• DocumentCode
    2904347
  • Title

    Devising Secure Sockets Layer-based distributed systems: A performance-aware approach

  • Author

    Lim, Norman ; Majumdar, Shreyan ; Srivastava, Vishnu

  • Author_Institution
    Dept. of Syst. & Comput. Eng., Carleton Univ., Ottawa, ON, Canada
  • fYear
    2012
  • fDate
    1-3 Dec. 2012
  • Firstpage
    376
  • Lastpage
    383
  • Abstract
    Sending documents containing sensitive information is commonly performed on distributed systems. To protect the sensitive data in the documents, these documents need to be transmitted over a secure channel. However, secure communications can often increase the data transmission time due to the CPU-intensive operations (e.g. encryption/decryption) that need to be applied to the data before the data transfer. This paper focuses on a performance optimization technique called security sieve, which aims to enhance the performance of SSL/TLS-based data transmission. Security sieve reduces the transmission time of transferring classified documents, which may also contain non-sensitive data, by minimizing the time spent performing the CPU-intensive security-related operations. This paper focuses on highlighting the performance optimization principles/performance patterns that were used and includes a discussion of a prototype implementation. In addition, experimental results are presented to demonstrate the performance enhancement provided by security sieve.
  • Keywords
    cryptography; data communication; distributed processing; document handling; electronic data interchange; CPU-intensive operation; CPU-intensive security-related operation; SSL/TLS-based data transmission; classified document transfer; data transfer; data transmission time; decryption; document sensitive data protection; document transmission; encryption; performance optimization principles; performance optimization technique; performance pattern; performance-aware approach; secure channel; secure communication; secure socket layer-based distributed system; security sieve; sensitive information; Algorithm design and analysis; Arrays; Indexes; Optimization; Partitioning algorithms; Prototypes; Security; performance design; performance optimization; security system performance;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Performance Computing and Communications Conference (IPCCC), 2012 IEEE 31st International
  • Conference_Location
    Austin, TX
  • ISSN
    1097-2641
  • Print_ISBN
    978-1-4673-4881-2
  • Type

    conf

  • DOI
    10.1109/PCCC.2012.6407780
  • Filename
    6407780