Aggregation queries in the database-as-a-service model

被引:0
|
作者
Mykletun, Einar [1 ]
Tsudik, Gene [1 ]
机构
[1] Univ Calif Irvine, Sch Informat & Comp Sci, Dept Comp Sci, Irvine, CA 92717 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the Database-As-a-Service (DAS) model, clients store their database contents at servers belonging to potentially untrusted service providers. To maintain data confidentiality, clients need to outsource their data to servers in encrypted form. At the same time, clients must still be able to execute queries over encrypted data. One prominent and fairly effective technique for executing SQL-style range queries over encrypted data involves partitioning (or bucketization) of encrypted attributes. However, executing aggregation-type queries over encrypted data is a notoriously difficult problem. One well-known cryptographic tool often utilized to support encrypted aggregation is homomorphic encryption; it enables arithmetic operations over encrypted data. One technique based on a specific homomorphic encryption function was recently proposed in the context of the DAS model. Unfortunately, as shown in this paper, this technique is insecure against ciphertext-only attacks. We propose a simple alternative for handling encrypted aggregation queries and describe its implementation. We also consider a different flavor of the DAS model which involves mixed databases, where some attributes are encrypted and some are left in the clear. We show how range queries can be executed in this model.
引用
收藏
页码:89 / 103
页数:15
相关论文
共 50 条
  • [1] Incorporating a secure coprocessor in the Database-as-a-Service model
    Mykletun, E
    Tsudik, G
    [J]. INNOVATIVE ARCHITECTURE FOR FUTURE GENERATION HIGH-PERFORMANCE PROCESSORS AND SYSTEMS, 2005, : 38 - 44
  • [2] Database-as-a-Service for IoT
    Gogawale, Anand
    Khatib, Fasih
    Sontakke, Pratik
    Saigaonkar, Swati
    [J]. PROCEEDINGS OF THE 10TH INDIACOM - 2016 3RD INTERNATIONAL CONFERENCE ON COMPUTING FOR SUSTAINABLE GLOBAL DEVELOPMENT, 2016, : 1436 - 1438
  • [3] Ensuring the integrity of encrypted databases in the database-as-a-service model
    Hacigümüs, H
    Iyer, B
    Mehrotra, S
    [J]. DATA AND APPLICATIONS SECURITY XVII: STATUS AND PROSPECTS, 2004, 142 : 61 - 74
  • [4] Database-as-a-Service for Big Data: An Overview
    Abourezq, Manar
    Idrissi, Abdellah
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2016, 7 (01) : 157 - 177
  • [5] Efficient Database Encryption Scheme for Database-as-a-Service Environment
    Joo, Hankyu
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (05): : 195 - 203
  • [6] Confidential database-as-a-service approaches: taxonomy and survey
    Koehler, Jens
    Juenemann, Konrad
    Hartenstein, Hannes
    [J]. JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2015, 4 : 1 - 14
  • [7] Secure partial encryption with adversarial functional dependency constraints in the database-as-a-service model
    Dong, Boxiang
    Wang, Hui
    [J]. DATA & KNOWLEDGE ENGINEERING, 2018, 116 : 1 - 20
  • [8] Flexible Resource Allocation for Relational Database-as-a-Service
    Arora, Pankaj
    Chaudhuri, Surajit
    Das, Sudipto
    Dong, Junfeng
    George, Cyril
    Kalhan, Ajay
    Konig, Arnd Christian
    Lang, Willis
    Li, Changsong
    Li, Feng
    Liu, Jiaqi
    Maas, Lukas M.
    Mata, Akshay
    Menache, Ishai
    Moeller, Justin
    Narasayya, Vivek
    Olma, Matthaios
    Oslake, Morgan
    Rezai, Elnaz
    Shan, Yi
    Syamala, Manoj
    Xu, Shize
    Zois, Vasileios
    [J]. PROCEEDINGS OF THE VLDB ENDOWMENT, 2023, 16 (13): : 4202 - 4215
  • [9] ORESTES: a Scalable Database-as-a-Service Architecture for Low Latency
    Gessert, Felix
    Buecklers, Florian
    Ritter, Norbert
    [J]. 2014 IEEE 30TH INTERNATIONAL CONFERENCE ON DATA ENGINEERING WORKSHOPS (ICDEW), 2014, : 215 - 222
  • [10] Quaestor: Query Web Caching for Database-as-a-Service Providers
    Gessert, Felix
    Schaarschmidt, Michael
    Wingerath, Wolfram
    Witt, Erik
    Yoneki, Eiko
    Ritter, Norbert
    [J]. PROCEEDINGS OF THE VLDB ENDOWMENT, 2017, 10 (12): : 1670 - 1681