• DocumentCode
    3145845
  • Title

    A Monitoring and Audit Logging Architecture for Data Location Compliance in Federated Cloud Infrastructures

  • Author

    Massonet, Philippe ; Naqvi, Syed ; Ponsard, Christophe ; Latanicki, Joseph ; Rochwerger, Benny ; Villari, Massimo

  • Author_Institution
    Centre d´´Excellence en Technol. de l´´Inf. et de la Commun. (CETIC), Belgium
  • fYear
    2011
  • fDate
    16-20 May 2011
  • Firstpage
    1510
  • Lastpage
    1517
  • Abstract
    Current cloud infrastructures have opaque service offerings where customers cannot monitor the underlying physical infrastructure. This situation raises concerns for meeting compliance obligations by critical business applications with data location constraints that are deployed in a Cloud. When federated cloud infrastructures span across different countries where data can migrate from one country to another, it should be possible for data owners to monitor the location of their data. This paper shows how an existing federated Cloud monitoring infrastructure can be used for data location monitoring without compromising Cloud isolation. In the proposed approach collaboration is required between the cloud infrastructure provider (IP) and the user of the cloud, the service provider (SP): the IP monitors the virtual machines (VM) on the SP´s behalf and makes the infrastructure level monitoring information available to him. With the monitoring information the SP can create the audit logs required for compliance auditing. The proposed logging architecture is validated by an e-Government case study with legal data location constraints.
  • Keywords
    cloud computing; government data processing; system monitoring; virtual machines; audit logging architecture; cloud infrastructure provider; data location compliance; data location monitoring; e-government; federated cloud infrastructures; infrastructure level monitoring; legal data location constraints; service provider; virtual machines; Cloud computing; Computer architecture; Electronic government; IP networks; Legislation; Monitoring; Security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Parallel and Distributed Processing Workshops and Phd Forum (IPDPSW), 2011 IEEE International Symposium on
  • Conference_Location
    Shanghai
  • ISSN
    1530-2075
  • Print_ISBN
    978-1-61284-425-1
  • Electronic_ISBN
    1530-2075
  • Type

    conf

  • DOI
    10.1109/IPDPS.2011.304
  • Filename
    6009009