%0 Conference Proceedings %T A Novel Cryptographic Framework for Cloud File Systems and CryFS, a Provably-Secure Construction %+ Karlsruhe Institute of Technology (KIT) %+ FZI Forschungszentrum Informatik %A Messmer, Sebastian %A Rill, Jochen %A Achenbach, Dirk %A Müller-Quade, Jörn %Z Part 4: Secure Storage in the Cloud %< avec comité de lecture %( Lecture Notes in Computer Science %B 31th IFIP Annual Conference on Data and Applications Security and Privacy (DBSEC) %C Philadelphia, PA, United States %Y Giovanni Livraga %Y Sencun Zhu %I Springer International Publishing %3 Data and Applications Security and Privacy XXXI %V LNCS-10359 %P 409-429 %8 2017-07-19 %D 2017 %R 10.1007/978-3-319-61176-1_23 %Z Computer Science [cs]Conference papers %X Using the cloud to store data offers many advantages for businesses and individuals alike. The cloud storage provider, however, has to be trusted not to inspect or even modify the data they are entrusted with. Encrypting the data offers a remedy, but current solutions have various drawbacks. Providers which offer encrypted storage themselves cannot necessarily be trusted, since they have no open implementation. Existing encrypted file systems are not designed for usage in the cloud and do not hide metadata like file sizes or directory structure, do not provide integrity, or are prohibitively inefficient. Most have no formal proof of security. Our contribution is twofold. We first introduce a comprehensive formal model for the security and integrity of cloud file systems. Second, we present $$\mathsf {CryFS}$$, a novel encrypted file system specifically designed for usage in the cloud. Our file system protects confidentiality and integrity (including metadata), even in presence of an actively malicious cloud provider. We give a proof of security for these properties. Our implementation is easy and transparent to use and offers performance comparable to other state-of-the-art file systems. %G English %Z TC 11 %Z WG 11.3 %2 https://inria.hal.science/hal-01684369/document %2 https://inria.hal.science/hal-01684369/file/453481_1_En_23_Chapter.pdf %L hal-01684369 %U https://inria.hal.science/hal-01684369 %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-WG %~ IFIP-TC11 %~ IFIP-WG11-3 %~ IFIP-DBSEC %~ IFIP-LNCS-10359