CryptDB: A Practical Encrypted Relational DBMS

作者: Nickolai Zeldovich , Raluca Ada Popa , Hari Balakrishnan

DOI:

关键词:

摘要: CryptDB is a DBMS that provides provable and practical privacy in the face of compromised database server or curious administrators. works by executing SQL queries over encrypted data. At its core are three novel ideas: an SQL-aware encryption strategy maps operations to schemes, adjustable query-based which allows adjust level each data item based on user queries, onion efficiently change levels. only empowers execute users requested, achieves maximum given mix issued users. The fully evaluates sends result back client for final decryption; machines do not perform any query processing client-side applications run unchanged. Our evaluation shows has modest overhead: TPC-C benchmark Postgres, reduces throughput 27% compared regular Postgres. Importantly, does innards existing DBMSs: we realized implementation using rewriting/encrypting, user-defined functions, server-side tables public key information. As such, portable; porting MySQL required changing 86 lines code, mostly at connectivity layer.

参考文章(42)
Jaideep Vaidya, Chris Clifton, Privacy preserving association rule mining in vertically partitioned data Proceedings of the eighth ACM SIGKDD international conference on Knowledge discovery and data mining - KDD '02. pp. 639- 644 ,(2002) , 10.1145/775047.775142
Rebecca N. Wright, Zhiqiang Yang, Sheng Zhong, Privacy-Preserving Classification of Customer Data without Loss of Accuracy. siam international conference on data mining. pp. 92- 102 ,(2005)
Ravi Chandra Jammalamadaka, Sharad Mehrotra, Querying Encrypted XML Documents international database engineering and applications symposium. pp. 129- 136 ,(2006) , 10.1109/IDEAS.2006.39
Cynthia Dwork, Differential privacy: a survey of results theory and applications of models of computation. ,vol. 4978, pp. 1- 19 ,(2008) , 10.1007/978-3-540-79228-4_1
Yin Yang, Dimitris Papadias, Stavros Papadopoulos, Panos Kalnis, Authenticated join processing in outsourced databases Proceedings of the 35th SIGMOD international conference on Management of data - SIGMOD '09. pp. 5- 18 ,(2009) , 10.1145/1559845.1559849
Jinyuan Li, Maxwell Krohn, David Mazieres, Dennis Shasha, Secure untrusted data repository (SUNDR) operating systems design and implementation. pp. 9- 9 ,(2004) , 10.21236/ADA445862
Laks V. S. Lakshmanan, Hui Wang, Efficient secure query evaluation over encrypted XML databases very large data bases. pp. 127- 138 ,(2006) , 10.5555/1182635.1164140
Feng Bao, Robert H Deng, Xuhua Ding, Yanjiang Yang, None, Private query on encrypted data in multi-user settings information security practice and experience. ,vol. 4991, pp. 71- 85 ,(2008) , 10.1007/978-3-540-79104-1_6
Li Xiong, Subramanyam Chitti, Ling Liu, Preserving data privacy in outsourcing data aggregation services ACM Transactions on Internet Technology. ,vol. 7, pp. 17- ,(2007) , 10.1145/1275505.1275510