Searchable Encryption to Reduce Encryption Degradation in Adjustably Encrypted Databases

被引:5
|
作者
Kerschbaum, Florian [1 ]
Harterich, Martin [2 ]
机构
[1] Univ Waterloo, Waterloo, ON, Canada
[2] SAP, Karlsruhe, Germany
关键词
SYMMETRIC-ENCRYPTION;
D O I
10.1007/978-3-319-61176-1_18
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Processing queries on encrypted data protects sensitive data stored in cloud databases. CryptDB has introduced the approach of adjustable encryption for such processing. A database column is adjusted to the necessary level of encryption, e.g. order-preserving, for the set of executed queries, but never reversed. This has the drawback that long running cloud databases will eventually transform into only orderpreserving encrypted databases. In this paper we propose searchable encryption as an alternative in order to reduce this encryption degradation. It maintains security while only marginally impacting performance when applied only to infrequently used queries for searching. We present a budget-based encryption selection algorithm as part of query planning for making the appropriate choice between searchable and deterministic or order-preserving encryption. We evaluate our algorithm on a long-tail distributed TPC-C benchmark on an experimental implementation of encrypted queries in an in-memory database. In one choice of parameters our algorithm incurs only a 1.5% performance penalty, but one of 15 columns is not decrypted to order-preserving or deterministic encryption. Our selection algorithm is configurable, such that higher security gains are possible at the cost of performance.
引用
收藏
页码:325 / 336
页数:12
相关论文
共 50 条
  • [1] Framework for Searchable Encryption with SQL Databases
    Azraoui, Monir
    Onen, Melek
    Molva, Refik
    [J]. CLOSER: PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND SERVICES SCIENCE, 2018, : 57 - 67
  • [2] A Searchable Encryption Scheme for Encrypted Large Data Sets
    Jia Q.
    Zhang S.
    Zhou F.-C.
    [J]. Dongbei Daxue Xuebao/Journal of Northeastern University, 2019, 40 (07): : 913 - 919
  • [3] A Ranked Searchable Encryption Scheme for Encrypted Data Hosted on the Public Cloud
    Tahir, Shahzaib
    Rajarajan, Muttukrishnan
    Sajjad, Ali
    [J]. 2017 31ST INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2017, : 242 - 247
  • [4] Practical Attacks on Relational Databases Protected via Searchable Encryption
    Abdelraheem, Mohamed Ahmed
    Andersson, Tobias
    Gehrmann, Christian
    Glackin, Cornelius
    [J]. INFORMATION SECURITY (ISC 2018), 2018, 11060 : 171 - 191
  • [5] Searchable encryption over encrypted speech retrieval scheme in cloud storage
    Zhang Q.
    Fu M.
    Zhao Z.
    Huang Y.
    [J]. Journal of Information Security and Applications, 2023, 76
  • [6] Simple, Secure, and Efficient Searchable Symmetric Encryption with Multiple Encrypted Indexes
    Hirano, Takato
    Hattori, Mitsuhiro
    Kawai, Yutaka
    Matsuda, Nori
    Iwamoto, Mitsugu
    Ohta, Kazuo
    Sakai, Yusuke
    Munaka, Tatsuji
    [J]. ADVANCES IN INFORMATION AND COMPUTER SECURITY, IWSEC 2016, 2016, 9836 : 91 - 110
  • [7] Identity-based Searchable Encryption Scheme for Encrypted Email System
    Niu Shufen
    Xie Yaya
    Yang Pingping
    Wang Caifen
    Du Xiaoni
    [J]. JOURNAL OF ELECTRONICS & INFORMATION TECHNOLOGY, 2020, 42 (07) : 1803 - 1810
  • [8] Encrypted Searching with Adaptive Symmetric Searchable Encryption Security in Cloud Storage
    Li, Mingchu
    Jia, Wei
    Guo, Cheng
    Zhang, Lieran
    [J]. PROCEEDINGS OF THE 2015 INTERNATIONAL SYMPOSIUM ON COMPUTERS & INFORMATICS, 2015, 13 : 806 - 813
  • [9] Anonymous Searchable Encryption Scheme for Multi-User Databases
    Varadharajan, Vijayaraghavan
    Mani, Raghubansh
    Nallusamy, Rajarathnam
    [J]. PROCEEDINGS OF THE 2013 IEEE INTERNATIONAL CONFERENCE ON CLOUD ENGINEERING (IC2E 2013), 2013, : 225 - 232
  • [10] Partitioned Searchable Encryption
    Barthel, Jim
    Beunardeau, Marc
    Rosie, Razvan
    Sahu, Rajeev Anand
    [J]. PROVABLE AND PRACTICAL SECURITY, PROVSEC 2021, 2021, 13059 : 63 - 79