Re-thinking Kernelized MLS Database Architectures in the Context of Cloud-Scale Data Stores

作者: Thuy D. Nguyen , Mark Gondree , Jean Khosalim , Cynthia Irvine

DOI: 10.1007/978-3-319-15618-7_7

关键词:

摘要: We re-evaluate the kernelized, multilevel secure (MLS) relational database design in context of cloud-scale distributed data stores. The transactional properties and global integrity for schema-less, stores are significantly relaxed comparison to databases. This is a new interesting setting mandatory access control policies, has been unexplored prior research. describe implementation prototype MLS column-store following kernelized pattern. Our first store using an architectural approach highassurance; it enforces lattice-based information flow policy, without any additional trusted components.We highlight several promising avenues practical systems research secure, architectures implementing policies Java-based untrusted subjects.

参考文章(35)
Thomas H. Hinke, Marvin Schaefer, Secure Data Management System. ,(1975)
Jonathan J. M. Seddon, Wendy L. Currie, A CROSS-COUNTRY STUDY OF CLOUD COMPUTING POLICY AND REGULATION IN HEALTHCARE european conference on information systems. ,(2014)
George Candea, Armando Fox, None, Crash-only software hot topics in operating systems. pp. 12- 12 ,(2003)
Richard D. Graubart, A Comparison of Three Secure DBMS Architectures. DBSec. pp. 167- 190 ,(1989)
Mahadev Konar, Benjamin Reed, Flavio P. Junqueira, Patrick Hunt, ZooKeeper: wait-free coordination for internet-scale systems usenix annual technical conference. pp. 11- 11 ,(2010)
Vitaly Shmatikov, Ann Kilzer, Srinath T. V. Setty, Indrajit Roy, Emmett Witchel, Airavat: security and privacy for MapReduce networked systems design and implementation. pp. 20- 20 ,(2010) , 10.5555/1855711.1855731
Cynthia E. Irvine, Building Trust Into A Multilevel File System Proceedings, 13th National Computer Security Conference. ,(1990)
Lars George, HBase: The Definitive Guide ,(2011)