Security in Multi-Tenancy Cloud

被引:36
作者
Jasti, Amarnath [1 ]
Shah, Payal [1 ]
Nagaraj, Rajeev [1 ]
Pendse, Ravi [1 ]
机构
[1] Wichita State Univ, Dept Elect Engn & Comp Sci, Wichita, KS 67260 USA
来源
44TH ANNUAL 2010 IEEE INTERNATIONAL CARNAHAN CONFERENCE ON SECURITY TECHNOLOGY | 2010年
关键词
Cloud computing; Hypervisor; Virtualization; Virtual Machine (VM); multi-tenancy;
D O I
10.1109/CCST.2010.5678682
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Cloud computing creates exciting opportunities like reduced costs and flexibility to the users. It also comprises of some risks like data security within the cloud. Several common security threats like data leakage, insecure API's, and malicious inside users are applicable to cloud computing environment as well. In this paper, the authors consider a cloud computing service where multiple Virtual Machines (VM's) are co-located on the same physical server. In such systems, physical resources are transparently shared by the VMs belonging to multiple users. In systems like these, a malicious user having control of a VM can try to gain control over other VM's resources or utilize all system resources leading to denial of resource attack over other VM users. A malicious user can also try to steal the data of other users located on the same server by compromising hypervisor file system (logical volumes). In this paper, security threats associated with cloud computing environment are evaluated. Authors also explore how such co-existent of VM's can be exploited to gain access over other user's data or deny service and propose constructive security measures that can be deployed to avoid such attacks.
引用
收藏
页码:35 / 41
页数:7
相关论文
共 14 条
[1]  
ABLES T, OVERWIER XEN VIRTUAL
[2]  
CARR J, 2008, 2 VULNERABILITIES FO
[3]  
*CITR SYST INC, VIRT MACH RES SHAR C
[4]  
GOIRI I, MANAGEMENT AUTONOMIC
[5]  
Hyde D., 2009, SURVEY SECURITY VIRT
[6]  
Kirch J., 2007, Virtual machine security guidelines
[7]  
LEE M, SUPPORTING SOFT REAL
[8]  
Owens K., Securing Virtual Compute Infrastructure in the Cloud
[9]  
Ristenpart T., 2009, 16 ACM C COMP COMM S
[10]  
*VMWARE INC, VMWARE WORKST 5 5