Please use this identifier to cite or link to this item:
https://hdl.handle.net/1959.11/59694
Title: | On the Design and Implementation of an Integrated Security Architecture for Cloud with Improved Resilience |
Contributor(s): | Varadharajan, Vijay (author); Tupakula, Udaya (author) |
Publication Date: | 2017 |
DOI: | 10.1109/TCC.2016.2535320 |
Handle Link: | https://hdl.handle.net/1959.11/59694 |
Abstract: | | In this paper, we propose an integrated security architecture which combines policy based access control with intrusion detection techniques and trusted computing technologies for securing distributed applications running on virtualised systems. Our security architecture incorporates access control security policies for secure interactions between applications and virtual machines in different physical virtualized servers. It provides intrusion detection and trusted attestation techniques to detect and counteract dynamic attacks in an efficient manner. We demonstrate how this integrated security architecture is used to secure the life cycle of virtual machines including dynamic hosting and allocation of resources as well as migration of virtual machines across different physical servers. We discuss the implementation of the developed architecture and show how the architecture can counteract attack scenarios involving malicious users exploiting vulnerabilities to achieve privilege escalation and then using the compromised machines to generate further attacks. The feedback between the various security components of our security architecture plays a critical role in detecting sophisticated, dynamically changing attacks, thereby increasing the resilience of the overall secure system.
Publication Type: | Journal Article |
Source of Publication: | IEEE Transactions on Cloud Computing, 5(3), p. 375-389 |
Publisher: | Institute of Electrical and Electronics Engineers |
Place of Publication: | United States of America |
ISSN: | 2168-7161 |
Fields of Research (FoR) 2020: | 460407 System and network security |
Socio-Economic Objective (SEO) 2020: | 220405 Cybersecurity |
Peer Reviewed: | Yes |
HERDC Category Description: | C1 Refereed Article in a Scholarly Journal |
Appears in Collections: | Journal Article School of Science and Technology
|
Show full item record
Items in Research UNE are protected by copyright, with all rights reserved, unless otherwise indicated.