SOMR: Towards a Security-Oriented MapReduce Infrastructure

被引:5
|
作者
Zhao, Rui [1 ]
Meng, Zhaopeng [1 ]
Zheng, Yan [1 ]
Jin, Qiangguo [1 ]
Ruan, Anbang [2 ]
Xie, Hanglun [1 ]
机构
[1] Tianjin Univ, Sch Comp Software, Tianjin, Peoples R China
[2] Octa Innovat Ltd, Beijing, Peoples R China
关键词
ISSUES;
D O I
10.1109/Trustcom/BigDataSE/ICESS.2017.281
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
MapReduce system over a cloud computing infrastructure has made an extensive use in the field of finance, medical health, scientific research, traffic, energy and so on which attracts more and more attention on the security of the platform. Due to the sensitivity of the data in these fields, the user suffers great threat on their privacy and security. And the wrong results produced by the MapReduce platform may mislead the user to a big disaster. Current solutions mainly focus on the procedure of encryption before transmission and storage and decryption when processing. However, these solutions cannot prevent the user data stolen by the data processing program and the wrong result produced by the platform. In this paper, we propose a Security-Oriented MapReduce (SOMR) infrastructure that integrates the big-data processing framework, key management system and trusted computing infrastructure to ensure the security of every operation. While big data processing framework controls the life cycle of the cloud computing platform, key management system provides the trust assurance of encryption and trusted computing infrastructure makes measurable verification on the platform, SOMR presents a persistent security guarantee on the user data and processing results. We implemented SOMR on the infrastructure of OpenStack with Sahara, Barbican and OAT. The evaluations on our prototype showed that the platform can resist many typical attacker behaviors, and the overheads can be reduced to a very low level.
引用
收藏
页码:530 / 537
页数:8
相关论文
共 50 条
  • [1] Towards a Human Security-Oriented Conception of Public Security in the Context of Globalization
    Aguilera Garcia, Edgar Ramon
    Uribe Arzate, Enrique
    [J]. CIENCIA ERGO-SUM, 2014, 21 (01) : 71 - 76
  • [2] Towards a Methodological Tool Support for Modeling Security-Oriented Processes
    Geisel, Jacob
    Hamid, Brahim
    Gonzales, David
    Bruel, Jean-Michel
    [J]. Model and Data Engineering, 2016, 9893 : 31 - 41
  • [3] Security-Oriented Network Architecture
    Jiang, Weiyu
    Liu, Bingyang
    Wang, Chuang
    Yang, Xue
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2021, 2021
  • [4] Security-oriented service composition and evolution
    Han, Jun
    Kowalczyk, Ryszard
    Khan, Khaled M.
    [J]. ASPEC 2006: 13TH ASIA-PACIFIC SOFTWARE ENGINEERING CONFERENCE, PROCEEDINGS, 2006, : 71 - 78
  • [5] On some directions in security-oriented research
    Sekanina, Lukas
    Hruska, Tomas
    Vojnar, Tomas
    Kolar, Dusan
    Cernocky, Jan
    [J]. 2007 ECSIS SYMPOSIUM ON BIO-INSPIRED, LEARNING, AND INTELLIGENT SYSTEMS FOR SECURITY, PROCEEDINGS, 2007, : 141 - +
  • [6] Towards a security-oriented migration policy model? Evidence from the Italian case
    Caponio, Tiziana
    Graziano, Paolo R.
    [J]. MIGRATION AND WELFARE IN THE NEW EUROPE: SOCIAL PROTECTION AND THE CHALLENGES OF INTEGRATION, 2011, : 105 - 120
  • [7] Improving Perimeter Security with Security-oriented Program Transformations
    Hafiz, Munawar
    Johnson, Ralph E.
    [J]. 2009 ICSE WORKSHOP ON SOFTWARE ENGINEERING FOR SECURE SYSTEMS, 2009, : 61 - 67
  • [8] Security-oriented sensor placement in intelligent buildings
    Eliades, D. G.
    Michaelides, M. P.
    Panayiotou, C. G.
    Polycarpou, M. M.
    [J]. BUILDING AND ENVIRONMENT, 2013, 63 : 114 - 121
  • [9] Security-Oriented Network Slice Backup Method
    Chen, Ke
    Wang, Ying
    Yu, Peng
    Li, Naling
    [J]. 2021 22ND ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS), 2021, : 330 - 335
  • [10] A Security-oriented Workflow Framework for Collaborative Environments
    Hussain, Sardar
    Sinnott, Richard O.
    Poet, Ron
    [J]. 2016 IEEE TRUSTCOM/BIGDATASE/ISPA, 2016, : 707 - 714