Securing the cloud-assisted smart grid

被引:10
|
作者
Demir, Kubilay [1 ]
Ismail, Hatem [1 ]
Vateua-Guroua, Tsuetoslaua [1 ]
Suri, Neeraj [1 ]
机构
[1] Tech Univ Darmstadt, Dept CS, Darmstadt, Germany
基金
欧盟地平线“2020”;
关键词
Availability; Security; Cloud; DDoS attack; Smart Grid;
D O I
10.1016/j.ijcip.2018.08.004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Rapid elasticity, ubiquitous network access, and highly-reliable services are some of the desirable features of cloud computing that are attractive for building cloud-assisted data-intensive Smart Grid (SG) applications. However, the Distributed Denial-of-Service (DDoS) attacks represent a serious threat to the cloud-assisted SG applications. To mitigate the risk related to the DDoS threat, we propose an SG-relevant Hierarchical Hybrid Cloud-Extension Concept (HHCEC) along with a DDoS attack defense mechanism, termed as Port Hopping Spread Spectrum (PHSS). HHCEC is a cloud-assisted architecture designed to meet scalability and security requirements of the SG applications in the cloud. To prevent transport or application-layer DDoS attacks on HHCEC, PHSS switches the open port of server as afunction of time and a secret shared between authorized clients and server, and thus efficiently dropping packets with closed port number. In addition, PHSS spreads the data packets over all the servers versus a single server to provide a robust protection against volume-based DDoS attacks that would affect some of the servers. This packet spreading approach enables PHSS to instantiate replica servers to take over the attacked servers without blocking the whole traffic by utilizing the rapid-elasticity characteristic of the cloud. Moreover, PHSS leverages a shuffling-based containment mechanism in order to quarantine malicious clients in a notably short time. Accordingly, the effect of a DDoS attack based on the compromised secret of the malicious clients is minimized. We evaluate our approach by building a proof-of-concept prototype using Amazon's EC2 and the PlanetLab test-bed. In a DDoS attack scenario, the proposed approach obtains a significant availability enhancement of > 38% that highlight its efficiency in comparison to existing approaches. The results also indicate negligible overhead for the proposed approach compared to the plain system i.e., no additional latency and less than 0.01% throughput degradation. (C) 2018 Published by Elsevier B.V.
引用
收藏
页码:100 / 111
页数:12
相关论文
共 50 条
  • [21] A cloud-assisted smart monitoring system for sports activities using SVM and CNN
    Kang Chang
    Peng Sun
    Muhammad Usman Ali
    Soft Computing, 2024, 28 : 339 - 362
  • [22] SECURING SMART GRID TECHNOLOGY
    Krishna, Chaitanya E.
    Reddy, Kosaleswara T.
    Reddy, M. YogaTeja
    Reddy, Sreerama G. M.
    MadhuSudhan, E.
    AlMuhteb, Sulaiman
    INTERNATIONAL CONFERENCE ON GRAPHIC AND IMAGE PROCESSING (ICGIP 2012), 2013, 8768
  • [23] Securing smart grid data under key exposure and revocation in cloud computing
    Navya, J. M.
    Sanjay, H. A.
    Deepika, K. M.
    2018 3RD INTERNATIONAL CONFERENCE ON CIRCUITS, CONTROL, COMMUNICATION AND COMPUTING (I4C), 2018,
  • [24] Cloud-Assisted Frameork for Health Monitoring
    Hossain, M. Shamim
    Muhammad, Ghulam
    2015 IEEE 28TH CANADIAN CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING (CCECE), 2015, : 1199 - 1202
  • [25] Cloud-assisted Industrial Systems and Applications
    Wan, Jiafu
    Khan, Muhammad K.
    Qiu, Meikang
    Zhang, Daqiang
    MOBILE NETWORKS & APPLICATIONS, 2016, 21 (05): : 822 - 824
  • [26] Cloud-assisted Two-Factor Protection Mechanism for Public Data in Smart Campus
    Shen, Jian
    Jiang, Xinzhao
    Liu, Dengzhi
    Zhou, Tianqi
    2019 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2019, : 719 - 723
  • [27] Cloud-assisted Dissemination in Social Overlays
    Mega, Giuliano
    Montresor, Alberto
    Picco, Gian Pietro
    13TH IEEE INTERNATIONAL CONFERENCE ON PEER-TO-PEER COMPUTING (P2P), 2013,
  • [28] Cloud-assisted Industrial Systems and Applications
    Jiafu Wan
    Muhammad K. Khan
    Meikang Qiu
    Daqiang Zhang
    Mobile Networks and Applications, 2016, 21 : 822 - 824
  • [29] Security Requirement Management for Cloud-Assisted and Internet of Things-Enabled Smart City
    Tariq, Muhammad Usman
    Babar, Muhammad
    Jan, Mian Ahmad
    Khattak, Akmal Saeed
    Alshehri, Mohammad Dahman
    Yahya, Abid
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 67 (01): : 625 - 639
  • [30] Development of a cloud-assisted classification technique for the preservation of secure data storage in smart cities
    Ankit Kumar
    Surbhi Bhatia Khan
    Saroj Kumar Pandey
    Achyut Shankar
    Carsten Maple
    Arwa Mashat
    Areej A. Malibari
    Journal of Cloud Computing, 12