SeGShare: Secure Group File Sharing in the Cloud using Enclaves

被引:13
|
作者
Fuhry, Benny [1 ]
Hirschoff, Lina [1 ]
Koesnadi, Samuel [1 ]
Kerschbaum, Florian [2 ]
机构
[1] SAP Secur Res, Karlsruhe, Germany
[2] Univ Waterloo, Waterloo, ON, Canada
关键词
IDENTITY-BASED ENCRYPTION;
D O I
10.1109/DSN48063.2020.00061
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
File sharing applications using cloud storage are increasingly popular for personal and business use. Due to data protection concerns, end-to-end encryption is often a desired feature of these applications. Many attempts at designing cryptographic solutions fail to be adopted due to missing relevant features. We present SeGShare, a new architecture for end-to-end encrypted, group-based file sharing using trusted execution environments (TEE), e.g., Intel SGX. SeGShare is the first solution to protect the confidentiality and integrity of all data and management files; enforce immediate permission and membership revocations; support deduplication; and mitigate rollback attacks. Next to authentication, authorization and file system management, our implementation features an optimized TLS layer that enables high throughput and low latency. The encryption overhead of our implementation is extremely small in computation and storage resources. Our enclave code comprises less than 8500 lines of code enabling efficient mitigation of common pitfalls in deploying code to TEEs.
引用
收藏
页码:476 / 488
页数:13
相关论文
共 50 条
  • [1] Secure File Sharing Using Cryptographic Techniques in Cloud
    Malarvizhi, M.
    Sujana, J. Angela Jennifa
    Revathi, T.
    [J]. 2014 INTERNATIONAL CONFERENCE ON GREEN COMPUTING COMMUNICATION AND ELECTRICAL ENGINEERING (ICGCCEE), 2014,
  • [2] Secure Cloud Storage and File Sharing
    Rawal, Bharat S.
    Vivek, S. Sree
    [J]. 2017 IEEE INTERNATIONAL CONFERENCE ON SMART CLOUD (SMARTCLOUD), 2017, : 78 - 83
  • [3] SECURE SHARING OF THE PART OF FILE IN PRIVATE CLOUD
    Manoj, S.
    [J]. 2015 SEVENTH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC), 2015,
  • [4] SECURE FILE STORAGE AND SHARING OVER THE CLOUD DATACENTER
    Madhumala, R. B.
    Tiwari, Harshvardhan
    Verma, Devaraj C.
    [J]. INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (02) : 2750 - 2754
  • [5] File system to support secure cloud-based sharing
    Yamamoto, Kensho
    Ilirotsu, Toshio
    [J]. 2022 IEEE INTL CONF ON PARALLEL & DISTRIBUTED PROCESSING WITH APPLICATIONS, BIG DATA & CLOUD COMPUTING, SUSTAINABLE COMPUTING & COMMUNICATIONS, SOCIAL COMPUTING & NETWORKING, ISPA/BDCLOUD/SOCIALCOM/SUSTAINCOM, 2022, : 155 - 162
  • [6] Secure Image Processing Inside Cloud File Sharing Environment Using Lightweight Containers
    Rad, Paul
    Muppidi, Mohan
    Agaian, Sos S.
    Jamshidi, Mo
    [J]. 2015 IEEE INTERNATIONAL CONFERENCE ON IMAGING SYSTEMS AND TECHNIQUES (IST) PROCEEDINGS, 2015, : 432 - 437
  • [7] Secure cloud file sharing scheme using blockchain and attribute-based encryption
    Almasian, Mohammadpayam
    Shafieinejad, Alireza
    [J]. COMPUTER STANDARDS & INTERFACES, 2024, 87
  • [8] Framework for Secure Data Sharing In Dynamic Group Using Public Cloud
    Dangur, Jueeli
    Jaybhaye, S. M.
    [J]. 2016 INTERNATIONAL CONFERENCE ON COMPUTING, ANALYTICS AND SECURITY TRENDS (CAST), 2016, : 199 - 204
  • [9] Searchable Encrypted Data File Sharing Method Using Public Cloud Service for Secure Storage in Cloud Computing
    Pitchai, R.
    Jayashri, S.
    Raja, J.
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2016, 90 (02) : 947 - 960
  • [10] Searchable Encrypted Data File Sharing Method Using Public Cloud Service for Secure Storage in Cloud Computing
    R. Pitchai
    S. Jayashri
    J. Raja
    [J]. Wireless Personal Communications, 2016, 90 : 947 - 960