Please use this identifier to cite or link to this item:
https://hdl.handle.net/1959.11/56744
Title: | Securing services in networked cloud infrastructures |
Contributor(s): | Varadharajan, Vijay (author); Tupakula, Udaya (author) |
Publication Date: | 2018-12 |
Early Online Version: | 2016-05-19 |
DOI: | 10.1109/TCC.2016.2570752 |
Handle Link: | https://hdl.handle.net/1959.11/56744 |
Abstract: | | In this paper, we propose techniques and architecture for securing services that are hosted in a multi-tenant networked cloud infrastructures. Our architecture is based on trusted virtual domains and takes into account both security policies of the tenant domains as well as specific security policies of the virtual machines in the tenant domains. We describe techniques for detecting a range of attacks such as attacks between the virtual machines within a trusted virtual domain, attacks between the virtual machines in different domains, malicious insider attacks and attacks against specific services such as DNS, database and web servers within a domain. We address security policies for trusted virtual domain management such as secure addition and deletion of a virtual machine and the revocation of privileges associated with a virtual machine in a domain. We also discuss forensic analysis of attacks and fine granular detection of malicious entities and mechanisms for restoration of services. Furthermore the proposed architecture provides mechanisms for enhancing the assurance of communications between the virtual machines in different domains. Finally, we present the implementation of our security architecture using Xen and illustrate how our architecture is able to secure services in networked cloud infrastructures.
Publication Type: | Journal Article |
Source of Publication: | IEEE Transactions on Cloud Computing, 6(4), p. 1149-1163 |
Publisher: | Institute of Electrical and Electronics Engineers |
Place of Publication: | United States of America |
ISSN: | 2168-7161 |
Fields of Research (FoR) 2020: | 460407 System and network security |
Socio-Economic Objective (SEO) 2020: | 220405 Cybersecurity |
Peer Reviewed: | Yes |
HERDC Category Description: | C1 Refereed Article in a Scholarly Journal |
Publisher/associated links: | https://ieeexplore.ieee.org/document/7473937 |
WorldCat record: | https://www.worldcat.org/title/6328229854 |
Appears in Collections: | Journal Article School of Science and Technology
|
Show full item record
Items in Research UNE are protected by copyright, with all rights reserved, unless otherwise indicated.