中國IDC產(chǎn)業(yè)大典云計(jì)算及應(yīng)用安全上_第1頁
中國IDC產(chǎn)業(yè)大典云計(jì)算及應(yīng)用安全上_第2頁
中國IDC產(chǎn)業(yè)大典云計(jì)算及應(yīng)用安全上_第3頁
中國IDC產(chǎn)業(yè)大典云計(jì)算及應(yīng)用安全上_第4頁
中國IDC產(chǎn)業(yè)大典云計(jì)算及應(yīng)用安全上_第5頁
已閱讀5頁,還剩7頁未讀 繼續(xù)免費(fèi)閱讀

下載本文檔

版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進(jìn)行舉報(bào)或認(rèn)領(lǐng)

文檔簡介

1、computer scienceassuring runtime service integrity in cloud systems 1/22ting yudepartment of computer sciencenorth carolina state universitycomputer science2cloud computing internet-based computing shared resources provided on demand basic computing resources virtual computing environment: cpu, memo

2、ry, storage, networking complicated services software as a service (saas), service-oriented architecture (soa) high level services: data processing, data management, auditing, web services, computer sciencemulti-tenant cloud systemsplatform for software as a service (saas)3/22p3p2p1p2p3p3p1userporta

3、lf1f2f3f4f1f2f3computer science4multi-tenant cloud systems (cont.)benefitsmore powerful services in a cost-effective wayapplicationsdataflow processing huge amounts of datareal-time processing and analysise.g. network traffic monitoring, sensor data analysis, scientific data processinge-commerce4/22

4、computer science5dataflow processing applicationsdataflowdata processing componentdata tuplediservice provider5/22p3p2p1p2p3p3p1userportalf1f2f3f4f1f2f3di,f1(di),f2(f1(di),f3(f2(f1(di),f3(f2(f1(di),di,computer scienceservice integrity attack6/22p3p2p1p2p3p3p1userportalf1f2f3f4f1f2f3di,f1(di),f0(f1(d

5、i),f3(f0(f1(di),f3(f0(f1(di),di, problems with multi-tenant cloud systemsservice providers come from different security domainsnot all data processing components are trustworthycomputer sciencesecurity concernscommunication securityinformation passed through the interneteasy to addressisolationinter

6、ference among tenantsconfidentialitynot trust third party to access dataintegritynot trust the result of servicesfocus of this work7/22computer science8previous workdistributed dataflow processing focuses on resource and performance management issues. usually assumes that all data processing compone

7、nts are trustworthytrust management in distributed systems distributed messaging systems haeberlen, et al. sosp 2007 pub-sub overlay srivatsa, et al., ccs 2005 virtualized datacenters berger, et al., sigops 2008 none of them addressed secure and scalable dataflow processing in multi-tenant cloud sys

8、tems8/22computer science9previous work (cont.)byzantine fault-tolerance in wide area networks amir, et al., dsn 2006 generally has scalability issuessecurity in soa ws-security v1.1 oasis, 2006 focuses on integrity and confidentiality of web service messages through encryption and authentication att

9、acks can go beyond messaging security9/22computer sciencechallenges10/22cannot install special hardware or software on third-party service providers required by existing hardware and software based attestation techniques scalable runtime integrity assurancecomputer science11our focuspractical runtime service integrity assurance for large-scale multi-tenant cloud systems without assuming a trusted entity at third-party service providers without requiring application modifications11/22computer science12assumptionsassumptionsthird-party component pr

溫馨提示

  • 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
  • 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
  • 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
  • 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
  • 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負(fù)責(zé)。
  • 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
  • 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時(shí)也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。

評論

0/150

提交評論