Key Management Systems at the Cloud Scale

被引:1
|
作者
Campagna, Matthew [1 ]
Gueron, Shay [1 ,2 ]
机构
[1] Amazon Web Serv Inc, Seattle, WA 98101 USA
[2] Univ Haifa, Dept Math, IL-3498838 Haifa, Israel
关键词
AES-GCM; cloud computing; key management; SECURITY;
D O I
10.3390/cryptography3030023
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper describes a cloud-scale encryption system. It discusses the constraints that shaped the design of Amazon Web Services' Key Management Service, and in particular, the challenges that arise from using a standard mode of operation such as AES-GCM while safely supporting huge amounts of encrypted data that is (simultaneously) generated and consumed by a huge number of users employing different keys. We describe a new derived-key mode that is designed for this multi-user-multi-key scenario typical at the cloud scale. Analyzing the resulting security bounds of this model illustrates its applicability for our setting. This mode is already deployed as the default mode of operation for the AWS key management service.
引用
收藏
页码:1 / 16
页数:16
相关论文
共 50 条
  • [1] Key Management Systems for Large-Scale Quantum Key Distribution Networks
    James, Paul
    Laschet, Stephan
    Ramacher, Sebastian
    Torresetti, Luca
    18TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY & SECURITY, ARES 2023, 2023,
  • [2] Security domains: Key management in large-scale systems
    Michener, JR
    Acar, T
    IEEE SOFTWARE, 2000, 17 (05) : 52 - +
  • [3] Key Management for Large-Scale Distributed Storage Systems
    Lim, Hoon Wei
    PUBLIC KEY INFRASTRUCTURES, SERVICES AND APPLICATIONS, 2010, 6391 : 99 - 113
  • [4] A Brief Review of Key Technologies for Cloud-Based Battery Management Systems
    Wu, Dan
    Xu, Zhihong
    Wang, Qingli
    Jin, Zheyu
    Xu, Yulan
    Wang, Chongwei
    He, Xinping
    JOURNAL OF ELECTRONIC MATERIALS, 2024, 53 (12) : 7334 - 7354
  • [5] A Survey of Key Management Service in Cloud
    Huang, Xiaolong
    Chen, Ruining
    PROCEEDINGS OF 2018 IEEE 9TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND SERVICE SCIENCE (ICSESS), 2018, : 916 - 919
  • [6] Survey on the Key Management for securing the Cloud
    Pradeep, K., V
    Vijayakumar, V.
    BIG DATA, CLOUD AND COMPUTING CHALLENGES, 2015, 50 : 115 - 121
  • [7] The management of cloud systems
    Corradi, Antonio
    Rana, Omer F.
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2014, 32 : 24 - 26
  • [8] A Scalable Approach for Structuring Large-Scale Hierarchical Cloud Management Systems
    Moens, Hendrik
    De Turck, Filip
    2013 9TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT (CNSM), 2013, : 1 - 8
  • [9] Secure Hierarchical Key Management for Cloud Computing
    Liu, Jin
    Sun, Jing
    Yow, Kin-Choong
    Peng, Xian-Bin
    INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND INFORMATION SECURITY (CNIS 2015), 2015, : 399 - 405
  • [10] Research of Key Management Technology on Cloud Storage
    Song, Ningning
    Wei, Zhiwei
    Xhou, Xianwei
    Liu, Qian
    INTERNATIONAL JOURNAL OF ONLINE ENGINEERING, 2013, 9 (06) : 58 - 61