首页> 外文会议>IEEE Conference on Computer Communications Workshops >Cloud Security Service Level Agreements: Representation and Measurement
【24h】

Cloud Security Service Level Agreements: Representation and Measurement

机译:云安全服务级别协议:表示形式和度量

获取原文

摘要

Service Level Agreements (SLAs) are commonly used to negotiate the computation and performance requirements between a service provider and user. In commercial cloud computing environments, SLAs are commonly used to negotiate performance guarantees. However there are no standardized mechanisms for defining and enforcement of security SLAs in cloud computing. In this paper, we consider the problem of defining security SLAs in cloud computing environment. We divide these SLAs into three categories as availability, security and integrity related SLAs. We provide a mechanism to formally describe SLAs and a method for run-time evaluation of these SLAs through a trusted Third Party Auditor (TPA). TPA collects necessary evidence in the form of logs from the cloud on a cloud user's behalf and evaluates SLA's compliance against collected evidence. We implement few sample SLAs of each category in a cloud testbed and show that TPA can evaluate and enforce the security requirements.
机译:服务水平协议(SLA)通常用于在服务提供商和用户之间协商计算和性能要求。在商业云计算环境中,SLA通常用于协商性能保证。但是,没有用于定义和实施云计算中的安全SLA的标准化机制。在本文中,我们考虑了在云计算环境中定义安全SLA的问题。我们将这些SLA分为三类,即与可用性,安全性和完整性相关的SLA。我们提供了正式描述SLA的机制,以及通过受信任的第三方审计员(TPA)对这些SLA进行运行时评估的方法。 TPA代表云用户从云中以日志的形式收集必要的证据,并根据收集的证据评估SLA的合规性。我们在云测试平台上实现了每个类别的几个样本SLA,并表明TPA可以评估和实施安全要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号