Skip to main navigation Skip to search Skip to main content

CloudSec: A Novel Approach to Verifying Security Conformance at the Bottom of the Cloud

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

In the process of big data analysis and processing, a key concern blocking users from storing and processing their data in the cloud is their misgivings about the security and performance of cloud services. There is an urgent need to develop an approach that can help each cloud service provider (CSP) to demonstrate that their infrastructure and service behavior can meet the users' expectations. However, most of the prior research work focused on validating the process compliance of cloud service without an accurate description of the basic service behaviors, and could not measure the security capability. In this paper, we propose a novel approach to verify cloud service security conformance called CloudSec, which reduces the description gap between the cloud provider and customer through modeling cloud service behaviors (CloudBeh Model) and security SLA (SecSLA Model). These models enable a systematic integration of security constraints and service behavior into cloud while using UPPAAL to check the conformance, which can not only check CloudBeh performance metrics conformance, but also verify whether the security constraints meet the SecSLA. The proposed approach is validated through case study and experiments with a cloud storage service based on OpenStack, which illustrates CloudSec approach effectiveness and can be applied in real cloud scenarios.

Original languageEnglish
Title of host publicationProceedings - 2017 IEEE 6th International Congress on Big Data, BigData Congress 2017
EditorsGeorge Karypis, Jia Zhang
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages569-576
Number of pages8
ISBN (Electronic)9781538619964
DOIs
StatePublished - 7 Sep 2017
Event6th IEEE International Congress on Big Data, BigData Congress 2017 - Honolulu, United States
Duration: 25 Jun 201730 Jun 2017

Publication series

NameProceedings - 2017 IEEE 6th International Congress on Big Data, BigData Congress 2017

Conference

Conference6th IEEE International Congress on Big Data, BigData Congress 2017
Country/TerritoryUnited States
CityHonolulu
Period25/06/1730/06/17

Keywords

  • Cloud Modeling
  • Security Conformance
  • Security SLA

Fingerprint

Dive into the research topics of 'CloudSec: A Novel Approach to Verifying Security Conformance at the Bottom of the Cloud'. Together they form a unique fingerprint.

Cite this