Managing Cloud Storage Obliviously

Author/Creator ORCID

Date

2017-01-19

Department

Program

Citation of Original Publication

Vaishali Narkhede, Karuna Pande Joshi, Tim Finin, SeungGeol Choi, Adam Aviv, and Daniel S Roche, Managing Cloud Storage Obliviously, 2016 IEEE 9th International Conference on Cloud Computing (CLOUD) , DOI: 10.1109/CLOUD.2016.0151

Rights

This item is likely protected under Title 17 of the U.S. Copyright Law. Unless on a Creative Commons license, for uses protected by Copyright Law, contact the copyright holder or the author.

Abstract

Consumers want to ensure that their enterprise data is stored securely and obliviously on the cloud, such that the data objects or their access patterns are not revealed to anyone, including the cloud provider, in the public cloud environment. We have created a detailed ontology describing the oblivious cloud stor-age models and role based access controls that should be in place to manage this risk. We have developed an algorithm to store cloud data using oblivious data structure defined in this paper. We have also implemented the ObliviCloudManager ap-plication that allows users to manage their cloud data by vali-dating it before storing it in an oblivious data structure. Our application uses role-based access control model and collection based document management to store and retrieve data effi-ciently. Cloud consumers can use our system to define policies for storing data obliviously and manage storage on untrusted cloud platforms even if they are unfamiliar with the underlying technology and concepts of oblivious data structures.