[Openstack-security] Copy/Paste Protection for Object Store

Jeffrey Walton noloader at gmail.com
Wed Nov 20 19:58:28 UTC 2013


I've been mulling over copy/paste attacks for data in the object
store. In this use case, imagine the object store holds an encrypted
copy of a document or spreadsheet. The organization would encrypt the
document before storing it in the object store.

Are there any sever side controls available to ensure a new copy of an
encrypted document is not replaced with an old copy? For example, is
there server side functionality or hook that allows an organization to
enforce the new document's signed time stamp is fresher than existing
document's time stamp?

Thanks in advance.




More information about the Openstack-security mailing list