Security-Aware Data Allocation in Multicloud Scenarios

被引:6
作者
di Vimercati, Sabrina De Capitani [1 ]
Foresti, Sara [1 ]
Livraga, Giovanni [1 ]
Piuri, Vincenzo [1 ]
Samarati, Pierangela [1 ]
机构
[1] Univ Milan, Dept Comp Sci, I-20133 Milan, MI, Italy
基金
欧盟地平线“2020”;
关键词
Resource management; Clouds; Data models; Data collection; Encryption; Multicloud; allocation; protection requirements; global allocation requirements; MANAGEMENT;
D O I
10.1109/TDSC.2019.2953068
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
When moving large and heterogeneous data collections to the cloud, a key requirement concerns the selection of the most suitable (set of) cloud service(s) for outsourcing. Not only can different resources have different characteristics and requirements, but different cloud providers can also offer different services and security guarantees, and can have different costs. Selecting a single service for outsourcing an entire data collection can result in a non-optimal solution, as a single service satisfying, at reasonable costs, all the requirements specified by the data owner might not exist. Selecting a set of services could instead ensure the satisfaction of the requirements, possibly with economic advantages. In this article, we address this problem and present a flexible and expressive, yet simple model for supporting data owners in identifying a proper allocation of their resources to a set of cloud services. Our model allows data owners to specify in an easy and intuitive way protection requirements operating at the granularity level of single resource (or class thereof), and representing the minimum security guarantees that a cloud service must offer to store resources. Resources can be outsourced in plaintext or encrypted form, depending on their requirements and on what is the most convenient allocation. Data owners can then also specify global allocation requirements that apply to the overall allocation, to reduce the burden on their side and to avoid excessive fragmentation of the resource collection. We solve the problem of finding an allocation that satisfies both the protection and the global allocation requirements, while minimizing economic costs, by formulating it as a binary programming problem, thus allowing the use of existing techniques for its efficient solution.
引用
收藏
页码:2456 / 2468
页数:13
相关论文
共 23 条
[1]  
Abu-Libdeh H., 2010, P 1 ACM S CLOUD COMP, P229
[2]   Cloud plan selection under requirements of multiple applications [J].
Arman, Ala ;
Foresti, Sara ;
Livraga, Giovanni ;
Samarati, Pierangela .
SECURITY AND PRIVACY, 2018, 1 (04)
[3]  
Arman A, 2016, 2016 IEEE 2ND INTERNATIONAL FORUM ON RESEARCH AND TECHNOLOGIES FOR SOCIETY AND INDUSTRY LEVERAGING A BETTER TOMORROW (RTSI), P511
[4]  
Bermbach D., 2011, Proceedings of the 2011 IEEE 4th International Conference on Cloud Computing (CLOUD 2011), P452, DOI 10.1109/CLOUD.2011.62
[5]   DEPSKY: Dependable and Secure Storage in a Cloud-of-Clouds [J].
Bessani, Alysson ;
Correia, Miguel ;
Quaresma, Bruno ;
Andre, Fernando ;
Sousa, Paulo .
ACM TRANSACTIONS ON STORAGE, 2013, 9 (04)
[6]   Kurma: Secure Geo-Distributed Multi-Cloud Storage Gateways [J].
Chen, Ming ;
Zadok, Erez .
SYSTOR '19: PROCEEDINGS OF THE 12TH ACM INTERNATIONAL SYSTEMS AND STORAGE CONFERENCE, 2019, :109-120
[7]   Compatibility-Aware Cloud Service Composition under Fuzzy Preferences of Users [J].
Dastjerdi, Amir Vahid ;
Buyya, Rajkumar .
IEEE TRANSACTIONS ON CLOUD COMPUTING, 2014, 2 (01) :1-13
[8]   Supporting User Requirements and Preferences in Cloud Plan Selection [J].
De Capitani Di Vimercati, Sabrina ;
Foresti, Sara ;
Livraga, Giovanni ;
Piuri, Vincenzo ;
Samarati, Pierangela .
IEEE TRANSACTIONS ON SERVICES COMPUTING, 2021, 14 (01) :274-285
[9]   A Fuzzy-Based Brokering Service for Cloud Plan Selection [J].
De Capitani di Vimercati, Sabrina ;
Foresti, Sara ;
Livraga, Giovanni ;
Piuri, Vincenzo ;
Samarati, Pierangela .
IEEE SYSTEMS JOURNAL, 2019, 13 (04) :4101-4109
[10]   Supporting Application Requirements in Cloud-based IoT Information Processing [J].
di Vimercati, Sabrina De Capitani ;
Livraga, Giovanni ;
Piuri, Vincenzo ;
Samarati, Pierangela ;
Soares, Gerson A. .
IOTBD: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INTERNET OF THINGS AND BIG DATA, 2016, :65-72