DocumentCode
556232
Title
Improving data integrity and performance of cryptographic structured log file systems
Author
Daci, Genti ; Shyle, Megi
Author_Institution
Dept. of Inf. Technol., Polytech. Univ. of Tirana, Tirana, Albania
fYear
2011
fDate
5-7 Oct. 2011
Firstpage
1
Lastpage
5
Abstract
Modern File systems like CLFS (Cryptographic Log Structured File System) are aimed to provide security and confidentiality. Current deployments of such File Systems do not ensure integrity of the encrypted data that is stored on disk. Due to Kernel bugs, racing conditions and arbitrary dead-locks, CLFS data on the disc can be damaged and also there is always the possibility that system users can modify the encrypted data. That´s why, we considered essential to modify the way keys are stored in the system, as their safe storage is a clue point to the whole protection this system assures. Implementing a Trusted Platform Module is our suggestion to the case. So in this secure environment, our aims lies towards ensuring data integrity on CLFS without compromising the overall performance. This paper considers the standard data verification methods, with the main goal to overcome one of its major limitations, low performance of File System check-summing. CLFS matches our performance expectations, as it performs close enough to non-cryptographic file systems. To improve the performance of the check-summing process we try to study and examine various design choices and propose metadata check-summing. Several tests are made to prove that this added functionality does not significantly affect performance.
Keywords
cryptography; data integrity; file organisation; meta data; cryptographic structured log file system; data integrity improvement; dead-locks; file system check-summing; kernel bugs; metadata check-summing; racing conditions; standard data verification methods; trusted platform module; Computers; Encryption; File systems; Hardware; Seals; Cryptography; Data Security; Log Structured File System; Metadata Check-summing; Trusted Platform Module;
fLanguage
English
Publisher
ieee
Conference_Titel
Ultra Modern Telecommunications and Control Systems and Workshops (ICUMT), 2011 3rd International Congress on
Conference_Location
Budapest
ISSN
2157-0221
Print_ISBN
978-1-4577-0682-0
Type
conf
Filename
6078936
Link To Document