• DocumentCode
    168593
  • Title

    Tagged-MapReduce: A General Framework for Secure Computing with Mixed-Sensitivity Data on Hybrid Clouds

  • Author

    Chunwang Zhang ; Ee-Chien Chang ; Yap, Roland H. C.

  • Author_Institution
    Sch. of Comput., Nat. Univ. of Singapore, Singapore, Singapore
  • fYear
    2014
  • fDate
    26-29 May 2014
  • Firstpage
    31
  • Lastpage
    40
  • Abstract
    This paper presents tagged-MapReduce, a general extension to MapReduce that supports secure computing with mixed-sensitivity data on hybrid clouds. Tagged-MapReduce augments each key-value pair in MapReduce with a sensitivity tag. This enables fine-grained dataflow control during execution to prevent data leakage as well as supporting expressive security policies and complex MapReduce computations. Security constraints for preventing data leakage impose restrictions on computation and data storage/transfer, hence, we present scheduling strategies that can exploit properties of the map and reduce functions to rearrange the computation for greater efficiency under these constraints while maintaining MapReduce correctness. We present a general security framework for analyzing MapReduce computations in the hybrid cloud which captures how dataflow can leak information through execution. Experiments on Amazon EC2 with our prototype in Hadoop show that we are able to obtain security while effectively outsourcing computation to the public cloud and reducing inter-cloud communication.
  • Keywords
    cloud computing; electronic data interchange; outsourcing; security of data; Amazon EC2; Hadoop; Tagged-MapReduce; computation outsourcing; data leakage prevent; data storage-transfer; expressive security policies; fine-grained dataflow control; general security framework; hybrid clouds; intercloud communication; key-value pair; mixed-sensitivity data; public cloud; scheduling strategies; secure computing; security constraints; Cloud computing; Processor scheduling; Prototypes; Security; Sensitivity; Servers; Tagging; Data security; MapReduce; hybrid clouds; information leakage;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Cluster, Cloud and Grid Computing (CCGrid), 2014 14th IEEE/ACM International Symposium on
  • Conference_Location
    Chicago, IL
  • Type

    conf

  • DOI
    10.1109/CCGrid.2014.96
  • Filename
    6846438