate that the session key cache with the prefetching scheme decreases the network latency by 50% on average, compared to the configurations without the enhancements.
机译:随着群集系统的广泛使用以及对计算机安全性的日益增长的威胁,设计和构建安全的群集系统变得更加必要。大多数群集系统的安全性都依赖于防火墙之类的安全产品,但它们不能保证群集内通信的安全性,这可能是黑客利用漏洞进行进一步的安全攻击的弱点。 Lee和Kim(2007)的最新研究[22]提出了一种安全框架,该机制通过使用细粒度安全性对所有数据包进行加密和身份验证来保护群集内通信,其中任意两个通信过程动态生成并共享一个称为会话的加密密钥键。但是,细粒度的安全方案可能会导致大型集群系统中的性能严重下降,因为访问会话密钥可能需要很长时间。为了解决此问题,我们建议在群集互连卡中合并会话密钥缓存,以加快对会话密钥的访问,并建立分析性群集流量模型,以估计大型群集系统中缓存的行为。为了进一步提高性能,我们提出了一种预取方案,该方案在无需操作系统干预的情况下推测作业调度程序的决定。仿真结果表明,与没有增强功能的配置相比,具有预取方案的会话密钥缓存平均将网络延迟减少了50%。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号