DocumentCode
2374498
Title
Above the Trust and Security in Cloud Computing: A Notion Towards Innovation
Author
Ahmed, Mahbub ; Xiang, Yang ; Ali, Shawkat
Author_Institution
Sch. of Inf. Technol., Deakin Univ., Burwood, VIC, Australia
fYear
2010
fDate
11-13 Dec. 2010
Firstpage
723
Lastpage
730
Abstract
While the nascent Cloud Computing paradigm supported by virtualization has the upward new notion of edges, it lacks proper security and trust mechanisms. Edges are like on demand scalability and infinite resource provisioning as per the `pay-as-you-go´ manner in favour of a single information owner (abbreviated as INO from now onwards) to multiple corporate INOs. While outsourcing information to a cloud storage controlled by a cloud service provider (abbreviated as CSP from now onwards) relives an information owner of tackling instantaneous oversight and management needs, a significant issue of retaining the control of that information to the information owner still needs to be solved. This paper perspicaciously delves into the facts of the Cloud Computing security issues and aims to explore and establish a secure channel for the INO to communicate with the CSP while maintaining trust and confidentiality. The objective of the paper is served by analyzing different protocols and proposing the one in commensurate with the requirement of the security property like information or data confidentiality along the line of security in Cloud Computing Environment (CCE). To the best of our knowledge, we are the first to derive a secure protocol by successively eliminating the dangling pitfalls that remain dormant and thereby hamper confidentiality and integrity of information that is worth exchanging between the INO and the CSP. Besides, conceptually, our derived protocol is compared with the SSL from the perspectives of work flow related activities along the line of secure trusted path for information confidentiality.
Keywords
authorisation; cloud computing; cloud computing security; cloud service provider; data confidentiality; information confidentiality; management needs; secure channel; secure protocol; virtualization; confidentiality; mediated authnetication; secure channel; token;
fLanguage
English
Publisher
ieee
Conference_Titel
Embedded and Ubiquitous Computing (EUC), 2010 IEEE/IFIP 8th International Conference on
Conference_Location
Hong Kong
Print_ISBN
978-1-4244-9719-5
Electronic_ISBN
978-0-7695-4322-2
Type
conf
DOI
10.1109/EUC.2010.114
Filename
5703601
Link To Document