Transparent Storage Encryption in Kubernetes

Publikation: Beitrag in Buch/Konferenzbericht/Sammelband/GutachtenBeitrag in KonferenzbandBeigetragenBegutachtung

Abstract

Cloud computing and therefore storage in the cloud became more widespread. The ease of use, as well as the fact that the cloud is a key building block for 5G applications, has accelerated this development. Security and privacy is also a major issue in the cloud environment. To address this issue, we have developed a transparent data encryption for data at rest, especially designed for the use with cloud storage. In order to adapt the architecture to the security requirements and the requirements in the cloud environment, a STRIDE threat model was created for the time being. The architecture was then designed based on this threat model. The tool is able to encrypt storage. It is possible to choose between different encryption algorithms. An important design step was the separation of the key management from the data storage. Performance measurements of the implementation were performed to ensure usability. These measurements show that the slowdown caused by the introduction of encryption is small enough for most scenarios.

Details

OriginalspracheEnglisch
TitelEuropean Wireless Conference, EW 2022
Herausgeber (Verlag)VDE Verlag, Berlin [u. a.]
Seiten53-58
Seitenumfang6
ISBN (elektronisch)9781713865698
ISBN (Print)978-3-8007-6001-5
PublikationsstatusVeröffentlicht - 2022
Peer-Review-StatusJa

Konferenz

Titel27th European Wireless Conference
Untertitel6G and 5G beyond Communications
KurztitelEW 2022
Veranstaltungsnummer27
Dauer19 - 21 September 2022
Webseite
BekanntheitsgradInternationale Veranstaltung
OrtTechnische Universität Dresden
StadtDresden
LandDeutschland

Externe IDs

ORCID /0000-0001-8469-9573/work/161891116

Schlagworte

Schlagwörter

  • B5G, cloud computing, cryptography, edge computing, implementation, kubernetes