首页> 外文会议>International Conference on Cloud Security Management >Cloud Security: A Review of Recent Threats and Solution Models
【24h】

Cloud Security: A Review of Recent Threats and Solution Models

机译:云安全:近期威胁和解决方案模型的审查

获取原文

摘要

The most significant barrier to the wide adoption of cloud services has been attributed to perceived cloud insecurity (Sundareswaran, Squicciarini and Lin, 2012). In an attempt to review this subject, this paper will explore some of the major security threats to the cloud and the security models employed in tackling them. Access control violations, message integrity violations, data leakages, inability to guarantee complete data deletion, code injection, malwares and lack of expertise in cloud technology rank the major threats. The European Union invested ?3m in City University, London to research into the certification of Cloud security services. This and more recent developments, are significant in addressing increasing public concerns regarding the confidentiality, integrity and privacy of data held in cloud environments. Some of the current cloud security models adopted in addressing cloud security threats were - Encryption of all data at storage and during transmission. The Cisco IronPort S-Series web security appliance was among security solutions to solve cloud access control issues. 2-factor Authentication with RSA SecurlD and close monitoring appeared to be the most popular solutions to authentication and access control issues in the cloud. Database Active Monitoring, File Active Monitoring, URL Filters and Data Loss Prevention were solutions for detecting and preventing unauthorised data migration into and within clouds. There is yet no guarantee for a complete deletion of data by cloud providers on client requests however; FADE may be a solution (Tang et al., 2012).
机译:广泛采用云服务最重要的障碍已归因于感知云等待(Sundareswaran,Squicciarini和Lin,2012)。在尝试审查这个主题时,本文将探讨云的一些主要安全威胁以及在解决它们时所用的安全模型。访问控制违规,消息完整性违规,数据泄漏,无法保证完整数据删除,代码注入,恶意和云技术缺乏专业知识等级。欧洲联盟投资了城市大学3M,伦敦研究了云安全服务认证。这一和更新的发展是在解决云环境中持有的数据的保密,完整性和隐私的越来越多的公众关切方面都很重要。解决云安全威胁中采用的一些当前云安全模型是 - 在存储和传输期间加密所有数据。 Cisco IronPort S系列Web安全设备是解决云访问控制问题的安全解决方案之一。使用RSA Securld和Close Monitry的2因素身份验证似乎是云中身份验证和访问控制问题的最流行的解决方案。数据库主动监视,文件主动监控,URL过滤器和数据丢失是用于检测和防止未经授权的数据迁移到云中的解决方案。然而,云提供商在客户端请求上完全删除了数据的保证,但是淡化可能是一个解决方案(Tang等,2012)。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号