首页> 外文会议>2016 ACM/IEEE International Conference on Formal Methods and Models for System Design >Keynote talk III: Trusted cloud: How to make the cloud more secure
【24h】

Keynote talk III: Trusted cloud: How to make the cloud more secure

机译:主题演讲三:可信云:如何使云更加安全

获取原文
获取原文并翻译 | 示例

摘要

Cloud computing is growing because of cost advantages and convenience it offers to customers. However, security and privacy continue to be major concerns. We wish to guard against a powerful adversary who can compromise the CloudOS, and uses all privileges of the CloudOS to compromise the integrity and confidentiality of user applications. Secure hardware and/or small trusted hypervisors are the main weapons in our arsenal to guard against such powerful adversaries. Secure hardware (such as Intel SGX) enables user mode applications to package code and data into regions that are isolated from all other software running on the machine. Isolated regions can also be implemented with a small trusted hypervisor. However, it is an open research question as to how entire cloud services can be built using trusted hardware as a primitive, while maintaining a small TCB, providing good performance and end-to-end security guarantees. The Trusted Cloud project at Microsoft Research explores ways to answer this question, and it builds on techniques spanning hardware, OS, compilers and verification tools. In this talk, I will describe our efforts on architecting trusted and more secure cloud services using these principles.
机译:云计算由于成本优势和为客户提供的便利性而在不断增长。但是,安全和隐私仍然是主要问题。我们希望防范可能危害CloudOS并使用CloudOS的所有特权来危害用户应用程序的完整性和机密性的强大对手。安全的硬件和/或受信任的小型虚拟机管理程序是我们军械库中防范这种强大对手的主要武器。安全的硬件(例如Intel SGX)使用户模式应用程序可以将代码和数据打包到与计算机上运行的所有其他软件隔离的区域中。隔离区域也可以使用小型的受信任的管理程序来实现。但是,这是一个开放的研究问题,即如何使用可信硬件作为原始资源构建整个云服务,同时保持较小的TCB,从而提供良好的性能和端到端的安全保证。 Microsoft Research的Trusted Cloud项目探索了解决此问题的方法,它基于跨硬件,OS,编译器和验证工具的技术。在本次演讲中,我将描述我们使用这些原理构建可信赖且更安全的云服务的努力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号