Security and Privacy Preservation of Evidence in Cloud Accountability Audits

被引:2
|
作者
Ruebsamen, Thomas [1 ]
Pulls, Tobias [2 ]
Reich, Christoph [1 ]
机构
[1] Furtwangen Univ, Cloud Res Lab, Furtwangen, Germany
[2] Karlstad Univ, Dept Math & Comp Sci, Karlstad, Sweden
关键词
D O I
10.1007/978-3-319-29582-4_6
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Cloud accountability audits are promising to strengthen trust in cloud computing by providing reassurance about the processing data in the cloud according to data handling and privacy policies. To effectively automate cloud accountability audits, various distributed evidence sources need to be considered during evaluation. The types of information range from authentication and data access logging to location information, information on security controls and incident detection. Securing that information quickly becomes a challenge in the system design, when the evidence that is needed for the audit is deemed sensitive or confidential information. This means that securing the evidence at-rest as well as in-transit is of utmost importance. In this paper, we present a system that is based on distributed software agents which enables secure evidence collection with the purpose of automated evaluation during cloud accountability audits. We thereby present the integration of Insynd as a suitable cryptographic mechanism for securing evidence. We present our reasoning for choosing Insynd by showing a comparison of Insynd properties with requirements imposed by accountability evidence collection as well as an analysis how security threats are being mitigated by Insynd. We put special emphasis on security and privacy protection in our system analysis.
引用
收藏
页码:95 / 114
页数:20
相关论文
共 50 条
  • [21] Preservation of Security Configurations in the Cloud
    Eghtesadi, Arash
    Jarraya, Yosr
    Debbabi, Mourad
    Pourzandi, Makan
    2014 IEEE INTERNATIONAL CONFERENCE ON CLOUD ENGINEERING (IC2E), 2014, : 17 - 26
  • [22] Cloud Security Ecosystem for Data Security and Privacy
    Arora, Akshay
    Khanna, Abhirup
    Rastogi, Anmol
    Agarwal, Amit
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, DATA SCIENCE AND ENGINEERING (CONFLUENCE 2017), 2017, : 288 - 292
  • [23] Security Framework for VANET for Privacy Preservation
    Chetan, V. S.
    Benni, N. S.
    Bhushan, C.
    2013 FOURTH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATIONS AND NETWORKING TECHNOLOGIES (ICCCNT), 2013,
  • [24] Security and Privacy Preservation in Vehicular Communications
    Ho, Pin-Han
    Zhang, Zonghua
    Lu, Rongxing
    SECURITY AND COMMUNICATION NETWORKS, 2008, 1 (03) : 191 - 193
  • [25] Electoral Accountability and Corruption: Evidence from the Audits of Local Governments
    Ferraz, Claudio
    Finan, Frederico
    AMERICAN ECONOMIC REVIEW, 2011, 101 (04): : 1274 - 1311
  • [26] A Crypto-Blocking Approach for the Security Paradigm for Aadhar Towards Privacy Preservation on Cloud Infrastructure
    Dule, Chhaya S.
    Girijamma, H. A.
    Rajasekharaiah, K. M.
    SECOND INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND COMMUNICATION TECHNOLOGIES, ICCNCT 2019, 2020, 44 : 194 - 203
  • [27] Security and privacy preservation using constructive hierarchical data-sharing approach in cloud environment
    Bingu, Rajesh
    Jothilakshmi, S.
    Srinivasu, N.
    INFORMATION SECURITY JOURNAL, 2024, 33 (01): : 1 - 15
  • [28] PASCS 2014: Privacy and Accountability for Software and Cloud Services
    Sellami, Mohamed
    Royer, Jean-Claude
    De Oliveira, Anderson Santana
    2014 IEEE 23RD INTERNATIONAL WETICE CONFERENCE (WETICE), 2014, : 332 - 332
  • [29] Security and accountability for sharing the data stored in the cloud
    Mohammed, Mostafa Abdulghafoor
    Tapus, Nicolae
    Salih, Zeyad Hussein
    Hasan, Raed Abdul Kareem
    2016 15TH ROEDUNET CONFERENCE - NETWORKING IN EDUCATION AND RESEARCH, 2016,
  • [30] Security and Privacy Implications of Cloud Computing - Lost in the Cloud
    Tchifilionova, Vassilka
    OPEN RESEARCH PROBLEMS IN NETWORK SECURITY, 2011, 6555 : 149 - 158