5.4.1. Exemplary lifetime of cloud storage and motivation

Exemplary lifetime of cloud storage and motivation 1/2

Motivation for secure data erasing

When users decides to transfer their data to a cloud storage facility, a SLA (service level agreement) is signed, determining, among other things, what happens to the data after the storage period. Since cloud provider has complete access to the data, there is a risk that he may try to keep private data when the storage period expires. In many cases, both in business practice and literature, it is assumed that a statement in SLA assuring the service provider deletes all their copies of stored data, is sufficient to trust them doing so. Nevertheless one needs to be aware that a dishonest provider may keep the data for their own use. A storage provider has access to all the patterns (or even transcripts) of user's data handling, even encrypted data may be exposed to threat. In order to be fully convinced, service provider has to provide of proof that he has no access to the data previously stored in the cloud.

 

UserCloud storage
Data
Data\(\stackrel{\text{store } \texttt{Data}}{\rightarrow} \)
NewData=Modify(Data)\( \stackrel{\text{update } \texttt{Data}}{\rightarrow}\)NewData
NewData\( \stackrel{\text{delete } \texttt{NewData}}{\rightarrow} \)?

Example of "naive deletion assurance" 2/2

(from   : 1 )

  • large share of the security guarantees depends on SLA,
  • deletion consists of negating first bit in every byte of the data on one of the cloud servers,
  • deletion of copies stored on other servers relies on the provider, who should ''update all copies to the newest version".

There is a patent based on this approach -- US8504532 B2.

Bibliography 1/1

1

Mithun, P., Ashutosh, S.: Zero data remnance proof in cloud storage.

International Journal of Network Security & Its Applications (IJNSA) 2(4) (2010) [18] Geambasu, R., Kohno, T., Levy  




Projekt Cloud Computing – nowe technologie w ofercie dydaktycznej Politechniki Wrocławskiej (UDA.POKL.04.03.00-00-135/12)jest realizowany w ramach Programu Operacyjnego Kapitał Ludzki, Priorytet IV. Szkolnictwo wyższe i nauka, Działanie 4.3. Wzmocnienie potencjału dydaktycznego uczelni w obszarach kluczowych w kontekście celów Strategii Europa 2020, współfinansowanego ze środków Europejskiego Funduszu Społecznego i budżetu Państwa