Affiliation:
1. Inria Rennes – Bretagne Atlantique, France
2. University Politehnica Bucharest, Romania
Abstract
Providing an adequate security level in Cloud Environments is currently an extremely active research area. More specifically, malicious behaviors targeting large-scale Cloud data repositories (e.g., Denial of Service attacks) may drastically degrade the overall performance of such systems and cannot be detected by typical authentication mechanisms. This article proposes a generic security management framework allowing providers of Cloud data management systems to define and enforce complex security policies. This security framework is designed to detect and stop a large array of attacks defined through an expressive policy description language and to be easily interfaced with various data management systems. The authors show that they can efficiently protect a data storage system by evaluating the security framework on top of the BlobSeer data management platform. The authors evaluate the benefits of preventing a DoS attack targeted towards BlobSeer through experiments performed on the Grid’5000 testbed.
Subject
Computer Networks and Communications,Hardware and Architecture
Reference25 articles.
1. Amazon Web Services. (2011). Amazon Elastic Compute Cloud (EC2). Retrieved September 30, 2011, from http://aws.amazon.com/ec2/
2. Amazon Web Services. (2011). Amazon Simple Storage Service (S3). Retrieved September 30, 2011, from http://aws.amazon.com/s3/
3. Ateniese, G., Di Pietro, R., Mancini, L. V., & Tsudik, G. (2008). Scalable and efficient provable data possession. In Proceedings of the 4th International Conference on Security and Privacy in Communication Networks (pp. 1-10).
4. Basescu, C., Carpen-Amarie, A., Leordeanu, C., Costan, A., & Antoniu, G. (2011). Managing data access on clouds: A generic framework for enforcing security policies. In Proceedings of the 25th International Conference on Advanced Information Networking and Applications, Singapore (pp. 459-466).
5. Grid'5000: A Large Scale And Highly Reconfigurable Experimental Grid Testbed
Cited by
1 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. The Public Cloud for e-Government;International Journal of Distributed Systems and Technologies;2013-10