【24h】

Intrusion detection in federated clouds

机译:联合云中的入侵检测

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

In order to overcome the provisioning and scalability limits of a single cloud, cloud federation appears as the computing model in which multiple resources from independent cloud providers can be shared to create large-scale distributed virtual clusters. On the other hand, these complex architectures become an attractive target for distributed denial of service (DDoS) attacks. Although federated cloud environments have large amount of resources and profound dynamic allocation capability, which can be used to face DDoS attacks, they are however vulnerable to attacks that aim at compromising the service level agreements. In this paper, we investigate the key research topics for supporting distributed intrusion detection in a federated cloud environment. We propose a scalable intrusion detection solution, which can be used by cloud providers to protect the federated cloud infrastructure, as well as offered to the cloud service providers to monitor the hosted applications. We present a multi-layer architecture, which exploits a publish/subscribe middleware to collect and share security information in the federated cloud infrastructure. Moreover, we present an open-source framework, which provides features and interfaces to develop and deploy security components, as well as to define customised event correlation rules used to detect possible inter-cloud attacks.
机译:为了克服单个云的置备和可伸缩性限制,云联盟作为一种计算模型出现,其中可以共享来自独立云提供商的多个资源以创建大规模分布式虚拟集群。另一方面,这些复杂的体系结构成为分布式拒绝服务(DDoS)攻击的有吸引力的目标。尽管联合云环境具有大量资源和强大的动态分配功能,可以用来面对DDoS攻击,但是它们容易受到旨在破坏服务级别协议的攻击。在本文中,我们研究了在联合云环境中支持分布式入侵检测的关键研究主题。我们提出了一种可扩展的入侵检测解决方案,云提供商可以使用它来保护联合云基础架构,也可以将其提供给云服务提供商以监视托管应用程序。我们提出了一种多层架构,该架构利用发布/订阅中间件来收集和共享联合云基础架构中的安全信息。此外,我们提供了一个开源框架,该框架提供了用于开发和部署安全组件以及定义用于检测可能的云间攻击的自定义事件相关规则的功能和接口。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号