Cloud Key Management using Trusted Execution Environment

Jaouhara Bouamama, Mustapha Hedabou, Mohammed Erradi

2021

Abstract

Cloud storage represents a primordial component in most information technology infrastructures. Using cloud instead of on-premise storage raises several security issues, especially when secret keys are stored on the cloud. In such a setting, a robust cloud key management system is a must. Using traditional key management systems (KMS) in the cloud suffers from performance and scalability limitations. This paper, proposes an efficient and secure cloud KMS based on Trusted Execution Environment, precisely Intel SGX. The suggested system (KMSGX), while being deployed on the cloud, is fully controlled by the end-user. Therefore, KMSGX allows running on-premise software key management securely on the cloud provider side, protecting the exchanged and stored data. The security properties of the suggested design have been formalized using the Applied Pi Calculus and proved with ProVerif. The experimental results have demonstrated the system’s high performance in terms of the upload and download durations and the limited overhead compared to the plain design.

Download


Paper Citation


in Harvard Style

Bouamama J., Hedabou M. and Erradi M. (2021). Cloud Key Management using Trusted Execution Environment. In Proceedings of the 18th International Conference on Security and Cryptography - Volume 1: SECRYPT, ISBN 978-989-758-524-1, pages 560-567. DOI: 10.5220/0010558905600567


in Bibtex Style

@conference{secrypt21,
author={Jaouhara Bouamama and Mustapha Hedabou and Mohammed Erradi},
title={Cloud Key Management using Trusted Execution Environment},
booktitle={Proceedings of the 18th International Conference on Security and Cryptography - Volume 1: SECRYPT,},
year={2021},
pages={560-567},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0010558905600567},
isbn={978-989-758-524-1},
}


in EndNote Style

TY - CONF

JO - Proceedings of the 18th International Conference on Security and Cryptography - Volume 1: SECRYPT,
TI - Cloud Key Management using Trusted Execution Environment
SN - 978-989-758-524-1
AU - Bouamama J.
AU - Hedabou M.
AU - Erradi M.
PY - 2021
SP - 560
EP - 567
DO - 10.5220/0010558905600567