首页> 外文会议>International Symposium on Telecommunications >Security considerations and requirements for Cloud computing
【24h】

Security considerations and requirements for Cloud computing

机译:云计算的安全注意事项和要求

获取原文

摘要

Based on the standard definition of cloud computing developed by NIST, Cloud computing is a model for enabling convenient, on-demand network access to a shared pool of configurable computing resources that can be rapidly provisioned and released with minimal management effort or service provider interaction. Recent studies show security issues in cloud computing are considered as a major concern. There are different models that depict the responsibility of cloud providers and customers for securing the cloud computing environments based on different service models. To the best of our knowledge, despite there are various security standards and segregation of duty models, in most cases binding of security controls to use at each layers of the model is not specified. This problem leads to some ambiguities in how to use the existing security controls in different layers. In this paper, we will combine security standards and segregation of duty models of cloud computing to introduce a reference model and useful guidelines for securing the cloud computing environments. The proposed security reference model considers both the security requirements and controls in each service models and, for all cloud layers. Also, it separates the security responsibilities of cloud provider and cloud customer to manage security controls. Since this paper is concerned primarily all aspects of security requirements, it can be directly useful to individuals who want to provide or use the cloud computing environments.
机译:基于NIST开发的云计算的标准定义,云计算是一种模型,用于实现对可配置计算资源共享池的方便,按需网络访问,该资源可通过最少的管理工作或服务提供商交互而快速配置和释放。最近的研究表明,云计算中的安全性问题被认为是一个主要问题。有不同的模型描述了云提供商和客户负责基于不同服务模型保护云计算环境的责任。据我们所知,尽管存在各种安全标准和职责模型的隔离,但是在大多数情况下,并未指定在模型的每一层使用的安全控件的绑定。此问题导致如何在不同的层中使用现有的安全控件存在一些歧义。在本文中,我们将结合安全标准和云计算职责模型的分离,以引入参考模型和有用的准则来保护云计算环境。建议的安全性参考模型考虑了每个服务模型以及所有云层的安全性要求和控制。此外,它将云提供商和云客户的安全职责分开,以管理安全控制。由于本文主要涉及安全要求的所有方面,因此它对于想要提供或使用云计算环境的个人可能直接有用。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号