【24h】

BlueShield: A Layer 2 Appliance for Enhanced Isolation and Security Hardening among Multi-tenant Cloud Workloads

机译:Blueshield:用于增强多租户云工作负载中的增强隔离和安全硬化的第2层设备

获取原文

摘要

Enhanced Isolation and Security (EIS) in a cloud are of significant concern. Many organizations are hesitant in migrating to a cloud based infrastructure due to the perceived limitations with EIS. Earlier, we had presented the quantitative risk and impact assessment framework (QUIRC) [1]. QUIRC can be used to assess the security risks associated with the cloud computing platforms. In the present work, design and implementation of Blue Shield is presented. Blue Shield is a Layer2 appliance for an EIS hardening among multi-tenant cloud workloads. Blue Shield architecture provides EIS, significantly reducing the threats faced by the tenants in a cloud environment. EIS provided by Blue Shield is validated using a proof of concept implementation. Then shortcomings of the various present approaches in addressing the identified security threats are explained. It is shown that the present security applications, deployed in a non-cloud environment, do not require modification during migration to Blue Shield based clouds. Furthermore, the proposed design provides high level of protection among the VMsin the same VLAN.
机译:云中增强的隔离和安全性(EIS)具有重要关注。由于与EIS的感知局限性,许多组织犹豫不决。早些时候,我们介绍了定量风险和影响评估框架(QUIRC)[1]。 Quirc可用于评估与云计算平台相关的安全风险。在本作的工作中,提出了蓝色屏蔽的设计和实现。蓝盾是多租户云工作负载中的EIS硬化的二层设备。蓝盾架构提供EIS,大大减少云环境中租户面临的威胁。使用概念实现证明验证了Blue Shield提供的EIS。然后,解释了解决所确定的安全威胁的各种目前方法的缺点。结果表明,在非云环境中部署的本安全应用程序,在迁移期间不需要修改到基于蓝屏的云。此外,所提出的设计提供了相同VLAN的VMSIN之间的高水平保护。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号