A credential-based security mechanism for object storage

被引:0
|
作者
Li, Zhongmin [1 ]
Yu, Zhanwu [1 ]
机构
[1] Wuhan Univ, State Key Lab Informat Engn Surveying Mapping & R, Wuhan 430079, Hubei, Peoples R China
来源
2006 INTERNATIONAL CONFERENCE ON COMMUNICATIONS, CIRCUITS AND SYSTEMS PROCEEDINGS, VOLS 1-4: VOL 1: SIGNAL PROCESSING | 2006年
关键词
D O I
10.1109/ICCCAS.2006.284981
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Unlike Direct Attached Storage (DAS), Network Attached Storage (NAS) or Storage Area Network (SAN), Object-based Storage, an emerging, network storage technology, separates the control path, the data path and the management path, and enables direct interaction between clients and the storage devices. Clients acquire only the metadata information and some cryptographic primitives from the metadata servers. The Clients., the metadata servers and the storage devices are separate, so it is very important to construct a security mechanism for securing data exchange between them. In this paper we present a credential-based security mechanism for Object-based Storage that stands on existing security infrastructure. In this mechanism, the Object-based Storage Device (OSD) security model is a credential-based access control system, and commands transfer and data access both need be authorized. The Client requests a credential including a capability key from the Security Manager after authenticated by the Security Manager through a PKI system. The Security Manager and the OSD Device (OBSD) have a shared secret key to calculate the capability key which is used as a single secret key to identify the integrity of credential and encrypt the communications between the Client and the OBSD.
引用
收藏
页码:1610 / +
页数:2
相关论文
共 50 条
  • [41] Implementation of OSD security framework and credential cache
    Kim, Gu Su
    Ko, Kwang Sun
    Kim, Ungmo
    Eom, Young Ik
    ADVANCES IN GRID AND PERVASIVE COMPUTING, PROCEEDINGS, 2007, 4459 : 666 - +
  • [42] A cryptographic credential based access control mechanism for industrial control system
    Shi, Sha
    Wen, Qiaoyan
    International Journal of Advancements in Computing Technology, 2012, 4 (07) : 152 - 158
  • [43] RETRACTED: TC-PSLAP: Temporal Credential-Based Provably Secure and Lightweight Authentication Protocol for IoT-Enabled Drone Environments (Retracted Article)
    Ali, Zeeshan
    Alzahrani, Bander A.
    Barnawi, Ahmed
    Al-Barakati, Abdullah
    Vijayakumar, Pandi
    Chaudhry, Shehzad Ashraf
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021
  • [44] Object-based storage
    Mesnier, M
    Ganger, GR
    Riedel, E
    IEEE COMMUNICATIONS MAGAZINE, 2003, 41 (08) : 84 - 90
  • [45] Efficient security credential management for named data networking
    Deng, Bo
    INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING, 2019, 19 (02) : 251 - 258
  • [46] Efficient security credential management for named data networking
    Deng B.
    International Journal of Computational Science and Engineering, 2019, 19 (02): : 251 - 258
  • [47] Object detection method based on lightweight YOLOv4 and attention mechanism in security scenes
    Peng Ding
    Huaming Qian
    Yipeng Zhou
    Shuai Chu
    Journal of Real-Time Image Processing, 2023, 20
  • [48] Object detection method based on lightweight YOLOv4 and attention mechanism in security scenes
    Ding, Peng
    Qian, Huaming
    Zhou, Yipeng
    Chu, Shuai
    JOURNAL OF REAL-TIME IMAGE PROCESSING, 2023, 20 (02)
  • [49] Blockchain-Based Root of Trust Management in Security Credential Management System for Vehicular Communications
    Sarker, Arijet
    Byun, SangHyun
    Fan, Wenjun
    Chang, Sang-Yoon
    36TH ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, SAC 2021, 2021, : 223 - 231
  • [50] Credential Management Enforcement and Secure Data Storage in gLite
    Tusa, Francesco
    Villari, Massimo
    Puliafito, Antonio
    INTERNATIONAL JOURNAL OF DISTRIBUTED SYSTEMS AND TECHNOLOGIES, 2010, 1 (01) : 76 - 97