期刊名称:Journal of Systemics, Cybernetics and Informatics
印刷版ISSN:1690-4532
电子版ISSN:1690-4524
出版年度:2018
卷号:16
期号:1
页码:33-38
出版社:International Institute of Informatics and Cybernetics
摘要:We have developed a new distributed computing capability,Digital Forensics Compute Cluster (DFORC2) to speed up theingestion and processing of digital evidence. DFORC2parallelizes evidence ingestion and file processing steps. It canbe run on a standalone server or in the Amazon Web Services(AWS) cloud. When running in a cloud computingenvironment, its cluster resources can be dynamically scaled upor down using Kubernetes. DFORC2 is an open source projectthat uses Autopsy, Apache Spark and Kafka, and other opensource software packages. It extends Autopsy’s forensicscapabilities to compute clusters and cloud architectures, so keydigital forensics tasks can be accomplished simultaneously by ascalable array of cluster compute nodes. In this paper wecompare the performance of a DFORC2 with a standaloneversion of Autopsy for evidentiary hard drives of different sizes.