• 제목/요약/키워드: Storage Server

검색결과 464건 처리시간 0.028초

클라우드 스토리지에서의 중요데이터 보호 (Securing Sensitive Data in Cloud Storage)

  • 이셜리;이훈재
    • 한국정보처리학회:학술대회논문집
    • /
    • 한국정보처리학회 2011년도 춘계학술발표대회
    • /
    • pp.871-874
    • /
    • 2011
  • The fast emerging of network technology and the high demand of computing resources have prompted many organizations to outsource their storage and computing needs. Cloud based storage services such as Microsoft's Azure and Amazon's S3 allow customers to store and retrieve any amount of data, at anytime from anywhere via internet. The scalable and dynamic of the cloud storage services help their customer to reduce IT administration and maintenance costs. No doubt, cloud based storage services brought a lot of benefits to its customer by significantly reducing cost through optimization increased operating and economic efficiencies. However without appropriate security and privacy solution in place, it could become major issues to the organization. As data get produced, transferred and stored at off premise and multi tenant cloud based storage, it becomes vulnerable to unauthorized disclosure and unauthorized modification. An attacker able to change or modify data while data inflight or when data is stored on disk, so it is very important to secure data during its entire life-cycle. The traditional cryptography primitives for the purpose of data security protection cannot be directly adopted due to user's lose control of data under off premises cloud server. Secondly cloud based storage is not just a third party data warehouse, the data stored in cloud are frequently update by the users and lastly cloud computing is running in a simultaneous, cooperated and distributed manner. In our proposed mechanism we protect the integrity, authentication and confidentiality of cloud based data with the encrypt- then-upload concept. We modified and applied proxy re-encryption protocol in our proposed scheme. The whole process does not reveal the clear data to any third party including the cloud provider at any stage, this helps to make sure only the authorized user who own corresponding token able to access the data as well as preventing data from being shared without any permission from data owner. Besides, preventing the cloud storage providers from unauthorized access and making illegal authorization to access the data, our scheme also protect the data integrity by using hash function.

A Study on KSI-based Authentication Management and Communication for Secure Smart Home Environments

  • Ra, Gyeong-Jin;Lee, Im-Yeong
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제12권2호
    • /
    • pp.892-905
    • /
    • 2018
  • In smart home environment, certificate based signature technology is being studied by communication with Internet of Things(IoT) device. However, block - chain technology has attracted much attention because of the problems such as single - point error and management overhead of the trust server. Among them, Keyless Signature Infrastructure(KSI) provides integrity by configuring user authentication and global timestamp of distributed server into block chain by using hash-based one-time key. In this paper, we provide confidentiality by applying group key and key management based on multi - solution chain. In addition, we propose a smart home environment that can reduce the storage space by using Extended Merkle Tree and secure and efficient KSI-based authentication and communication with enhanced security strength.

VOD 시스템 상에서 P2P 프록시 기반의 패칭기법 (A P2P Proxy Patching Scheme on VOD System)

  • 권춘자;최치규;최황규
    • 산업기술연구
    • /
    • 제24권B호
    • /
    • pp.177-186
    • /
    • 2004
  • The main bottleneck for a VOD system is bandwidth of storage or network I/O due to the high bandwidth requirements and long-lived nature of digital video. Patching is one of the most efficient techniques to overcome the bottleneck of the VOD system through the use of multicast scheme. In this paper, we propose a new patching scheme, P2P proxy patching, for improving the typical patching technique by jointly using the proxy prefix caching scheme and the P2P proxy. In our proposed scheme, each client play a role in a proxy for multicasting a regular stream to other clients that request the same stream. Due the use of the P2P proxy and the prefix caching, the server bandwidth is required significantly less than that of the typical patching technique. In the performance study, we show that our patching scheme can reduce the server bandwidth requirements compared with the existing patching techniques.

  • PDF

망 분리 가입자 부가 서비스 제공 방법 (Method for network divided subscriber's facilities)

  • 윤태호
    • 한국전자통신학회논문지
    • /
    • 제11권1호
    • /
    • pp.37-44
    • /
    • 2016
  • 이 논문에서는 망 분리 가입자의 부가 서비스 제공을 위한 방법을 제공한다. 본 서비스 제공방법은, 서버가 인증키를 생성하는 단계, 서버의 인증키를 포함한 실행파일을 이동식 저장매체에 저장하는 단계, 클라이언트의 이동식 저장매체에 저장된 실행파일을 실행시키는 단계 및 클라이언트의 실행파일 실행결과로 가상 머시인을 제공하는 단계를 포함한다. 이동하여 업무를 수행하는 경우, 가상 가입자 부가 서비스가 출장자에게 제공 될 수 있다.

Cloud System Construction for Availability of University Information System

  • Jang, Hae-Sook;Park, Ki-Hong
    • 한국컴퓨터정보학회논문지
    • /
    • 제22권12호
    • /
    • pp.179-186
    • /
    • 2017
  • Managing students' data is a high prioritized duty of the university administration since most of the school affairs are proceed based on that database. Universities have invested in IT assets such as servers, storage, database, and networks. However, continuing investment in IT infrastructure is impossible due to limited budget and rapid changes in the educational environment. As cloud computing diffuse, universities are trying to reduce costs and improve efficiency by increasing server utilization, unlike when physically investing. We designed a hypothetical academic information management system based on cloud computing by utilizing the advanced server virtualization technology. This administrative cloud system allows universities to improve the availability of the system with low cost. The system demonstrates its flexibility of using data resources and immediacy of resumption.

클러스터 기반 웹 서버에서의 분산 QoS (A distributed QoS system for cluster based web server systems)

  • 박성우;정규식;김동승
    • 대한전자공학회:학술대회논문집
    • /
    • 대한전자공학회 2002년도 하계종합학술대회 논문집(3)
    • /
    • pp.177-180
    • /
    • 2002
  • This paper introduces a new distributed QoS (Quality of Service) control system for clusters of web servers. The proposed system can employ not only network bandwidth but also other metrics such as processor load, memory usage, and storage access load that affect the overall system performance. Moreover, it controls over clustered\ulcorner workstations in of-der to utilize idle resources among workstations. This architecture maximizes overall usage of cluster of web servers while it provides predictable and differentiated performance for each contents volume. We implemented a prototype of introduced system, and the test results showed the proposed method can control QoS in a cluster server system.

  • PDF

Complexity Results for the Design Problem of Content Distribution Networks

  • Choi, Byung-Cheon;Chung, Jibok
    • Management Science and Financial Engineering
    • /
    • 제20권2호
    • /
    • pp.7-12
    • /
    • 2014
  • Content Delivery Network (CDN) has evolved to overcome a network bottleneck and improve user perceived Quality of Service (QoS). A CDN replicates contents from the origin server to replica servers to reduce the overload of the origin server. CDN providers would try to achieve an acceptable performance at the least cost including the storage space or processing power. In this paper, we introduce a new optimization model for the CDN design problem considering the user perceived QoS and single path (non-bifurcated) routing constraints and analyze the computational complexity for some special cases.

데이터센터의 합리적인 환경제어를 위한 공기분배 시스템에 대한 연구 (A Study on Air-distribution method for the Thermal Environmental Control in the Data Center)

  • 조진균;차지형;홍민호;연창근
    • 대한설비공학회:학술대회논문집
    • /
    • 대한설비공학회 2008년도 동계학술발표대회 논문집
    • /
    • pp.487-492
    • /
    • 2008
  • The cooling of data centers has emerged as a significant challenge as the density of IT server increases. Server installations, along with the shrinking physical size of servers and storage systems, has resulted in high power density and high heat density. The introduction of high density enclosures into a data center creates the potential for "hot spots" within the room that the cooling system may not be able to address, since traditional designs assume relatively uniform cooling patterns within a data center. The cooling system for data center consists of a CRAC or CRAH unit and the associated air distribution system. It is the configuration of the distribution system that primarily distinguishes the different types of data center cooling systems, this is the main subject of this paper.

  • PDF

DSV 기반 서버 고가용성을 위한 적응적 서버 선정 알고리즘 (Adaptive Server Selection Algorithm for High Availability based on DSV)

  • 김현우;변휘림;송은하;정영식
    • 한국정보처리학회:학술대회논문집
    • /
    • 한국정보처리학회 2015년도 춘계학술발표대회
    • /
    • pp.118-120
    • /
    • 2015
  • 현재, 급격한 IT 기술 발전의 산물인 스마트 디바이스에서 발생되는 데이터의 양이 기하급수적으로 증가함에 따라 효율적으로 저장하기 위한 다양한 연구 및 기술 개발이 진행되고 있다. 이 중에 Desktop Storage Virtualization(DSV)은 비가용 데스크톱 스토리지 자원을 하나의 통합된 스토리지로 만들고 이를 스토리지 사용자 니즈에 따라 스토리지를 제공한다. DSV는 분산된 데스크탑의 비가용 자원을 통합함에 따라 신뢰성이 매우 중요시된다. 그러나 DSV 환경에서 산발적 서버다운 및 기타 장애시 대응체계가 미흡하다. 본 논문에서는 이러한 상황을 고려한 Server Selection Algorithm(SSA)를 제시한다. SSA는 서버 장애 발생시 대체 서버를 분산된 데스크탑이 적응적 인지 및 서버를 변경함으로써 고가용성을 제공한다.

스트라이핑 시스템에서 디스크 추가를 위한 계산에 의한 매핑 방법 (The Mapping Method by Equation for Adding Disks for Striping System)

  • 박유현;김창수;강동재;김영호;신범주
    • 한국멀티미디어학회논문지
    • /
    • 제6권1호
    • /
    • pp.15-27
    • /
    • 2003
  • Recently, the volume of data is increasing rapidly in server for multimedia service, according to development of multimedia application environment. In recent research for storage technology the technology like of the SAN(Storage Area Network) advantages in scalibility of storage devices, and can read data from multiple disk arrays through RAID 0, 5. The RAID 0 and 5 translate to logical address to physical address using equation, but in case of adding disks at the system with equation -based mapping, the problem that we must rearrange the whole data in the previous disks happens. We use the mapping table to solve this problem in recent, but we can not load the whole mapping table in main memory because it occupies too large space. Therefore the extra I/Os are demanded to evaluate real physical address of data, so total performance of the system is degraded. In this paper, we propose the mapping method that supports the scalibility in RAID 0 or 5 system. The proposing method applies small metadata, so- called SZIT and simple equation, so it is possible that we make translate logical address to physical address rapidly and it is scalable in disk extending simultaneously Our suggesting method, if we add disks to the striping system for expanding of storage capacity, has an advantage of never stop service. So, SZlT-based mapping method can do online-disk-expanding in real-time service.

  • PDF