首页> 外文会议>IEEE International Conference on Cloud Computing >Data Protection as a Service in the Multi-Cloud Environment
【24h】

Data Protection as a Service in the Multi-Cloud Environment

机译:多云环境中的数据保护即服务

获取原文

摘要

This paper introduces a framework for Data Protection as a Service (DPaaS) to cloud computing users. Compared to the existing Data Encryption as a Service (DEaaS) such as those provided by Amazon and Google, our DPaaS framework provides more flexibility, control and visibility for protecting data in the cloud. In addition to supporting the basic data encryption capability as DEaaS does, this DPaaS framework allows data owners to define fine-grained access control policies to protect their data. Data protected by an access control policy are automatically encrypted and access is granted to user/applications according with the policy. In general, the DPaaS enables the separation of concerns between security and data management, in addition to defining a full cycle of data security automation from encryption to decryption. Our proof-of-concept prototype of the DPaaS works with hybrid multi-cloud environments including private clouds and virtual data-centers using OpenStack, CloudStack and VMWare as well as public clouds being the BT Cloud Compute platform and Amazon (AWS). Experiments on the prototype have proved the efficiency of the framework.
机译:本文为云计算用户介绍了用于数据保护即服务(DPaaS)的框架。与Amazon和Google等现有的数据加密即服务(DEaaS)相比,我们的DPaaS框架为保护云中的数据提供了更大的灵活性,控制力和可视性。除了像DEaaS一样支持基本的数据加密功能外,该DPaaS框架还允许数据所有者定义细粒度的访问控制策略以保护其数据。受访问控制策略保护的数据将自动加密,并根据该策略将访问权限授予用户/应用程序。通常,除了定义从加密到解密的完整数据安全自动化周期外,DPaaS还可以将安全性与数据管理之间的关注点分离。我们的DPaaS概念验证原型可与混合多云环境一起使用,包括使用OpenStack,CloudStack和VMWare的私有云和虚拟数据中心,以及作为BT Cloud Compute平台和Amazon(AWS)的公共云。对原型的实验证明了该框架的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号