Satyajeet Nimgaonkar, Srujan Kotikela, M. Gomathisankaran
{"title":"CTrust: A Framework for Secure and Trustworthy Application Execution in Cloud Computing","authors":"Satyajeet Nimgaonkar, Srujan Kotikela, M. Gomathisankaran","doi":"10.1109/CyberSecurity.2012.10","DOIUrl":null,"url":null,"abstract":"Cloud computing is a model that envisions ubiquitous access to a shared pool of configurable resources such as compute, storage, network, and software. Currently ecommerce, on-line auctioning companies, travel agencies and other such services use clouds, primarily because of the elasticity of cloud resources. While cloud computing allows consolidation of resources, thus enabling new applications, it has several security and privacy concerns. This paper presents the CTrust framework that addresses the security gap in cloud computing by combining the power of virtualization technology with the design of secure processor architectures. The fundamental building block of the CTrust framework is the Secure Hyper visor Framework - SecHYPE. It is a modified hyper visor that incorporates secure processor architectures and provides root of trust to user applications running in the cloud. The paper presents a detailed attack model and prototype implementation of the CTrust framework.","PeriodicalId":162858,"journal":{"name":"2012 International Conference on Cyber Security","volume":"8 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-12-14","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"9","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2012 International Conference on Cyber Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CyberSecurity.2012.10","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 9
Abstract
Cloud computing is a model that envisions ubiquitous access to a shared pool of configurable resources such as compute, storage, network, and software. Currently ecommerce, on-line auctioning companies, travel agencies and other such services use clouds, primarily because of the elasticity of cloud resources. While cloud computing allows consolidation of resources, thus enabling new applications, it has several security and privacy concerns. This paper presents the CTrust framework that addresses the security gap in cloud computing by combining the power of virtualization technology with the design of secure processor architectures. The fundamental building block of the CTrust framework is the Secure Hyper visor Framework - SecHYPE. It is a modified hyper visor that incorporates secure processor architectures and provides root of trust to user applications running in the cloud. The paper presents a detailed attack model and prototype implementation of the CTrust framework.