Back to Search
Start Over
Domain-Based Storage Protection (DBSP) in Public Infrastructure Clouds
- Source :
- Secure IT Systems ISBN: 9783642414879, NordSec
- Publication Year :
- 2013
- Publisher :
- Security Lab, 2013.
-
Abstract
- Confidentiality and integrity of data in Infrastructure-as-a-Service (IaaS) environments increase in relevance as adoption of IaaS advances towards maturity. While current solutions assume a high degree of trust in IaaS provider staff and infrastructure management processes, earlier incidents have demon- strated that neither are impeccable. In this paper we introduce Domain-Based Storage Protection (DBSP) a data confidentiality and integrity protection mechanism for IaaS environments, which relies on trusted computing principles to provide transparent storage isolation between IaaS clients. We describe the building blocks of this mechanism and provide a set of detailed protocols for generation and handling of keys for confidentiality and integrity pro- tection of data stored by guest VM instances. The protocols assume an untrusted IaaS provider and aim to prevent both malicious and accidental faulty config- urations that could lead to breach of data confidentiality and integrity in IaaS deployments. InfraCloud
- Subjects :
- Public infrastructure
Integrity protection
Computer and Information Sciences
Computer science
Data confidentiality
Data_MISCELLANEOUS
Building blockes
Public infrastructures
Data- och informationsvetenskap
Trusted Computing
Trusted computing
Computer security
computer.software_genre
Domain (software engineering)
Infrastructure management
Storage protection
Infrastructure managements
Confidentiality
Relevance (information retrieval)
Isolation (database systems)
computer
Protection mechanism
Subjects
Details
- Language :
- English
- ISBN :
- 978-3-642-41487-9
- ISBNs :
- 9783642414879
- Database :
- OpenAIRE
- Journal :
- Secure IT Systems ISBN: 9783642414879, NordSec
- Accession number :
- edsair.doi.dedup.....3deda0b41116a85db7df3bd6a34b2f00