• DocumentCode
    556232
  • Title

    Improving data integrity and performance of cryptographic structured log file systems

  • Author

    Daci, Genti ; Shyle, Megi

  • Author_Institution
    Dept. of Inf. Technol., Polytech. Univ. of Tirana, Tirana, Albania
  • fYear
    2011
  • fDate
    5-7 Oct. 2011
  • Firstpage
    1
  • Lastpage
    5
  • Abstract
    Modern File systems like CLFS (Cryptographic Log Structured File System) are aimed to provide security and confidentiality. Current deployments of such File Systems do not ensure integrity of the encrypted data that is stored on disk. Due to Kernel bugs, racing conditions and arbitrary dead-locks, CLFS data on the disc can be damaged and also there is always the possibility that system users can modify the encrypted data. That´s why, we considered essential to modify the way keys are stored in the system, as their safe storage is a clue point to the whole protection this system assures. Implementing a Trusted Platform Module is our suggestion to the case. So in this secure environment, our aims lies towards ensuring data integrity on CLFS without compromising the overall performance. This paper considers the standard data verification methods, with the main goal to overcome one of its major limitations, low performance of File System check-summing. CLFS matches our performance expectations, as it performs close enough to non-cryptographic file systems. To improve the performance of the check-summing process we try to study and examine various design choices and propose metadata check-summing. Several tests are made to prove that this added functionality does not significantly affect performance.
  • Keywords
    cryptography; data integrity; file organisation; meta data; cryptographic structured log file system; data integrity improvement; dead-locks; file system check-summing; kernel bugs; metadata check-summing; racing conditions; standard data verification methods; trusted platform module; Computers; Encryption; File systems; Hardware; Seals; Cryptography; Data Security; Log Structured File System; Metadata Check-summing; Trusted Platform Module;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Ultra Modern Telecommunications and Control Systems and Workshops (ICUMT), 2011 3rd International Congress on
  • Conference_Location
    Budapest
  • ISSN
    2157-0221
  • Print_ISBN
    978-1-4577-0682-0
  • Type

    conf

  • Filename
    6078936