首页> 外文会议>IEEE International Conference on Cloud Computing >Handling Co-Resident Attacks: A Case for Cost-Efficient Dedicated Resource Provisioning
【24h】

Handling Co-Resident Attacks: A Case for Cost-Efficient Dedicated Resource Provisioning

机译:处理共同居民攻击:用于成本高效的专用资源配置的案例

获取原文

摘要

Co-resident attacks on public clouds could extract sensitive information like encryption keys, memory content or workload patterns from cloud-based applications. Most existing defense mechanisms have been targeting cloud providers. They usually require substantial changes to the underlying hardware, cloud infrastructure or VM placement strategies, therefore making their deployment difficult. In this work, we investigate secure VM provisioning from the user perspective. Our approach leverages existing secure resource allocation methods provided by public cloud providers such as EC2 Dedicated Instances. We consider several different VM provisioning algorithms which are secure, cost-effective and at the same time immediately deployable for cloud users without any changes required from cloud providers' part. Extensive experiments using real workload traces and EC2 resource pricing confirm the effectiveness of our approach. To the best of our knowledge, this work is the first to consider secure and cost-effective VM provisioning from the user perspective.
机译:公共云上的共同驻地攻击可以从基于云的应用程序中提取敏感信息,如加密密钥,内存内容或工作负载模式。大多数现有的防御机制都是针对云提供商的目标。它们通常需要对底层硬件,云基础设施或VM放置策略进行大量变化,从而使其部署困难。在这项工作中,我们从用户角度调查安全的VM配置。我们的方法利用公共云提供商提供的现有安全资源分配方法,例如EC2专用实例。我们考虑了几种不同的VM配置算法,该算法是安全的,经济高效的,同时立即为云用户部署而没有云提供商部件所需的任何更改。使用真实工作量迹线和EC2资源定价的广泛实验证实了我们方法的有效性。据我们所知,这项工作是第一个从用户角度考虑安全且经济高效的VM配置。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号