【24h】

A Security Scheme for United Storage Network

机译:联合存储网络的安全方案

获取原文
获取原文并翻译 | 示例

摘要

USN realizes the integration of SAN and NAS with IP network, but it brings new security consideration such as user authorization, data privacy and integrity. A USN model based on the third party transfer protocol is suggested to realize the security scheme. This security scheme has the following characteristics: A key distribution scheme is used to create credentials for users in order to reduce authorization server performance penalty; Using HMAC authenticates users requests so as to minimize computation overhead; Performing encryption/decryption of data at clients and storing data checksums on the storage will minimize the storage performance penalty; The lockbox is used to integrate keys in order to minimize the sum of keys need managed by authorization server. Experiments show that it takes less than 10% performance overhead to realize the security scheme for USN comparing the baseline USN.
机译:USN实现了SAN和NAS与IP网络的集成,但是它带来了新的安全考虑,例如用户授权,数据隐私和完整性。提出了一种基于第三方传输协议的USN模型来实现安全方案。该安全方案具有以下特征:密钥分发方案用于为用户创建凭据,以减少授权服务器的性能损失;使用HMAC对用户请求进行身份验证,以最大程度地减少计算开销;在客户端执行数据加密/解密并将数据校验和存储在存储器上将最大程度地降低存储性能损失;密码箱用于集成密钥,以最大程度地减少授权服务器管理的密钥总和。实验表明,与基线USN相比,实现USN的安全方案所需的性能开销不到10%。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号