Affiliation:
1. Singapore Management University
2. National University of Singapore
Abstract
The number of successful attacks on the Internet shows that it is very difficult to guarantee the security of online servers over extended periods of time. A breached server that is not detected in time may return incorrect query answers to users. In this article, we introduce authentication schemes for users to verify that their query answers from an online server are complete (i.e., no qualifying tuples are omitted) and authentic (i.e., all the result values are legitimate). We introduce a scheme that supports range selection, projection as well as primary key-foreign key join queries on relational databases. We also present authentication schemes for single- and multi-attribute range aggregate queries. The schemes complement access control mechanisms that rewrite queries dynamically, and are computationally secure. We have implemented the proposed schemes, and experiment results showed that they are practical and feasible schemes with low overheads.
Funder
Singapore Management University
Publisher
Association for Computing Machinery (ACM)
Subject
Safety, Risk, Reliability and Quality,General Computer Science
Reference40 articles.
1. Boneh D. Gentry C. Lynn B. and Shacham H. 2003. Aggregate and verifiably encrypted signatures from bilinear maps. In <it>Proceedings of Advances in Cryptology (EUROCRYPT'03)</it> E. Biham Ed. <it>Lecture Notes in Computer Science</it> Springer-Verlag. 416--432. Boneh D. Gentry C. Lynn B. and Shacham H. 2003. Aggregate and verifiably encrypted signatures from bilinear maps. In <it>Proceedings of Advances in Cryptology (EUROCRYPT'03)</it> E. Biham Ed. <it>Lecture Notes in Computer Science</it> Springer-Verlag. 416--432.
2. Cheng W. Pang H. and Tan K.-L. 2006. Authenticating multi-dimensional query results in data publishing. In <it>Proceedings of the 20th Annual IFIP WG 11.3 Working Conference on Data and Applications Security</it>. Cheng W. Pang H. and Tan K.-L. 2006. Authenticating multi-dimensional query results in data publishing. In <it>Proceedings of the 20th Annual IFIP WG 11.3 Working Conference on Data and Applications Security</it>.
3. Trusted products evaluation
4. Chun S.-J. Chung C.-W. Lee J.-H. and Lee S.-L. 2001. Dynamic update cube for range-sum queries. In <it>Proceedings of the International Conference on Very Large Data Bases (VLDB'01)</it>. 521--530. Chun S.-J. Chung C.-W. Lee J.-H. and Lee S.-L. 2001. Dynamic update cube for range-sum queries. In <it>Proceedings of the International Conference on Very Large Data Bases (VLDB'01)</it>. 521--530.
Cited by
25 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献