New Paradigm of Inference Control with Trusted Computing

The database server is a crucial bottleneck in traditional inference control architecture, as it enforces highly computation-intensive auditing for all users who query the protected database. As a result, most auditing methods, though rigorously studied, can never be implemented in practice for prot...

Full description

Saved in:
Bibliographic Details
Main Authors: YANG, Yanjiang, LI, Yingjiu, DENG, Robert H.
Format: text
Language:English
Published: Institutional Knowledge at Singapore Management University 2006
Subjects:
Online Access:https://ink.library.smu.edu.sg/sis_research/611
https://ink.library.smu.edu.sg/context/sis_research/article/1610/viewcontent/Yang2007_NewParadigmOfInferenceControl_pv.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Singapore Management University
Language: English
id sg-smu-ink.sis_research-1610
record_format dspace
spelling sg-smu-ink.sis_research-16102022-02-18T02:24:37Z New Paradigm of Inference Control with Trusted Computing YANG, Yanjiang LI, Yingjiu DENG, Robert H. The database server is a crucial bottleneck in traditional inference control architecture, as it enforces highly computation-intensive auditing for all users who query the protected database. As a result, most auditing methods, though rigorously studied, can never be implemented in practice for protecting largescale real-world database systems. To shift this paradigm, we propose a new inference control architecture that will entrust inference control to each users platform, provided that the platform is equipped with trusted computing technology. The trusted computing technology is designed to attest the state of a users platform to the database server, so as to assure the server that inference control could be enforced as expected. A generic protocol is proposed to formalize the interactions between the users platform and database server. Any existing inference control technique can work with our protocol, for which the security properties are formally proven. Since each user’s platform enforces inference control for its own queries, our solution avoids the bottleneck. 2006-11-01T08:00:00Z text application/pdf https://ink.library.smu.edu.sg/sis_research/611 info:doi/10.1007/978-3-540-73538-0_18 https://ink.library.smu.edu.sg/context/sis_research/article/1610/viewcontent/Yang2007_NewParadigmOfInferenceControl_pv.pdf http://creativecommons.org/licenses/by-nc-nd/4.0/ Research Collection School Of Computing and Information Systems eng Institutional Knowledge at Singapore Management University Inference control trusted computing auditing security protocol Information Security
institution Singapore Management University
building SMU Libraries
continent Asia
country Singapore
Singapore
content_provider SMU Libraries
collection InK@SMU
language English
topic Inference control
trusted computing
auditing
security protocol
Information Security
spellingShingle Inference control
trusted computing
auditing
security protocol
Information Security
YANG, Yanjiang
LI, Yingjiu
DENG, Robert H.
New Paradigm of Inference Control with Trusted Computing
description The database server is a crucial bottleneck in traditional inference control architecture, as it enforces highly computation-intensive auditing for all users who query the protected database. As a result, most auditing methods, though rigorously studied, can never be implemented in practice for protecting largescale real-world database systems. To shift this paradigm, we propose a new inference control architecture that will entrust inference control to each users platform, provided that the platform is equipped with trusted computing technology. The trusted computing technology is designed to attest the state of a users platform to the database server, so as to assure the server that inference control could be enforced as expected. A generic protocol is proposed to formalize the interactions between the users platform and database server. Any existing inference control technique can work with our protocol, for which the security properties are formally proven. Since each user’s platform enforces inference control for its own queries, our solution avoids the bottleneck.
format text
author YANG, Yanjiang
LI, Yingjiu
DENG, Robert H.
author_facet YANG, Yanjiang
LI, Yingjiu
DENG, Robert H.
author_sort YANG, Yanjiang
title New Paradigm of Inference Control with Trusted Computing
title_short New Paradigm of Inference Control with Trusted Computing
title_full New Paradigm of Inference Control with Trusted Computing
title_fullStr New Paradigm of Inference Control with Trusted Computing
title_full_unstemmed New Paradigm of Inference Control with Trusted Computing
title_sort new paradigm of inference control with trusted computing
publisher Institutional Knowledge at Singapore Management University
publishDate 2006
url https://ink.library.smu.edu.sg/sis_research/611
https://ink.library.smu.edu.sg/context/sis_research/article/1610/viewcontent/Yang2007_NewParadigmOfInferenceControl_pv.pdf
_version_ 1770570521734283264