Data confidentiality: to which extent cryptography and secured hardware can help - INRIA - Institut National de Recherche en Informatique et en Automatique Accéder directement au contenu
Article Dans Une Revue Annals of Telecommunications - annales des télécommunications Année : 2006

Data confidentiality: to which extent cryptography and secured hardware can help

Nicolas Anciaux
Luc Bouganim
Philippe Pucheral

Résumé

Data confidentiality has become a major concern for individuals as well as for companies and administrations. In a classical client-server setting, the access control management is performed on the server, relying on the assumption that the server is a trusted party. However, this assumption no longer holds given the increasing vulnerability of database servers facing a growing number of external and even internal attacks. This paper studies different alternatives exploiting cryptographic techniques and/or tamper-resistant hardware to fight against these attacks. The pros and cons of each alternative are analyzed in terms of security, access control granularity and preserved database features (performance, query processing, volume of data). Finally, this paper sketches a hybrid approach mixing data encryption, integrity control and secured hardware that could pave the way for future highly secured DBMS.
Fichier non déposé

Dates et versions

inria-00000400 , version 1 (05-10-2005)
inria-00000400 , version 2 (26-09-2008)

Identifiants

  • HAL Id : inria-00000400 , version 1

Citer

Nicolas Anciaux, Luc Bouganim, Philippe Pucheral. Data confidentiality: to which extent cryptography and secured hardware can help. Annals of Telecommunications - annales des télécommunications, 2006, 61 (3-4), pp.267-283. ⟨inria-00000400v1⟩
181 Consultations
300 Téléchargements

Partager

Gmail Facebook X LinkedIn More