首页> 外文会议>European Symposium on Research in Computer Security >Proactive Verification of Security Compliance for Clouds Through Pre-computation: Application to OpenStack
【24h】

Proactive Verification of Security Compliance for Clouds Through Pre-computation: Application to OpenStack

机译:通过预先计算,主动验证云安全合规性的验证:应用于OpenStack

获取原文

摘要

The verification of security compliance with respect to security standards and policies is desirable to both cloud providers and users. However, the sheer size of a cloud implies a major challenge to be scalability and in particular response time. Most existing approaches are either after the fact or incur prohibitive delay in processing user requests. In this paper, we propose a scalable approach that can reduce the response time of online security compliance verification in large clouds to a practical level. The main idea is to start preparing for the costly verification proactively, as soon as the system is a few steps ahead of potential operations causing violations. We present detailed models and algorithms, and report real-life experiences and challenges faced while implementing our solution in OpenStack. We also conduct experiments whose results confirm the efficiency and scalability of our approach.
机译:对安全标准和策略的安全遵守验证是可取的,云提供商和用户都是可取的。然而,云的纯粹大小意味着具有可扩展性和特定响应时间的主要挑战。大多数现有方法是在处理用户请求时发生的事实或截止延迟。在本文中,我们提出了一种可扩展的方法,可以将大型云中的在线安全合规性验证的响应时间降低到实际水平。主要思想是开始积极准备昂贵的验证,一旦系统在造成违规行为的潜在操作之前几步。我们展示了详细的模型和算法,并在在OpenStack中实施了我们的解决方案时,报告了现实体验和面临的挑战。我们还进行实验,其结果证实了我们方法的效率和可扩展性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号