TY - GEN
T1 - Remote data checking for network coding-based distributed storage systems
AU - Chen, Bo
AU - Curtmola, Reza
AU - Ateniese, Giuseppe
AU - Burns, Randal
PY - 2010
Y1 - 2010
N2 - Remote Data Checking (RDC) is a technique by which clients can establish that data outsourced at untrusted servers remains intact over time. RDC is useful as a prevention tool, allowing clients to periodically check if data has been damaged, and as a repair tool whenever damage has been detected. Initially proposed in the context of a single server, RDC was later extended to verify data integrity in distributed storage systems that rely on replication and on erasure coding to store data redundantly at multiple servers. Recently, a technique was proposed to add redundancy based on network coding, which offers interesting tradeoffs because of its remarkably low communication overhead to repair corrupt servers. Unlike previous work on RDC which focused on minimizing the costs of the prevention phase, we take a holistic look and initiate the investigation of RDC schemes for distributed systems that rely on network coding to minimize the combined costs of both the prevention and repair phases. We propose RDC-NC, a novel secure and efficient RDC scheme for network coding-based distributed storage systems. RDC-NC mitigates new attacks that stem from the underlying principle of network coding. The scheme is able to preserve in an adversarial setting the minimal communication overhead of the repair component achieved by network coding in a benign setting. We implement our scheme and experimentally show that it is computationally inexpensive for both clients and servers.
AB - Remote Data Checking (RDC) is a technique by which clients can establish that data outsourced at untrusted servers remains intact over time. RDC is useful as a prevention tool, allowing clients to periodically check if data has been damaged, and as a repair tool whenever damage has been detected. Initially proposed in the context of a single server, RDC was later extended to verify data integrity in distributed storage systems that rely on replication and on erasure coding to store data redundantly at multiple servers. Recently, a technique was proposed to add redundancy based on network coding, which offers interesting tradeoffs because of its remarkably low communication overhead to repair corrupt servers. Unlike previous work on RDC which focused on minimizing the costs of the prevention phase, we take a holistic look and initiate the investigation of RDC schemes for distributed systems that rely on network coding to minimize the combined costs of both the prevention and repair phases. We propose RDC-NC, a novel secure and efficient RDC scheme for network coding-based distributed storage systems. RDC-NC mitigates new attacks that stem from the underlying principle of network coding. The scheme is able to preserve in an adversarial setting the minimal communication overhead of the repair component achieved by network coding in a benign setting. We implement our scheme and experimentally show that it is computationally inexpensive for both clients and servers.
KW - Archival storage
KW - Distributed storage systems
KW - Network coding
KW - Pollution attack
KW - Remote data checking
KW - Replay attack
KW - Security
UR - http://www.scopus.com/inward/record.url?scp=78650081896&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=78650081896&partnerID=8YFLogxK
U2 - 10.1145/1866835.1866842
DO - 10.1145/1866835.1866842
M3 - Conference contribution
AN - SCOPUS:78650081896
SN - 9781450300896
T3 - Proceedings of the ACM Conference on Computer and Communications Security
SP - 31
EP - 42
BT - Proceedings of the 2010 ACM Workshop on Cloud Computing Security Workshop, CCSW '10, Co-located with CCS'10
T2 - 2010 ACM Workshop on Cloud Computing Security Workshop, CCSW '10, Co-located with CCS'10
Y2 - 4 October 2010 through 8 October 2010
ER -