Please use this identifier to cite or link to this item: https://hdl.handle.net/1959.11/59694
Title: On the Design and Implementation of an Integrated Security Architecture for Cloud with Improved Resilience
Contributor(s): Varadharajan, Vijay (author); Tupakula, Udaya  (author)orcid 
Publication Date: 2017
DOI: 10.1109/TCC.2016.2535320
Handle Link: https://hdl.handle.net/1959.11/59694
Abstract: 

In this paper, we propose an integrated security architecture which combines policy based access control with intrusion detection techniques and trusted computing technologies for securing distributed applications running on virtualised systems. Our security architecture incorporates access control security policies for secure interactions between applications and virtual machines in different physical virtualized servers. It provides intrusion detection and trusted attestation techniques to detect and counteract dynamic attacks in an efficient manner. We demonstrate how this integrated security architecture is used to secure the life cycle of virtual machines including dynamic hosting and allocation of resources as well as migration of virtual machines across different physical servers. We discuss the implementation of the developed architecture and show how the architecture can counteract attack scenarios involving malicious users exploiting vulnerabilities to achieve privilege escalation and then using the compromised machines to generate further attacks. The feedback between the various security components of our security architecture plays a critical role in detecting sophisticated, dynamically changing attacks, thereby increasing the resilience of the overall secure system.

Publication Type: Journal Article
Source of Publication: IEEE Transactions on Cloud Computing, 5(3), p. 375-389
Publisher: Institute of Electrical and Electronics Engineers
Place of Publication: United States of America
ISSN: 2168-7161
Fields of Research (FoR) 2020: 460407 System and network security
Socio-Economic Objective (SEO) 2020: 220405 Cybersecurity
Peer Reviewed: Yes
HERDC Category Description: C1 Refereed Article in a Scholarly Journal
Appears in Collections:Journal Article
School of Science and Technology

Show full item record

SCOPUSTM   
Citations

16
checked on Jan 11, 2025
Google Media

Google ScholarTM

Check

Altmetric


Items in Research UNE are protected by copyright, with all rights reserved, unless otherwise indicated.