In this paper, we present a file allocation and caching scheme that guarantees high assurance, availability, and load balancing in a large-scale distributed file system that can support dynamic updates of authorization policies. The scheme uses fragmentation and replication to store files with high security requirements in a system composed of a majority of low-security servers. We develop mechanisms to fragment files, to allocate them into multiple servers, and to cache them as close as possible to their readers while preserving the security requirement of the files, providing load-balancing, and reducing delay of read operations. The system offers a trade-off between performance and security that is dynamically tunable according to the current level of threat. We validate our mechanisms with extensive simulations in an Internet-like network.

Secure file allocation and caching in large-scale distributed systems / A., Di Mauro; Mei, Alessandro; S., Jajodia. - STAMPA. - (2012), pp. 182-191. (Intervento presentato al convegno International Conference on Security and Cryptography, SECRYPT 2012 tenutosi a Rome nel 24 July 2012 through 27 July 2012) [10.5220/0004074201820191].

Secure file allocation and caching in large-scale distributed systems

MEI, Alessandro;
2012

Abstract

In this paper, we present a file allocation and caching scheme that guarantees high assurance, availability, and load balancing in a large-scale distributed file system that can support dynamic updates of authorization policies. The scheme uses fragmentation and replication to store files with high security requirements in a system composed of a majority of low-security servers. We develop mechanisms to fragment files, to allocate them into multiple servers, and to cache them as close as possible to their readers while preserving the security requirement of the files, providing load-balancing, and reducing delay of read operations. The system offers a trade-off between performance and security that is dynamically tunable according to the current level of threat. We validate our mechanisms with extensive simulations in an Internet-like network.
2012
International Conference on Security and Cryptography, SECRYPT 2012
load balancing; secure file allocation; distributed systems
04 Pubblicazione in atti di convegno::04b Atto di convegno in volume
Secure file allocation and caching in large-scale distributed systems / A., Di Mauro; Mei, Alessandro; S., Jajodia. - STAMPA. - (2012), pp. 182-191. (Intervento presentato al convegno International Conference on Security and Cryptography, SECRYPT 2012 tenutosi a Rome nel 24 July 2012 through 27 July 2012) [10.5220/0004074201820191].
File allegati a questo prodotto
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11573/488185
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
  • ???jsp.display-item.citation.isi??? ND
social impact