New Paradigm of Inference Control with Trusted Computing
The database server is a crucial bottleneck in traditional inference control architecture, as it enforces highly computation-intensive auditing for all users who query the protected database. As a result, most auditing methods, though rigorously studied, can never be implemented in practice for prot...
Saved in:
Main Authors: | , , |
---|---|
Format: | text |
Language: | English |
Published: |
Institutional Knowledge at Singapore Management University
2006
|
Subjects: | |
Online Access: | https://ink.library.smu.edu.sg/sis_research/611 https://ink.library.smu.edu.sg/context/sis_research/article/1610/viewcontent/Yang2007_NewParadigmOfInferenceControl_pv.pdf |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Institution: | Singapore Management University |
Language: | English |
id |
sg-smu-ink.sis_research-1610 |
---|---|
record_format |
dspace |
spelling |
sg-smu-ink.sis_research-16102022-02-18T02:24:37Z New Paradigm of Inference Control with Trusted Computing YANG, Yanjiang LI, Yingjiu DENG, Robert H. The database server is a crucial bottleneck in traditional inference control architecture, as it enforces highly computation-intensive auditing for all users who query the protected database. As a result, most auditing methods, though rigorously studied, can never be implemented in practice for protecting largescale real-world database systems. To shift this paradigm, we propose a new inference control architecture that will entrust inference control to each users platform, provided that the platform is equipped with trusted computing technology. The trusted computing technology is designed to attest the state of a users platform to the database server, so as to assure the server that inference control could be enforced as expected. A generic protocol is proposed to formalize the interactions between the users platform and database server. Any existing inference control technique can work with our protocol, for which the security properties are formally proven. Since each user’s platform enforces inference control for its own queries, our solution avoids the bottleneck. 2006-11-01T08:00:00Z text application/pdf https://ink.library.smu.edu.sg/sis_research/611 info:doi/10.1007/978-3-540-73538-0_18 https://ink.library.smu.edu.sg/context/sis_research/article/1610/viewcontent/Yang2007_NewParadigmOfInferenceControl_pv.pdf http://creativecommons.org/licenses/by-nc-nd/4.0/ Research Collection School Of Computing and Information Systems eng Institutional Knowledge at Singapore Management University Inference control trusted computing auditing security protocol Information Security |
institution |
Singapore Management University |
building |
SMU Libraries |
continent |
Asia |
country |
Singapore Singapore |
content_provider |
SMU Libraries |
collection |
InK@SMU |
language |
English |
topic |
Inference control trusted computing auditing security protocol Information Security |
spellingShingle |
Inference control trusted computing auditing security protocol Information Security YANG, Yanjiang LI, Yingjiu DENG, Robert H. New Paradigm of Inference Control with Trusted Computing |
description |
The database server is a crucial bottleneck in traditional inference control architecture, as it enforces highly computation-intensive auditing for all users who query the protected database. As a result, most auditing methods, though rigorously studied, can never be implemented in practice for protecting largescale real-world database systems. To shift this paradigm, we propose a new inference control architecture that will entrust inference control to each users platform, provided that the platform is equipped with trusted computing technology. The trusted computing technology is designed to attest the state of a users platform to the database server, so as to assure the server that inference control could be enforced as expected. A generic protocol is proposed to formalize the interactions between the users platform and database server. Any existing inference control technique can work with our protocol, for which the security properties are formally proven. Since each user’s platform enforces inference control for its own queries, our solution avoids the bottleneck. |
format |
text |
author |
YANG, Yanjiang LI, Yingjiu DENG, Robert H. |
author_facet |
YANG, Yanjiang LI, Yingjiu DENG, Robert H. |
author_sort |
YANG, Yanjiang |
title |
New Paradigm of Inference Control with Trusted Computing |
title_short |
New Paradigm of Inference Control with Trusted Computing |
title_full |
New Paradigm of Inference Control with Trusted Computing |
title_fullStr |
New Paradigm of Inference Control with Trusted Computing |
title_full_unstemmed |
New Paradigm of Inference Control with Trusted Computing |
title_sort |
new paradigm of inference control with trusted computing |
publisher |
Institutional Knowledge at Singapore Management University |
publishDate |
2006 |
url |
https://ink.library.smu.edu.sg/sis_research/611 https://ink.library.smu.edu.sg/context/sis_research/article/1610/viewcontent/Yang2007_NewParadigmOfInferenceControl_pv.pdf |
_version_ |
1770570521734283264 |