Skip to main navigation Skip to search Skip to main content

Regulatory compliant Oblivious RAM

  • Motorola

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

5 Scopus citations

Abstract

We introduce WORM-ORAM, a first mechanism that combines Oblivious RAM (ORAM) access privacy and data confidentiality with Write Once Read Many (WORM) regulatory data retention guarantees. Clients can outsource their database to a server with full confidentiality and data access privacy, and, for data retention, the server ensures client access WORM semantics. In general simple confidentiality and WORM assurances are easily achievable e.g., via an encrypted outsourced data repository with server-enforced read-only access to existing records (albeit encrypted). However, this becomes hard when also access privacy is to be ensured - when client access patterns are necessarily hidden and the server cannot enforce access control directly.WORM-ORAM overcomes this by deploying a set of zero-knowledge proofs to convince the server that all stages of the protocol are WORM-compliant.

Original languageEnglish
Title of host publicationApplied Cryptography and Network Security - 8th International Conference, ACNS 2010, Proceedings
Pages456-474
Number of pages19
DOIs
StatePublished - 2010
Event8th International Conference on Applied Cryptography and Network Security, ACNS 2010 - Beijing, China
Duration: Jun 22 2010Jun 25 2010

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume6123 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference8th International Conference on Applied Cryptography and Network Security, ACNS 2010
Country/TerritoryChina
CityBeijing
Period06/22/1006/25/10

Fingerprint

Dive into the research topics of 'Regulatory compliant Oblivious RAM'. Together they form a unique fingerprint.

Cite this