论文标题

通过Intel SGX在云中保护IoT数据分析

Secure IoT Data Analytics in Cloud via Intel SGX

论文作者

Islam, Md Shihabul, Ozdayi, Mustafa Safa, Khan, Latifur, Kantarcioglu, Murat

论文摘要

在我们的日常生活中,物联网设备的越来越多的采用正在引起数据洪水,主要是私人信息,这些信息需要仔细维护和安全存储系统,以确保数据完整性和保护。此外,巨大的物联网生态系统为用户提供了通过将其设备和其他服务与基于规则的程序相互连接的机会来自动化系统的机会。用来存储和处理敏感的物联网数据的云服务结果很容易受到外部威胁的影响。因此,需要保护敏感的物联网数据和基于规则的程序,以防止网络攻击。为了应对这一重要挑战,在本文中,我们提出了一个框架,以保持物联网数据的机密性和完整性和基于规则的程序执行。我们设计了使用可信赖的执行环境(TEE)(例如英特尔SGX)和端到端数据加密机制来保留数据隐私的框架。我们通过使用模拟和真实物联网设备数据牢固地在SGX中执行基于规则的程序来评估框架。

The growing adoption of IoT devices in our daily life is engendering a data deluge, mostly private information that needs careful maintenance and secure storage system to ensure data integrity and protection. Also, the prodigious IoT ecosystem has provided users with opportunities to automate systems by interconnecting their devices and other services with rule-based programs. The cloud services that are used to store and process sensitive IoT data turn out to be vulnerable to outside threats. Hence, sensitive IoT data and rule-based programs need to be protected against cyberattacks. To address this important challenge, in this paper, we propose a framework to maintain confidentiality and integrity of IoT data and rule-based program execution. We design the framework to preserve data privacy utilizing Trusted Execution Environment (TEE) such as Intel SGX, and end-to-end data encryption mechanism. We evaluate the framework by executing rule-based programs in the SGX securely with both simulated and real IoT device data.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源