摘要
分布式存储网络增加了系统的高可用性、高扩展性以及高性能等优点的同时,也给系统造成了更多的安全隐患。通过设计一种内核态的加密文件系统,并结合研究的存储代理、异构文件系统服务、元数据管理等技术,该文提出了一种新的异构存储网络安全架构,该方法解决了传统技术不能很好解决分布式环境安全的弊病。实验表明,采用加密后的文件系统给系统性能带来的性能开销很小,证明了这种内核态的安全技术可以很好地应用于分布式网络环境中。
In addition to high availability,high scalability and high performance,distributed storage network also results in many security troubles.Based on a kernel-level encrypt file system,and with the cooperation of the storage agent ,heterogeneous file system service and metadata management technologies,we introduce a new security architecture for heterogeneous storage network.It has resolved the disadvantage of traditional technology.The test results indicate that the overhead of this encrypt file system is very little.This kernel -level security technology can be broadly applied to distributed network environments.
出处
《计算机工程与应用》
CSCD
北大核心
2004年第29期78-80,共3页
Computer Engineering and Applications
关键词
异构存储网络
存储代理
数据加密
heterogeneous storage network,storage proxy,data encryption