Cloud Network Security Monitoring and Response System

被引:0
|
作者
Mukhtarov, Murat [1 ]
Miloslavskaya, Natalia [1 ]
Tolstoy, Alexander [1 ]
机构
[1] Natl Res Nucl Univ MEPhI, Informat Secur Fac, Moscow, Russia
关键词
Cloud computing; Cloud infrastructure; Virtual Infrastructure; Application Hosting; Network Security;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The public clouds network monitoring and response system, based on flow measurements, open source tools and CSMS (Cloud Security Monitoring System) module, is to be introduced in this paper. The main goal of the research is to develop an algorithm and to implement a system, which automatically detects and makes a response to network anomalies, occurring inside a Cloud infrastructure. In this research is proposed approach of anomaly detection inside the Cloud infrastructure which is based on a profiling method of IPFIX (IP Flow Information Export) protocol data and idea of negative selection principle is used for generating signatures of network anomalies, which are named detectors. The automatic response module makes a decision about network anomalies origin, based on several iterative checks and creates a record on the firewall rules table. The network traffic profiling process automatically generates the firewall rules set for all traffic classes, obtained during the learning process. Main results of the research are development of the algorithms and the way of the monitoring network attacks inside the Cloud. Implementation of the algorithms is python-based script and currently stays under hard-testing phase.
引用
收藏
页码:181 / 185
页数:5
相关论文
共 50 条
  • [31] Closing the loop: Network and in-host monitoring tandem for comprehensive cloud security visibility
    Berger, S.
    Chen, Y.
    Hu, X.
    Pendarakis, D.
    Rao, J. R.
    Sailer, R.
    Schales, D. L.
    Stoecklin, M. Ph
    IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2016, 60 (04)
  • [33] Implementation of Cloud Component for Security Monitoring and Comprehensive Guarantee of Identifier Resolution System
    Na, Zhongli
    Liu, Wei
    Li, Kai
    2022 3RD INFORMATION COMMUNICATION TECHNOLOGIES CONFERENCE (ICTC 2022), 2022, : 167 - 172
  • [34] A performance-oriented monitoring system for security properties in cloud computing applications
    Muñoz, A. (amunoz@lcc.uma.es), 1600, Oxford University Press (55):
  • [35] A Performance-Oriented Monitoring System for Security Properties in Cloud Computing Applications
    Munoz, Antonio
    Gonzalez, Javier
    Mana, Antonio
    COMPUTER JOURNAL, 2012, 55 (08): : 979 - 994
  • [36] A neural network-based method for voltage security monitoring - Response
    Trovato, M
    Torelli, F
    LaScala, M
    IEEE TRANSACTIONS ON POWER SYSTEMS, 1996, 11 (03) : 1339 - 1341
  • [37] A Survey on Vehicular Cloud Network Security
    Deng, Junyi
    Deng, Jikai
    Liu, Peihao
    Wang, Huan
    Yan, Junjie
    Pan, Deru
    Liu, Jiahua
    IEEE ACCESS, 2023, 11 : 136741 - 136757
  • [38] ISSUES AND THREATSIN CLOUD NETWORK SECURITY
    Tandon, Anisha
    Madan, Mamta
    Dave, Meenu
    ADVANCES AND APPLICATIONS IN MATHEMATICAL SCIENCES, 2021, 20 (10): : 2077 - 2083
  • [39] Customized Network Security for Cloud Service
    He, Jin
    Ota, Kaoru
    Dong, Mianxiong
    Yang, Laurence T.
    Fan, Mingyu
    Wang, Guangwei
    Yau, Stephen S.
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2020, 13 (05) : 801 - 814
  • [40] Network Data Security in Cloud Computing
    Li Zhichao
    Cui Congcong
    AGRO FOOD INDUSTRY HI-TECH, 2017, 28 (01): : 445 - 449