Zero-knowledge protection for side channels in data protection to the cloud
Masking a data rate of transmitted data is disclosed. As data is transmitted from a production site to a secondary site, the data rate is masked. Masking the data rate can include transmitting at a fixed rate, a random rate, or an adaptive rate. Each mode of data transmission masks or obscures the actual data rate and thus prevents others from gaining information about the data or the data owner from the data transfer rate.
1 . A method for protecting a side channel associated with data, the method comprising:
determining a rate for transferring data between a first site and a second site; and
transferring the data at the determined rate, wherein the determined rate includes at least two rates selected from: a fixed rate, an adaptive rate, and/or a random rate, wherein the determined rate is adapted in response to changes in an amount of data expected to be transferred, cost, and a recovery point objective, wherein the recovery point objective measures how much data can be lost.
2 . The method of claim 1 , wherein the determined rate is configured to obscure performance metrics associated with the side channel and/or information related to the data being transferred.
3 . The method of claim 1 , wherein the first site is one of an on-premise system, a cloud-based system and the second site is a cloud site.
4 . The method of claim 1 , wherein the determined rate is related to a transfer time.
5 . The method of claim 1 , wherein the at least two rates are based on time frames, wherein a first of the at least two rates is used during a first time frame and a second of the at least two rates is used during a second time frame associated with transferring the data.
6 . The method of claim 5 , wherein transferring the data at the fixed rate includes padding or queuing the data as needed.
7 . The method of claim 6 , wherein transferring the data at a random rate includes using a randomization technique to select different fixed rates for successive time frames.
8 . The method of claim 7 , wherein the random rate is bounded by upper and lower rates.
9 . The method of claim 7 , wherein the adaptive rate is configured such that the determined rate provides a balance between privacy requirements, cost, and/or recovery point objective demands.
10 . The method of claim 9 , wherein, when transmitting using the adaptive rate, the method further comprising:
sending raw metric data from to a discretization engine;
performing a discretization process by the discretization engine based on the raw metric data and an allowed frequency;
predicting a data transmission rate; and
for a given time period during which the data is transmitted, masking the data transmission rate, wherein the transferred data is padded with extra data when there is insufficient data to achieve the data transmission rate and wherein the transferred data is queued when the data cannot be transmitted at the data transmission rate.
11 . A non-transitory storage medium having stored therein instructions that are executable by one or more hardware processors to perform operations comprising:
determining a rate for transferring data between a first site and a second site; and
transferring the data at the determined rate, wherein the determined rate includes at least two rates selected from: a fixed rate, an adaptive rate, and/or a random rate, wherein the determined rate is adapted in response to changes in an amount of data expected to be transferred, cost, and a recovery point objective, wherein the recovery point objective measures how much data can be lost.
12 . The non-transitory storage medium of claim 11 , wherein the determined rate is configured to obscure performance metrics associated with the side channel and/or information related to the data being transferred, wherein the first site is one of an on-premise system, a cloud-based system and the second site is a cloud site and wherein the determined rate is related to a transfer time.
13 . The non-transitory storage medium of claim 11 , wherein the at least two rates are based on time frames, wherein a first of the at least two rates is used during a first time frame and a second of the at least two rates is used during a second time frame associated with transferring the data.
14 . The non-transitory storage medium of claim 13 , wherein transferring the data at the fixed rate includes padding or queuing the data as needed.
15 . The non-transitory storage medium of claim 14 , wherein transferring the data at a random rate includes using a randomization technique to select different fixed rates for successive time frames.
16 . The non-transitory storage medium of claim 15 , wherein the random rate is bounded by upper and lower rates.
17 . The non-transitory storage medium of claim 15 , wherein the adaptive rate is configured such that the determined rate provides a balance between privacy requirements, cost, and/or recovery point objective demands.
18 . The non-transitory storage medium of claim 15 , wherein, when transmitting using the adaptive rate, the method further comprising:
sending raw metric data from to a discretization engine;
performing a discretization process by the discretization engine based on the raw metric data and an allowed frequency;
predicting a data transmission rate; and
for a given time period during which the data is transmitted, masking the data transmission rate, wherein the transferred data is padded with extra data when there is insufficient data to achieve the data transmission rate and wherein the transferred data is queued when the data cannot be transmitted at the data transmission rate.