FT-RC4: A Robust Security Mechanism for Data Stream Systems

Mohamed Ali, Mohamed Y. Eltabakh, Cristina Nita-Rotaru · Purdue e-Pubs (Purdue University System) · 2005

Abstract. Stream database systems are designed to support the fast on-line processing that characterizes many new emerging applications such as sensor-based environments, on-line business processing and network monitoring. Data stream processing is a highly demanding environment where streams are usually infinite, bursty, and running at high arrival rates. Due to limited buffer storage or real-time constraints, data items may be dropped out of the system and lost for ever. In many applications, sensitive stream data needs to be secured against malicious attacks. Various security mechanisms have been well studied in literature. However, these mechanisms are not tuned to work in the lossy streaming environment. Stream security mechanisms are required to provide security services and to be fault-tolerant as well. In this paper we identify the security requirements for data stream systems, focusing on Nile, a prototype query processing engine for data streams developed at Purdue University. We first propose a security architecture for data stream systems, then focus on a particular service: data integrity and confidentiality. We present a new mechanism, FT-RC4, that provides data integrity and confidentiality. We demonstrate its practicality by implementing it inside our prototype data stream system and evaluating its performance. 1

Read the paper · More papers on PaperTik