Embedded Security for Network-Attached Storage,

msra(1999)

引用 36|浏览27
暂无评分
摘要
As storage interconnects evolve from single-host small-scale systems, such as traditional SCSI, to the multi-host Internet-based systems of Network-attached Secure Disks (NASD), protecting the integrity of data transfers between client and storage becomes essential. However, it is also computationally expensive and can impose significant performance penalties on storage systems. This paper explores several tech- niques that can protect the communications integrity of storage requests and data transfers, imposing very little performance penalty and significantly reducing the amount of required cryptography. Central to this work is an alternative cryptographic approach, called "Hash and MAC", that reduces the cost of protecting the integrity of read traffic in storage devices that are unable to generate a message authentication code at full data transfers rates. Hash and MAC does this by precomputing security informa- tion, using and reusing the precomputed information on subsequent read requests. We also present a refined "Hash and MAC" approach that uses incremental hash functions to improve the performance of small read and write operations as well as non-block-aligned operations.
更多
查看译文
关键词
cryptography,internet,software engineering,network architecture
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要