Title :
Encrypted Searchable Storage of RFID Tracking Data
Author :
Kerschbaum, Florian ; Chaves, Leonardo Weiss Ferreira
Author_Institution :
SAP Res., Karlsruhe, Germany
Abstract :
Companies can optimize their supply chain if they exchange item-level data, i.e. item-specific data gathered with the help of Radio Frequency Identification or 2D bar codes. Data can either be distributed over the repositories of each company or stored in a central repository. The distributed approach requires "discovering" the repositories which contain data about the queried item. Thus, data access is slow. The central approach does not require discovery, but the data owner has to relinquish access control to the repository provider. Both approaches are not satisfactory. In this paper we present an encryption scheme for exchanging item-level data by storing it in a central repository. It allows the data owner to enforce access control on an item-level by managing the corresponding keys. Furthermore, data remains confidential even against the repository provider. Thus we eliminate the main problem of the central approach. We provide formal proofs that the proposed encryption scheme is secure. Then, we evaluate the encryption scheme with databases containing up to 50 million tuples. Results show that the encryption scheme is fast, scalable and that it can be parallelized very efficiently. Our encryption scheme thereby reconciles the conflict between security and performance in item-level data repositories.
Keywords :
authorisation; cryptography; database management systems; electronic data interchange; query processing; radiofrequency identification; storage management; 2D bar code; RFID tracking data; access control; central repository; company; confidential data; data access; database; encrypted searchable storage; encryption scheme; item-level data exchange; item-level data repository; item-specific data; queried item; radio frequency identification; repository discovery; repository provider; security; supply chain; Access control; Companies; Databases; Encryption; Supply chains;
Conference_Titel :
Mobile Data Management (MDM), 2012 IEEE 13th International Conference on
Conference_Location :
Bengaluru, Karnataka
Print_ISBN :
978-1-4673-1796-2
Electronic_ISBN :
978-0-7695-4713-8
DOI :
10.1109/MDM.2012.27