DocumentCode :
3641091
Title :
Managing Data Access on Clouds: A Generic Framework for Enforcing Security Policies
Author :
Cristina Basescu;Alexandra Carpen-Amarie;Catalin Leordeanu;Alexandru Costan;Gabriel Antoniu
Author_Institution :
Dept. of Comput. Sci., Univ. Politeh. of Bucharest, Bucharest, Romania
fYear :
2011
fDate :
3/1/2011 12:00:00 AM
Firstpage :
459
Lastpage :
466
Abstract :
Providing an adequate security level in Cloud Environments is currently an extremely active research area. More specifically, malicious behaviors targeting large-scale Cloud data repositories (e.g. Denial of Service attacks) may drastically degrade the overall performance of such systems and cannot be detected by typical authentication mechanisms. In this paper we propose a generic security management framework allowing providers of Cloud data management systems to define and enforce complex security policies. This security framework is designed to detect and stop a large array of attacks defined through an expressive policy description language and to be easily interfaced with various data management systems. We show that we can efficiently protect a data storage system by evaluating our security framework on top of the BlobSeer data management platform. We evaluate the benefits of preventing a DoS attack targeted towards BlobSeer through experiments performed on the Grid´5000 testbed.
Keywords :
"History","Cloud computing","Authentication","Computer crime","Monitoring","Engines"
Publisher :
ieee
Conference_Titel :
Advanced Information Networking and Applications (AINA), 2011 IEEE International Conference on
ISSN :
1550-445X
Print_ISBN :
978-1-61284-313-1
Type :
conf
DOI :
10.1109/AINA.2011.61
Filename :
5763418
Link To Document :
بازگشت