Security as a Service Model for Cloud Environment

被引:100
作者
Varadharajan, Vijay [1 ]
Tupakula, Udaya [1 ]
机构
[1] Macquarie Univ, Adv Cyber Secur Res Ctr, Fac Sci, Sydney, NSW 2109, Australia
来源
IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT | 2014年 / 11卷 / 01期
基金
澳大利亚研究理事会;
关键词
Cloud security; security architecture; security and privacy;
D O I
10.1109/TNSM.2014.041614.120394
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing is becoming increasingly important for provision of services and storage of data in the Internet. However there are several significant challenges in securing cloud infrastructures from different types of attacks. The focus of this paper is on the security services that a cloud provider can offer as part of its infrastructure to its customers (tenants) to counteract these attacks. Our main contribution is a security architecture that provides a flexible security as a service model that a cloud provider can offer to its tenants and customers of its tenants. Our security as a service model while offering a baseline security to the provider to protect its own cloud infrastructure also provides flexibility to tenants to have additional security functionalities that suit their security requirements. The paper describes the design of the security architecture and discusses how different types of attacks are counteracted by the proposed architecture. We have implemented the security architecture and the paper discusses analysis and performance evaluation results.
引用
收藏
页码:60 / 75
页数:16
相关论文
共 31 条
  • [1] [Anonymous], P 2003 NETW DISTR SY
  • [2] [Anonymous], AM EL COMP CLOUD AM
  • [3] [Anonymous], 2013, EXTENSIBLE ACC CONTR
  • [4] Bahram S., 2010, P 2010 IEEE S REL DI
  • [5] Balacheff B., 2003, Trusted Computing Platforms TCPA Technology in Context
  • [6] Barham P., 2003, P 2003 ACM S OP SYST
  • [7] Beaty K., 2013, P 2013 IEEE INT C CL
  • [8] Beverly R., 2013, Initial longitudinal analysis of ip source spoofing capability on the internet
  • [9] Butt S., 2012, P 2012 ACM COMP COMM
  • [10] Chieu T. C., 2009, P 2009 IEEE INT C E