Supercharge Your Innovation With Domain-Expert AI Agents!

Metadata encrypting-decrypting method and system based on distributed file system

A distributed file and metadata technology, which is applied in the field of metadata encryption and decryption methods and systems, can solve problems such as performance problems, inability to simulate applications, and inability to encrypt indexes, etc., so as to improve security, efficiency, and privacy protection Effect

Active Publication Date: 2018-05-04
CHINA TELECOM CORP LTD
View PDF10 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Such as application-level encryption, which is the safest and most flexible method. Application-level encryption can accurately reflect the needs of users. However, this encryption method is difficult to write applications.
Database-level encryption has properties similar to application-level encryption, most database vendors provide some form of encryption, however this can have performance issues, e.g. indexes cannot be encrypted
Encryption at the file system level provides high-performance, application-transparent encryption that is generally easy to deploy, but it cannot simulate some policies at the application level, such as multi-tenant applications based on end-users may want to encrypt, a database may require different The encryption settings for each column are stored in a single file
[0004] In terms of big data protection, the conventional method is to ensure system security through traditional components and products such as firewalls, VPN intrusion detection, and antivirus. Sensitive information and sensitive data protection

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Metadata encrypting-decrypting method and system based on distributed file system
  • Metadata encrypting-decrypting method and system based on distributed file system
  • Metadata encrypting-decrypting method and system based on distributed file system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0024] Various exemplary embodiments of the present invention will now be described in detail with reference to the accompanying drawings. It should be noted that the relative arrangements of components and steps, numerical expressions and numerical values ​​set forth in these embodiments do not limit the scope of the present invention unless specifically stated otherwise.

[0025] At the same time, it should be understood that, for the convenience of description, the sizes of the various parts shown in the drawings are not drawn according to the actual proportional relationship.

[0026] The following description of at least one exemplary embodiment is merely illustrative in nature and in no way taken as limiting the invention, its application or uses.

[0027] Techniques, methods and devices known to those of ordinary skill in the relevant art may not be discussed in detail, but where appropriate, such techniques, methods and devices should be considered part of the Authoriz...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a metadata encrypting-decrypting method and system based on a distributed file system, and relates to the field of Hadoop security of big data. The method comprises the following steps that: an HDFS (Hadoop Distributed File System) client transmits a data writing request to a metadata node; the metadata node encrypts metadata according to the data writing request; the HDFSclient acquires encrypted metadata from the metadata node while reading the metadata, and transmits the encrypted metadata to a data node; and the data node decrypts a ciphertext of the metadata by using a public key issued by a key management server, acquires a plaintext of the metadata, and transmits file streams of the metadata to the HDFS client. Compared with big data encryption, the method and the system have the advantage that the metadata magnitude is relatively small. The metadata are encrypted and decrypted, so that the data transmission efficiency is increased, and the privacy protection of the data is further enhanced.

Description

technical field [0001] The invention relates to the Hadoop security field of big data, in particular to a metadata encryption and decryption method and system based on a distributed file system. Background technique [0002] Big data is playing an increasingly important role in the current social and economic development, but at the same time of centralized processing and mass storage of big data, security issues are also facing more and more serious problems. [0003] HDFS (Hadoop Distributed File System) is designed as a distributed file system suitable for running on commodity hardware. It has a lot in common with the existing distributed file system, but at the same time, its difference from other distributed file systems is also obvious. HDFS is a highly fault-tolerant system suitable for deployment on cheap machines; HDFS can provide high-throughput data access, which is very suitable for applications on large-scale data sets; HDFS relaxes the requirements of (relax) ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06H04L29/08
CPCH04L63/0428H04L67/1097
Inventor 袁淑美阮翠萍匡华龙高云
Owner CHINA TELECOM CORP LTD
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More