DOE OSTI · 2573282
Integrating AEAD Ciphers into Software-Defined-Storage Systems
Abstract
The use of software-defined storage (SDS) systems to store sensitive data is becoming increasingly prevalent. However, these systems primarily implement security measures to ensure the confidentiality and availability of stored data, with limited consideration for the protection of its integrity. This paper outlines why this is a harmful development, as well as how integrity-protecting measures can be included into SDS systems. To demonstrate the practical challenges and opportunities of such measures, we integrated "authenticated encryption with associated data" (AEAD) ciphers into the widely used SDS system Ceph, specifically, into its block storage interface, to secure the integrity of stored data and metadata. Ultimately, we identify the characteristics that an SDS system should possess to adopt our methodology.
Keep this discovery
Explore connections, maps & timelines
Mohren, David [University of New Brunswick, Canada], Patrou, Maria [ORNL] (ORCID:0000000339754638), Kelly, Brett [45Drives], Khoda parast, Fatemeh [University of New Brunswick, Canada], B kent, Kenneth [University of New Brunswick, Canada]. 2024-12-01. Integrating AEAD Ciphers into Software-Defined-Storage Systems. https://doi.org/10.1109/sds64317.2024.10883912
Cite the original work for its findings. Save a collection to share your selection of sources.