The State of Public Infrastructure-as-a-Service Cloud Security

The State of Public Infrastructure-as-a-Service Cloud Security
复制标题

DOI:
10.1145/2767181
复制
发表时间:
2015-07-01
影响因子:
16.6
通讯作者:
Lie, David
Lie, David
中科院分区:
计算机科学1区
文献类型:
--
作者:
Huang, Wei;Ganjali, Afshar;Lie, David

文献摘要

被引文献

相似文献

在过去的几年中,公共基础架构与服务(IAAS)云行业已经达到了关键质量,许多云服务提供商都在竞争竞争服务。尽管进行了竞争,但我们发现服务提供的一些安全机制相似,表明云行业已经建立了许多“最佳实践”,而其他安全机制则差异很大,表明仍然有空间创新和实验。我们研究了这些差异和可能的潜在原因。我们还将公共云产品提供的安全机制与学术界在同一时期提出的安全机制进行了对比。最后,我们推测行业和学术界如何共同努力解决公共云层的紧迫安全问题。
The public Infrastructure-as-a-Service (IaaS) cloud industry has reached a critical mass in the past few years, with many cloud service providers fielding competing services. Despite the competition, we find some of the security mechanisms offered by the services to be similar, indicating that the cloud industry has established a number of "best-practices," while other security mechanisms vary widely, indicating that there is also still room for innovation and experimentation. We investigate these differences and possible underlying reasons for it. We also contrast the security mechanisms offered by public IaaS cloud offerings and with security mechanisms proposed by academia over the same period. Finally, we speculate on how industry and academia might work together to solve the pressing security problems in public IaaS clouds going forward.