Efficient Private Publish-Subscribe Systems

被引:8
|
作者
Khoury, Joud [1 ]
Lauer, Gregory [1 ]
Pal, Partha [1 ]
Thapa, Bishal [1 ]
Loyall, Joseph [1 ]
机构
[1] Raytheon BBN Technol, Cambridge, MA 02115 USA
关键词
security; privacy; confidentiality; publish-subscribe; attribute based encryption; predicate based encryption; OBLIVIOUS TRANSFER;
D O I
10.1109/ISORC.2014.10
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We address the problem of privacy in publish-subscribe (pub-sub) systems that typically expose some form of published content and subscriber interest, at least to the infrastructure responsible for subscription matching and content delivery. In our recent work, we proposed P3S, a pub-sub middleware designed to protect the privacy of subscriber interest and confidentiality of published content. P3S combined Ciphertext Policy Attribute Based Encryption (CP-ABE) with Predicate Based Encryption (PBE) in its novel system architecture to achieve the desired level of content (payload and metadata) confidentiality, and subscription privacy. In this work, we build upon P3S to achieve the strongest possible subscription privacy where cleartext subscription is visible only to the subscriber. Furthermore, we add support for subscription policy enforcement, improve the expressiveness of predicates by allowing disjunctions of conjunction, and improve the efficiency of the underlying cryptography through enhanced cryptographic construction and optimized implementation of cryptographic primitives. To the best of our knowledge, this paper presents the first comprehensive and practical implementation of a real-time privacy preserving pub-sub system, demonstrated on a large-scale testbed featuring up to 90 subscribers with robust, scalable and efficient performance. Our code and testbed specifications are freely available for research and experimentation purposes.
引用
收藏
页码:64 / 71
页数:8
相关论文
共 50 条
  • [1] Anonymous Publish-Subscribe Systems
    Vo, Binh
    Bellovin, Steven
    [J]. INTERNATIONAL CONFERENCE ON SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, SECURECOMM 2014, PT I, 2015, 152 : 195 - 211
  • [2] Model checking publish-subscribe systems
    Garlan, D
    Khersonsky, S
    Kim, JS
    [J]. MODEL CHECKING SOFTWARE, 2003, 2648 : 166 - 180
  • [3] Efficient filtering in publish-subscribe systems using binary decision diagrams
    Campailla, A
    Chaki, S
    Clarke, E
    Jha, S
    Veith, H
    [J]. PROCEEDINGS OF THE 23RD INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, 2001, : 443 - 452
  • [4] An efficient multicast protocol for content-based publish-subscribe systems
    Banavar, G
    Chandra, T
    Mukherjee, B
    Nagarajarao, J
    Strom, RE
    Sturman, DC
    [J]. 19TH IEEE INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS, PROCEEDINGS, 1999, : 262 - 272
  • [5] On Securing Publish-Subscribe Systems with Security Groups
    Dini, Gianluca
    Lo Duca, Angelica
    [J]. ISCC: 2009 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS, VOLS 1 AND 2, 2009, : 531 - 536
  • [6] An efficient and self-configurable publish-subscribe system
    Xue, T
    Feng, BQ
    [J]. GRID AND COOPERATIVE COMPUTING, PT 1, 2004, 3032 : 159 - 163
  • [7] Publish-subscribe for mobile environments
    Ionescu, M
    Marsic, I
    [J]. WEB ENGINEERING, PROCEEDINGS, 2003, 2722 : 547 - 550
  • [8] Publish-subscribe systems over large dynamic graphs
    Kandanur, Suhail
    [J]. MIDDLEWARE'19: PROCEEDINGS OF THE 2019 20TH INTERNATIONAL MIDDLEWARE CONFERENCE DOCTORAL SYMPOSIUM, 2019, : 23 - 25
  • [9] Publish-subscribe MVS middleware
    不详
    [J]. DATAMATION, 1997, 43 (04): : 24 - 24
  • [10] Quality of Service in Wide Scale Publish-Subscribe Systems
    Bellavista, Paolo
    Corradi, Antonio
    Reale, Andrea
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2014, 16 (03): : 1591 - 1616