Ändra sökning
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Providing User Security Guarantees in Public Infrastructure Clouds
RISE - Research Institutes of Sweden (2017-2019), ICT, SICS. (Security Lab)ORCID-id: 0000-0003-0132-857x
RISE - Research Institutes of Sweden (2017-2019), ICT, SICS. (Security Lab)ORCID-id: 0000-0001-8003-200x
RISE - Research Institutes of Sweden (2017-2019), ICT, SICS.
2017 (Engelska)Ingår i: IEEE Transactions on Cloud Computing, ISSN 2168-7161, Vol. 5, nr 3, s. 405-419, artikel-id 7399365Artikel i tidskrift (Refereegranskat) Published
Abstract [en]

The infrastructure cloud (IaaS) service model offers improved resource flexibility and availability, where tenants – insulated from the minutiae of hardware maintenance – rent computing resources to deploy and operate complex systems. Large-scale services running on IaaS platforms demonstrate the viability of this model; nevertheless, many organisations operating on sensitive data avoid migrating operations to IaaS platforms due to security concerns. In this paper, we describe a framework for data and operation security in IaaS, consisting of protocols for a trusted launch of virtual machines and domain-based storage protection. We continue with an extensive theoretical analysis with proofs about protocol resistance against attacks in the defined threat model. The protocols allow trust to be established by remotely attesting host platform configuration prior to launching guest virtual machines and ensure confidentiality of data in remote storage, with encryption keys maintained outside of the IaaS domain. Presented experimental results demonstrate the validity and efficiency of the proposed protocols. The framework prototype was implemented on a test bed operating a public electronic health record system, showing that the proposed protocols can be integrated into existing cloud environments.

Ort, förlag, år, upplaga, sidor
2017, 11. Vol. 5, nr 3, s. 405-419, artikel-id 7399365
Nationell ämneskategori
Data- och informationsvetenskap
Identifikatorer
URN: urn:nbn:se:ri:diva-24528DOI: 10.1109/TCC.2016.2525991Scopus ID: 2-s2.0-85029938241OAI: oai:DiVA.org:ri-24528DiVA, id: diva2:1043612
Projekt
InfracloudTillgänglig från: 2016-10-31 Skapad: 2016-10-31 Senast uppdaterad: 2025-09-23Bibliografiskt granskad

Open Access i DiVA

fulltext(844 kB)542 nedladdningar
Filinformation
Filnamn FULLTEXT01.pdfFilstorlek 844 kBChecksumma SHA-512
39dfbd7374ec7dfa2608673b9da19cdae4b1e40092cc20b85fd5057f012c039a72c18e3800813931b39e421d2d0712fd3a78c6a45eb2b38232c1378a410e600f
Typ fulltextMimetyp application/pdf

Övriga länkar

Förlagets fulltextScopushttp

Person

Paladi, NicolaeGehrmann, Christian

Sök vidare i DiVA

Av författaren/redaktören
Paladi, NicolaeGehrmann, Christian
Av organisationen
SICS
I samma tidskrift
IEEE Transactions on Cloud Computing
Data- och informationsvetenskap

Sök vidare utanför DiVA

GoogleGoogle Scholar
Totalt: 542 nedladdningar
Antalet nedladdningar är summan av nedladdningar för alla fulltexter. Det kan inkludera t.ex tidigare versioner som nu inte längre är tillgängliga.

doi
urn-nbn

Altmetricpoäng

doi
urn-nbn
Totalt: 296 träffar
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf