Practicing Oblivious Access on Cloud Storage: the Gap, the Fallacy, and the New Way Forward

被引:65
作者
Bindschaedler, Vincent [1 ]
Naveed, Muhammad [1 ]
Pan, Xiaorui [2 ]
Wang, XiaoFeng [2 ]
Huang, Yan [2 ]
机构
[1] Univ Illinois, Urbana, IL 61801 USA
[2] Indiana Univ, Bloomington, IN 47405 USA
来源
CCS'15: PROCEEDINGS OF THE 22ND ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY | 2015年
基金
美国国家科学基金会;
关键词
Oblivious Cloud Storage; Oblivious RAM; ORAM; Access Pattern;
D O I
10.1145/2810103.2813649
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
To understand the gap between theory and practice for oblivious cloud storage, we experimentally evaluate four representative Oblivious RAM (ORAM) designs on Amazon S3. We replay realistic application traces to these ORAMs in order to understand whether they can meet the demands of various real applications using cloud storage as a backend. We find that metrics traditionally used in the ORAM literature, e.g., bandwidth overhead, fail to capture the practical needs of those applications. With a new understanding of the desirable properties, relevant metrics, and observations about the cloud services and their applications, we propose CURIOUS, a new modular partition-based ORAM framework, and show experimentally that it is thus far the most promising approach.
引用
收藏
页码:837 / 849
页数:13
相关论文
共 24 条
[1]  
[Anonymous], 2013, CCS
[2]  
[Anonymous], 1996, J ACM
[3]  
Boneh Dan, 2011, REMOTE OBLIVIOUS STO
[4]  
Chung Kai-Min., 2014, ASIACRYPT
[5]  
Dautrich J., 2014, USENIX SECURITY, V14
[6]  
Devadas S., 2015, ONION ORAM CONSTANT
[7]  
Goodrich M. T., 2011, CCSW
[8]  
Goodrich M. T., 2010, SODA
[9]  
Goodrich M.T., 2012, CODASPY
[10]  
KUSHILEVITZ E, 2012, SODA