Securing the Intermediate Data of Scientific Workflows in Clouds With ACISO

被引:8
作者
Wang, Yawen [1 ]
Guo, Yunfei [1 ]
Guo, Zehua [2 ]
Liu, Wenyan [1 ]
Yang, Chao [1 ]
机构
[1] Natl Digital Switching Syst Engn & Technol Res Ct, Zhengzhou 450002, Henan, Peoples R China
[2] Beijing Inst Technol, Sch Automat, Beijing 100081, Peoples R China
基金
北京市自然科学基金; 中国国家自然科学基金;
关键词
Cloud security; intermediate data security; security strategy allocation; scientific workflows; DATA PLACEMENT STRATEGY; MANAGEMENT; ALGORITHM; SYSTEMS; AWARE;
D O I
10.1109/ACCESS.2019.2938823
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Many scientific workflow applications are moving to clouds. A scientific workflow is a complicated scientific computing task consisting of many sub-tasks, and each sub-task execution can generate the intermediate data used for the successor sub-task execution. The correct execution of scientific workflows depends on the security of the intermediate data, which is transmitted frequently between virtual machines during the process of the workflow execution. In multi-tenant clouds, the intermediate data contains three attributes: availability, confidentiality and integrity. If the intermediate data is lost, stolen, or tampered with by malicious tenants, the intermediate data's attribute will be damaged, causing workflow interruption, the leakage of secret information or incorrect workflow results. For these problems, we propose ACISO scheme to secure the intermediate data by improving its availability, confidentiality, and integrity. In the scheme, availability, confidentiality and integrity strategy pools are constructed by various erasure codes, encryption algorithms and hash functions, respectively. Then we present a security strategy optimal allocation model named SSOA, which aims to maximize the overall intermediate data security strength while meeting the constraints of the workflow makespan and storage overhead. Normally, a scientific workflow contains a large number of the intermediate data, so solving this model is NP hard. Therefore, we propose a heuristic solution to solve SSOA. The simulation results show that ACISO can effectively improve the availability, confidentiality, and integrity of the intermediate data of the scientific workflows.
引用
收藏
页码:126603 / 126617
页数:15
相关论文
共 47 条
[1]  
ALMASRI O, 2013, INTRO ENCRYPTION ALG, V2, P334
[2]   LPOD: A Local Path Based Optimized Scheduling Algorithm for Deadline-Constrained Big DataWorkflows in the Cloud [J].
Bai, Changxin ;
Lu, Shiyong ;
Ahmed, Ishtiaq ;
Che, Dunren ;
Mohan, Aravind .
2019 IEEE INTERNATIONAL CONGRESS ON BIG DATA (IEEE BIGDATA CONGRESS 2019), 2019, :35-44
[3]   DEPSKY: Dependable and Secure Storage in a Cloud-of-Clouds [J].
Bessani, Alysson ;
Correia, Miguel ;
Quaresma, Bruno ;
Andre, Fernando ;
Sousa, Paulo .
ACM TRANSACTIONS ON STORAGE, 2013, 9 (04)
[4]  
Bharathi S, 2008, 2008 THIRD WORKSHOP ON WORKFLOWS IN SUPPORT OF LARGE-SCALE SCIENCE (WORKS 2008), P11
[5]   Critical path identification in the context of a workflow [J].
Chang, DH ;
Son, JH ;
Kim, MH .
INFORMATION AND SOFTWARE TECHNOLOGY, 2002, 44 (07) :405-417
[6]   Scheduling for Workflows with Security-Sensitive Intermediate Data by Selective Tasks Duplication in Clouds [J].
Chen, Huangke ;
Zhu, Xiaomin ;
Qiu, Dishan ;
Liu, Ling ;
Du, Zhihui .
IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2017, 28 (09) :2674-2688
[7]  
[陈建兵 Chen Jianbing], 2017, [高分子通报, Polymer Bulletin], P63
[8]   Pegasus, a workflow management system for science automation [J].
Deelman, Ewa ;
Vahi, Karan ;
Juve, Gideon ;
Rynge, Mats ;
Callaghan, Scott ;
Maechling, Philip J. ;
Mayani, Rajiv ;
Chen, Weiwei ;
da Silva, Rafael Ferreira ;
Livny, Miron ;
Wenger, Kent .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2015, 46 :17-35
[9]   Fault-tolerant elastic scheduling algorithm for workflow in Cloud systems [J].
Ding, Yongsheng ;
Yao, Guangshun ;
Hao, Kuangrong .
INFORMATION SCIENCES, 2017, 393 :47-65
[10]   Modified HEFT Algorithm for Task Scheduling in Cloud Environment [J].
Dubey, Kalka ;
Kumar, Mohit ;
Sharma, S. C. .
6TH INTERNATIONAL CONFERENCE ON SMART COMPUTING AND COMMUNICATIONS, 2018, 125 :725-732