Abstract
The deployment of Share Data Spaces in open, possibly hostile, environments arises the need of protecting the confidentiality of the data space content. Existing approaches focus on access control mechanisms that protect the data space from untrusted agents. The basic assumption is that the hosts (and their administrators) where the data space is deployed have to be trusted. Encryption schemes can be used to protect the data space content from malicious hosts. However, these schemes do not allow searching on encrypted data. In this paper we present a novel encryption scheme that allows tuple matching on completely encrypted tuples. Since the data space does not need to decrypt tuples to perform the search, tuple confidentiality can be guaranteed even when the data space is deployed on malicious hosts (or an adversary gains access to the host). Our scheme does not require authorised agents to share keys for inserting and retrieving tuples. Each authorised agent can encrypt, decrypt, and search encrypted tuples without having to know other agents' keys. This is beneficial inasmuch as it simplifies the task of key management. An implementation of an encrypted data space based on this scheme is described and some preliminary performance results are given.
| Original language | English |
|---|---|
| Title of host publication | Coordination Models and Languages |
| Subtitle of host publication | 10th International Conference, COORDINATION 2008, Oslo, Norway, June 4-6, 2008. Proceedings |
| Editors | Doug Lea, Gianluigi Zavattaro |
| Place of Publication | Berlin, Heidelberg |
| Publisher | Springer |
| Pages | 264-279 |
| Number of pages | 16 |
| ISBN (Electronic) | 978-3-540-68265-3 |
| ISBN (Print) | 978-3-540-68264-6 |
| DOIs | |
| Publication status | Published - 30 Jun 2008 |
| Externally published | Yes |
| Event | 10th International Conference on Coordination Models and Languages, COORDINATION 2008 - Oslo, Norway Duration: 4 Jun 2008 → 6 Jun 2008 Conference number: 10 |
Publication series
| Name | Lecture Notes in Computer Science |
|---|---|
| Publisher | Springer |
| Volume | 5052 |
| ISSN (Print) | 0302-9743 |
| ISSN (Electronic) | 1611-3349 |
Conference
| Conference | 10th International Conference on Coordination Models and Languages, COORDINATION 2008 |
|---|---|
| Abbreviated title | COORDINATION 2008 |
| Country/Territory | Norway |
| City | Oslo |
| Period | 4/06/08 → 6/06/08 |
Keywords
- Encryption Scheme
- Data space
- Discrete logarithm
- Tuple space
- Access control mechanism