Security in Multi-Tenancy Cloud

被引:34
|
作者
Jasti, Amarnath [1 ]
Shah, Payal [1 ]
Nagaraj, Rajeev [1 ]
Pendse, Ravi [1 ]
机构
[1] Wichita State Univ, Dept Elect Engn & Comp Sci, Wichita, KS 67260 USA
关键词
Cloud computing; Hypervisor; Virtualization; Virtual Machine (VM); multi-tenancy;
D O I
10.1109/CCST.2010.5678682
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Cloud computing creates exciting opportunities like reduced costs and flexibility to the users. It also comprises of some risks like data security within the cloud. Several common security threats like data leakage, insecure API's, and malicious inside users are applicable to cloud computing environment as well. In this paper, the authors consider a cloud computing service where multiple Virtual Machines (VM's) are co-located on the same physical server. In such systems, physical resources are transparently shared by the VMs belonging to multiple users. In systems like these, a malicious user having control of a VM can try to gain control over other VM's resources or utilize all system resources leading to denial of resource attack over other VM users. A malicious user can also try to steal the data of other users located on the same server by compromising hypervisor file system (logical volumes). In this paper, security threats associated with cloud computing environment are evaluated. Authors also explore how such co-existent of VM's can be exploited to gain access over other user's data or deny service and propose constructive security measures that can be deployed to avoid such attacks.
引用
收藏
页码:35 / 41
页数:7
相关论文
共 50 条
  • [41] Access Control for Multi-tenancy in Cloud-based Health Information Systems
    Anwar, Mohd
    Imran, Ashiq
    [J]. 2015 IEEE 2ND INTERNATIONAL CONFERENCE ON CYBER SECURITY AND CLOUD COMPUTING (CSCLOUD), 2015, : 104 - 110
  • [42] Feasibility of Multi-Tenancy on Intermittent Power
    Patoukas, Dimitris
    Yildirim, Kasim Sinan
    Majid, Amjad Yousef
    Hester, Josiah
    Pawelczak, Przemyslaw
    [J]. PROCEEDINGS OF THE 2018 INTERNATIONAL WORKSHOP ON ENERGY HARVESTING & ENERGY-NEUTRAL SENSING SYSTEMS (ENSSYS '18), 2018, : 26 - 31
  • [43] Multi-Tenancy in Smart City Platforms
    Nikolaou, Ioannis
    Anthopoulos, Leonidas
    [J]. COMPANION PROCEEDINGS OF THE WEB CONFERENCE 2022, WWW 2022 COMPANION, 2022, : 1266 - 1270
  • [44] Data Privacy Preservation during Schema Evolution for Multi-tenancy Applications in Cloud Computing
    Zhang, Kun
    Li, Qingzhong
    Shi, Yuliang
    [J]. WEB INFORMATION SYSTEMS AND MINING, PT I, 2011, 6987 : 376 - +
  • [45] Design Role-Based Multi-Tenancy Access Control Scheme for Cloud Services
    Yang, Shin-Jer
    Lai, Pei-Ci
    Lin, Jyhjong
    [J]. 2013 INTERNATIONAL SYMPOSIUM ON BIOMETRICS AND SECURITY TECHNOLOGIES (ISBAST), 2013, : 273 - 279
  • [46] SwitchVM: Multi-Tenancy for In-Network Computing
    Khashab, Sajy
    Silberstein, Mark
    [J]. PROCEEDINGS OF THE 16TH ACM INTERNATIONAL SYSTEMS AND STORAGE CONFERENCE, SYSTOR 2023, 2023, : 148 - 148
  • [47] Enabling Multi-Tenancy: An Industrial Experience Report
    Bezemer, Cor-Paul
    Zaidman, Andy
    Platzbeecker, Bart
    Hurkmans, Toine
    't Hart, Aad
    [J]. 2010 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE MAINTENANCE, 2010,
  • [48] A Dynamic Scheduling Framework for Multi-Tenancy Clouds
    Ru, Jia
    [J]. 2019 IEEE WORLD CONGRESS ON SERVICES (IEEE SERVICES 2019), 2019, : 323 - 326
  • [49] An Attribute-Role Based Access Control Mechanism for Multi-tenancy Cloud Environment
    Lo, Nai Wei
    Yang, Ta Chih
    Guo, Ming Huang
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2015, 84 (03) : 2119 - 2134
  • [50] OSMOSIS: Enabling Multi-Tenancy in Datacenter SmartNICs
    Khalilov, Mikhail
    Chrapek, Marcin
    Shen, Siyuan
    Vezzu, Alessandro
    Benz, Thomas
    Di Girolamo, Salvatore
    Schneider, Timo
    De Sensi, Daniele
    Benini, Luca
    Hoefler, Torsten
    [J]. PROCEEDINGS OF THE 2024 USENIX ANNUAL TECHNICAL CONFERENCE, ATC 2024, 2024, : 247 - 263