Preservation of Records Entrusted to the Cloud Perspectives of the InterPARES Trust Project

Similar documents
Missing Links: What Happens to the Chains of Custody and Preservation in the Cloud?

Today? now? How do you know it's the real thing? 100 years from. Research Domain 1 What is required to prove the authenticity of electronic records?

ARCHIVI. a. III-n. 2 (luglio-dicembre 2008) ASSOCIAZIONE NAZIONALE ARCHIVISTICA ITALIANA ARCHIVI. a. III-n. 2 (luglio-dicembre 2008)

Overview Diplomatics and archival science Research projects with this theoretical framework Why diplomatic analysis? Diplomatic analysis of electronic

Pan-Canadian Trust Framework Overview

REPORT ON THE INTERNATIONAL CONFERENCE MEMORY OF THE WORLD IN THE DIGITAL AGE: DIGITIZATION AND PRESERVATION OUTLINE

Sharing the effort a personal view on D3.4

InterPARES Project. The Future of Our Digital Memory. The Contribution of the InterPARES Project to the Preservation of the Memory of the World

Memorandum on the long-term accessibility. of digital information in Germany

Trends in. Archives. Practice MODULE 8. Steve Marks. with an Introduction by Bruce Ambacher. Edited by Michael Shallcross

A Framework for Digital Heritage Forensics. Luciana Duranti, The University of British Columbia

RESEARCH DATA MANAGEMENT PROCEDURES 2015

University of Massachusetts Amherst Libraries. Digital Preservation Policy, Version 1.3

Interoperable systems that are trusted and secure

Bitcoin and Blockchain for Pythoneers

Digital Preservation Policy

The Preservation of Electronic Records

ICSU World Data System Strategic Plan Trusted Data Services for Global Science

The European Approach

ARCHIVAL MANAGEMENT AND PRESERVATION OF DIGITAL RECORDS IN BRAZIL: STATE OF THE ART

COMMISSION RECOMMENDATION. of on access to and preservation of scientific information. {SWD(2012) 221 final} {SWD(2012) 222 final}

JTC1 Smart Ci,es workshop. Welcome!

AN APPROACH TO ONLINE ANONYMOUS ELECTRONIC CASH. Li Ying. A thesis submitted in partial fulfillment of the requirements for the degree of

Europeana and AccessIT Shkodra, Albania 26/27 June 2012 Rob Davies, MDR Partners, Coordinator

Documentary Heritage Development Framework. Mark Levene Library and Archives Canada

Kyiv National University of Trade and Economics Faculty of Trade and Marketing INFORMATION PACKAGE

Online Access to Cultural Heritage through Digital Collections: the MICHAEL Project

Introduction to Planets. Hans Hofman Nationaal Archief Netherlands Barcelona, 27 March 2009

Global Alliance for Genomics & Health Data Sharing Lexicon

Best Practice and Minimum Standards in Digital Preservation. Adrian Brown, UK Parliament Oracle PASIG, London, 5 April 2011

Protection of Privacy Policy

The European Research Council. The ERC Open Access Working Group Views on Research Data Management and DMPs. Martin Stokhof

Access to Research Infrastructures under Horizon 2020 and beyond

Outline of Slide Presentation at 2018 NFAIS Blockchain Conference By Patrice A. Lyons (Alexandria, VA; May 16, 2018)

Strategy for a Digital Preservation Program. Library and Archives Canada

Heritage, Records & Trust: Understanding societyʼs past through social media?

TERMINOLOGICAL INSTRUMENTS. Terminology Cross-domain Task Force Report. [including Appendix 22]

Over the 10-year span of this strategy, priorities will be identified under each area of focus through successive annual planning cycles.

Open Science. challenge and chance for medical librarians in Europe.

ALA s Core Competences of Librarianship

Robert Bond Partner, Commercial/IP/IT

Stakeholders Acting Together On the ethical impact assessment of Research and Innovation

The Impact of Technological Change on Archival Theory

If These Crawls Could Talk: Studying and Documenting Web Archives Provenance

RecordDNA. What is a Record? Differing visions and perspectives

Title: Case Study 02 Public Relations and Press Office of the State University of Campinas (UNICAMP) Digital Photographic Records: Final Report.

Information Communication Technology

Legal Aspects of Identity Management and Trust Services

the Companies and Intellectual Property Commission of South Africa (CIPC)

Experiences from the Social Sciences - possible links to Health Data?

GENERAL PRINCIPLES OF INTERNET GOVERNANCE

MSc(CompSc) List of courses offered in

Сonceptual framework and toolbox for digital transformation of industry of the Eurasian Economic Union

First Components Ltd, Savigny Oddie Ltd, & Datum Engineering Ltd. is pleased to provide the following

Universal Currency [UNIT] UNITCOIN a decentralized, peer-to-peer digital currency. Abstract

Research Data Preservation in Canada A White Paper

RECOMMENDATIONS. COMMISSION RECOMMENDATION (EU) 2018/790 of 25 April 2018 on access to and preservation of scientific information

Digital Transformation in Thailand: Policy and Institutional Reform

Coordination of open data development in Croatia case study of Environmental Pollution Registry

Personal Data Protection Competency Framework for School Students. Intended to help Educators

A/AC.105/C.1/2014/CRP.13

ABSTRACT INTRODUCTION

COUNCIL OF THE EUROPEAN UNION. Brussels, 9 December 2008 (16.12) (OR. fr) 16767/08 RECH 410 COMPET 550

Introduction to Data- PASS

This is a preview - click here to buy the full publication

University of Kansas. The University of Kansas Libraries

Food Product Standards to Support Exports

MINERVA: IMPROVING THE PRODUCTION OF DIGITAL CULTURAL HERITAGE IN EUROPE. Rossella Caffo - Ministero per i Beni e le Attività Culturali, Italia

Our digital future. SEPA online. Facilitating effective engagement. Enabling business excellence. Sharing environmental information

Existing infrastructures for data services in Western Balkans

Development in Social Science Research Infrastructures

How does one know which repository is worth its salt?

APEC Internet and Digital Economy Roadmap

Methodology for Agent-Oriented Software

Interdisciplinary investigation of the authenticity and long-term preservation of electronic records

Mul6lingual Linked Data Technologies for the Single Digital Market

BULGARIAN INNOVATION MODEL

Digital Preservation in Europe: Trends and Perspectives (a compressed and idiosyncratic review featuring an interactive report card)

Présentation de l'initiative européenne "Next Generation Internet"

HL7 Standards and Components to Support Implementation of the European General Data Protection Regulation (GDPR)

SERBIA. National Development Plan. November

Digital Preservation Strategy Implementation roadmaps

Stirring The Cauldron: Redefining Computational Archival Science (CAS) For The Big Data Domain

HOW THE NATIONAL ARCHIVE SUPPORTS THE CREATORS OF DIGITAL RECORDS IN PUBLIC SECTOR

Anne Gilliland Summer School in the Study of Old Books Zadar, Croatia, 27 September, 2009

International comparison of education systems: a European model? Paris, November 2008

EBLIDA submission to the European Commission Consultation: Europeana: next steps

POSITION ON A EUROPEAN CONSULTATION ON EXPERT GROUP FINAL REPORT ON E-INVOICING. General assessment

FAQ. What is OIX? Who is leading OIX?

Research data management at the University of Oslo

Serving the humanities: daydreams and nightmares

Access to scientific information in the digital age: European Commission initiatives

Details of the Proposal

International Partnership for Nuclear Disarmament Verification Phase II

Learning Lessons Abroad on Funding Research and Innovation. 29 April 2016

At its meeting on 18 May 2016, the Permanent Representatives Committee noted the unanimous agreement on the above conclusions.

Royal Pavilion & Museums DRAFT Digital Preservation Policy 2018

Digital Sustainability: Tyler O. Walters

WG/STAIR. Knut Blind, STAIR Chairman

ediscovery and Digital Evidence Online Course

Transcription:

Preservation of Records Entrusted to the Cloud Perspectives of the InterPARES Trust Project Ph.D. Hrvoje Stančić, assoc. prof. Director Team Europe, InterPARES Trust Department of Information and Communication Sciences Faculty of Humanities and Social Sciences, University of Zagreb hstancic@ffzg.hr

InterPARES Projects InterPARES Trust continuation of previous research InterPARES 1: International Research on Permanent Authentic Records in Electronic Systems (1999-2001) InterPARES 2: Experiential, Interactive, Dynamic Records (2002-2006) InterPARES 3: Theoretical Elaborations into Archival Management (TEAM): Implementing the theory of preservation of authentic records in digital systems in small and medium-sized archival organizations (2007-2012) InterPARES 1, 2, and 3: http://interpares.org InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 2

InterPARES Trust InterPARES Trust: Trust and Digital Records in an Increasingly Networked Society (itrust) 2013-2019 http://www.interparestrust.org Project director Dr. Luciana Duranti, School of Library, Archival and Information Sciences (SLAIS), University of British Columbia (UBC), Vancouver, Canada Funding Social Sciences and Humanities Research Council of Canada Partnership Grant 3

Partnership includes more than 70 institutional partners universities national and regional archives and libraries government agencies intergovernmental and transnational agencies businesses 499 researchers Project organization 4

Goals to generate the theoretical and methodological frameworks that will support the development of integrated and consistent local, national and international networks of policies, procedures, regulations, standards and legislation concerning digital records entrusted to the Internet to ensure public trust grounded on evidence of good governance to ensure a strong digital economy to ensure a persistent digital memory InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 5

Objectives 1. To discover how current policies and practices regarding the handling of digital records by institutions and professionals affect the public s trust in them 2. To anticipate problems in maintaining any trust in digital records under the control of entities suffering a waning level of confidence from the public InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 6

Objectives 3. To establish what significance national/cultural contexts have with regard to the level of trust digital records on the Internet enjoy 4. To articulate model policies, procedures, and practices for creating, managing, accessing, and/or storing records on the Internet especially in social media and cloud computing environments and through mobile technologies InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 7

Objectives 5. To test articulated model policies, procedures, and practices in a variety of contexts so that, from them, international standards, guidelines and best practices can be developed 6. To formulate proposals and models for law reform, and functional requirements for the systems in which Internet providers store and manage digital records InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 8

Organization of research Domains Infrastructure (12) Security (6) Control (33) Access (13) Legal (5) Cross-Domains Terminology (1) Resources (4) Policy (8) Social/Societal Issues (11) Education (3) Each of the 7 teams has a domain chair for every domain Cross-Domain chairs work at the project level Total of 96 studies InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 9

Infrastructure domain Ensuring Trust in Storage in Infrastructure-as-a-Service (IaaS) (EU08) Managing records in networked environments (AF02) Trusted Certification Based on Long-Term Preservation of Digital Archival Resources (AS03) Dark Repositories as a Service (AA03) Contract Terms for Cloud-Based Record Keeping Services (NA10) InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 10

Security domain The Use of Cloud Services for Records Management in International Organizations (TR01) Standard of Practice for Trust in Protection of Authoritative Records in Government Archives (NA03) Security Classification of Records in the Cloud in International Organizations (TR03) InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 11

Control domain Comparative Analysis of Implemented Governmental e-services (EU09) Ensuring authenticity and reliability of electronic records to support the audit process (AF06) Retention and Disposition in a Cloud Environment (NA06) Preserving and managing records life-cycle in a multiprovenance government digital environment (LA01) Analysis of the Interoperability Possibilities of Implemented Governmental e-services (EU15) InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 12

Access domain A Case Example of Public Trust in Online Records: The UK care.data Programme (EU17) Ensuring Trustworthiness of the Agent of Public Trust in China (AS02) Patents, Petitions and Trust From Traditional to Online Environments (NA13) InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 13

Legal domain Legal Issues in Recordkeeping in the Cloud (NA25) The impact of Italian legal framework for cloud computing on electronic recordkeeping and digital preservation systems (EU35) Developing Model Cloud Computing Contracts (NA14) InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 14

Cross-Domain studies Core Terminology for InterPARES Trust (Terminology) Economic Models for Cloud Storage - A Critical Review of the Literature (Resources) Information Governance Maturity in EU Public Administrations (Policy) Role of Cyber Tools and Social Media in the Development of the Ukraine Crisis (Social/Societal Issues) InterPARES Trust Curriculum Mapping of Archival Competencies (Education) InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 15

PaaST study Preservation as a Service for Trust (PaaST) (NA12, Control domain) results of all studies are input for this study work with Object Management Group (OMG) possible future ISO standard InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 16

Research questions Can the data be trusted? Can the records from which the data are derived be trusted or even traceable? Are digital records complete? Are they authentic? How were they generated and by whom (human, computer, program, protocol)? How are digital records stored and under what jurisdiction? Who has access to digital records? How secure are they? InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 17

TRUSTER Preservation Model (EU31) Model for Preservation of Trustworthiness of the Digitally Signed, Timestamped and/or Sealed Digital Records Involved partners Faculty of Humanities and Social Sciences, Zagreb, Croatia researchers, GRAs and PhD students Financial Agency (FINA), Zagreb, Croatia Teched Consulting Services Ltd., Zagreb, Croatia Enigio Time AB, Stockholm, Sweden Natasha Kramtsovsky, Moscow, Russia Victoria Lemieux, UBC, Vancouver, Canada InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 18

TRUSTER Preservation Model Long term records management vs. long term archiving records are expected to live over decades in a business context as active records used by transactional systems vs. digital archive How to preserve the trustworthiness of the digital records with digital signatures, certificates, timestamps or seals added to them? 1. Preserve the digital signatures 2. Eliminate the signatures 3. Record the trace of the signatures as metadata 4. Record the digital signatures' validity information to the blockchain InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 19

TRUSTER Preservation Model Hash or message digest one-way function that calculates the unique fix-length string out of any document it is not possible to recreate the original document by knowing its hash (theoretically) extremely difficult and nearly impossible to create "collisions" i.e. meaningful records with the same hash value (produced by a given hash function) Hash in combination with electronic signatures can be used to check record's integrity authenticity of electronic signature 20

1. TRUSTER Preservation Model Hash function Hash 7d8c5b... Application of private key e-sign. 2. Hash function 7d8c5b... Hash e-sign. = integrity check e-sign. Application of public key Hash 7d8c5b... electronic signature authenticity check 21

TRUSTER Preservation Model Several (or many) hash values may be hashed thus forming a Merkle or hash tree Merkle, R. C. (1982). Patent No. US19790072363 19790905. USA H hash D document H(D1-D20) "root hash" H(D1-D10) H(D11-D20) [ ] [ ] H(D1) H(D10) H(D11) H(D20) 22

TRUSTER Preservation Model Blockchain formation [ ] [ ] [ ] [ ] [ ] [ ] 23

TRUSTER Preservation Model Blockchain 1. hashes of individual events or files are created and timestamped 2. the group of hashes are hashed (a block is created), timestamped and made public (over the distributed network) in regular intervals (e.g. every second, every minute, or every 15 minutes) 3. hash of the previous block is included in the next block underlying technology enabling Bitcoin and many other applications InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 24

TRUSTER Preservation Model Blockchain uses the concept of distributed ledger every participant (server) records every event in its ledger consensus is used in order to ensure that all ledgers are the exact copies and to determine truth event (e.g. transaction or document) is valid only if qualified majority agrees upon it no single point of control and attack InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 25

TRUSTER Preservation Model Case studies Testing the use of blockchain for long term preservation of integrity of digital records Enigio Time's time:beat solution (https://timebeat.com/) InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 26

TRUSTER Preservation Model By using the blockchain one can confirm integrity of an archived record confirm that the record was existing or created at a certain point in time (i.e. not after it was timestamped and registered in the blockchain) confirm sequence of records support/enhance non-repudiation of a digital record improve the validation possibilities of digitally signed records during the long-term preservation InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 27

will influence policies, procedures, regulations, standards and legislation concerning digital records entrusted to the Internet InterPARES Trust - Trust in Digital Records in an Increasingly Networked Society 28 Conclusions InterPARES Trust research results freely online (https://interparestrust.org)

THANK YOU! Preservation of Records Entrusted to the Cloud. Perspectives of the InterPARES Trust Project https://interparestrust.org Ph.D. Hrvoje Stančić, assoc. prof. Director Team Europe, InterPARES Trust Department of Information and Communication Sciences Faculty of Humanities and Social Sciences, University of Zagreb hstancic@ffzg.hr