Kurma: Secure Geo-Distributed Multi-Cloud Storage Gateways

被引:3
作者
Chen, Ming [1 ]
Zadok, Erez [1 ]
机构
[1] SUNY Stony Brook, Stony Brook, NY 11794 USA
来源
SYSTOR '19: PROCEEDINGS OF THE 12TH ACM INTERNATIONAL SYSTEMS AND STORAGE CONFERENCE | 2019年
关键词
Multi-cloud; cloud storage gateways; storage security; FILE-SYSTEM;
D O I
10.1145/3319647.3325830
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Cloud storage is highly available, scalable, and cost-efficient. Yet, many cannot store data in cloud due to security concerns and legacy infrastructure such as network-attached storage ( NAS). We describe Kurma, a cloud storage gateway system that allows NAS-based programs to seamlessly and securely access cloud storage. To share files among distant clients, Kurma maintains a unified file-system namespace by replicating metadata across geo-distributed gateways. Kurma stores only encrypted data blocks in clouds, keeps file-system and security metadata on-premises, and can verify data integrity and freshness without any trusted third party. Kurma uses multiple clouds to prevent cloud outage and vendor lock-in. Kurma's performance is 52-91% that of a local NFS server while providing geo-replication, confidentiality, integrity, and high availability.
引用
收藏
页码:109 / 120
页数:12
相关论文
共 59 条
  • [11] Borthakur D., 2008, HADOOP APACHE PROJECT
  • [12] Brewer Eric A, 2000, PODC, V7
  • [13] Briggs D, 2014, PALGRAVE PIVOT, P1, DOI 10.1057/9781137380616
  • [14] Chen M., 2017, FSL1701 STON BROOK U
  • [15] Chen M, 2017, PROCEEDINGS OF FAST '17: 15TH USENIX CONFERENCE ON FILE AND STORAGE TECHNOLOGIES, P301
  • [16] Chuck Lever, 2001, CLOS TO OP CACH CONS
  • [17] Chung J. Y., 2015, P 10 EUR C COMP SYST
  • [18] Deniel Philippe., 2007, Linux Symposium, P113
  • [19] Douceur JR, 2006, USENIX ASSOCIATION 7TH USENIX SYMPOSIUM ON OPERATING SYSTEMS DESIGN AND IMPLEMENTATION, P321
  • [20] DWORKIN M., 2007, RECOMMENDATION BLOCK