Towards the Certification of Covert Channel Freeness in Cloud-Based Systems

被引:0
|
作者
Jaskolka, Jason [1 ]
Khedri, Ridha [1 ]
机构
[1] McMaster Univ, Fac Engn, Dept Comp & Software, Hamilton, ON, Canada
关键词
covert channels; cloud computing; security; confidentiality; certification;
D O I
10.1016/j.procs.2015.05.100
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The rapid transition to cloud-based infrastructures has introduced a number of uncharted risks, threats, and challenges that are faced by security experts. In particular, concerns surrounding the confidentiality of information in cloud-based systems and the existence of covert communication channels ought to be addressed. In this paper, we outline a schema for certifying covert channel freeness in cloud-based systems. The proposed schema provides an application of the formal foundation laid out in our previous work and is based on a strategy derived from the necessity and formal verification of the conditions for covert channel existence in cloud-based systems specified using the mathematical framework of Communicating Concurrent Kleene Algebra (C(2)KA). We also discuss how the proposed schema can be used for identifying ways in which an analyst may amend, modify, or redesign a system in order to make it more resilient to covert channels, and to potentially certify it to be free from covert channels on the basis of the non-existence of the potential for communication amongst its agents. (C) 2015 The Authors. Published by Elsevier B.V.
引用
收藏
页码:318 / 325
页数:8
相关论文
共 50 条
  • [1] Towards Cloud-Based Engineering Systems
    Martins, Joao
    Camarinha-Matos, Luis M.
    Goes, Joao
    Gomes, Luis
    [J]. TECHNOLOGICAL INNOVATION FOR CLOUD-BASED ENGINEERING SYSTEMS, 2015, 450 : 3 - 10
  • [2] Dependability Modeling and Certification of Cloud-Based Distributed Systems
    Ravindran, Kaliappa
    [J]. INTERNET AND DISTRIBUTED COMPUTING SYSTEMS, IDCS 2013, 2013, 8223 : 333 - 350
  • [3] Knowledge-theoretic Methods for Certification of Cloud-based Network Systems
    Ravindran, Kaliappa
    [J]. 2013 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2013, : 1280 - 1287
  • [4] A Test-Based Incremental Security Certification Scheme for Cloud-Based Systems
    Anisetti, Marco
    Ardagna, Claudio A.
    Damiani, Ernesto
    [J]. 2015 IEEE 12TH INTERNATIONAL CONFERENCE ON SERVICES COMPUTING (SCC 2015), 2015, : 736 - 741
  • [5] Model-based Engineering Methods for Certification of Cloud-based Network Systems
    Ravindran, Kaliappa
    [J]. 2013 FIFTH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS AND NETWORKS (COMSNETS), 2013,
  • [8] Towards Scalability for Federated Identity Systems for Cloud-Based Environments
    Pereira, Andre Albino
    Sobral, Joao Bosco M.
    Westphall, Carla Merkle
    [J]. 2014 6TH INTERNATIONAL CONFERENCE ON NEW TECHNOLOGIES, MOBILITY AND SECURITY (NTMS), 2014,
  • [9] Automated Certification for Compliant Cloud-based Business Processes
    Accorsl, Rafael
    Lowis, Lutz
    Sato, Yoshinori
    [J]. BUSINESS & INFORMATION SYSTEMS ENGINEERING, 2011, 3 (03) : 145 - 154
  • [10] ComCert: Automated Certification of Cloud-based Business Processes
    Accorsi, Rafael
    Lowis, Lutz
    [J]. ERCIM NEWS, 2010, (83): : 50 - 51