Secure communication using dynamic VPN provisioning in an Inter-Cloud environment
Autor: | Ali Sajjad, Srijith K. Nair, Andrea Zisman, Muttukrishnan Rajarajan, Theo Dimitrakos |
---|---|
Rok vydání: | 2012 |
Předmět: |
QA75
Cloud computing security business.industry Computer science 020206 networking & telecommunications Provisioning Cloud computing 02 engineering and technology Enterprise information security architecture Cloud service provider Computer security computer.software_genre Secure communication Utility computing Cloud testing Scalability 0202 electrical engineering electronic engineering information engineering 020201 artificial intelligence & image processing business computer Computer network |
Zdroj: | ICON ICON 2012: 18th IEEE International Conference on Networks |
ISSN: | 1556-6463 |
DOI: | 10.1109/icon.2012.6506596 |
Popis: | Most of the current cloud computing platforms offer Infrastructure as a Service (IaaS) model, which aims to provision basic virtualised computing resources as on-demand and dynamic services. Nevertheless, a single cloud does not have limitless resources to offer to its users, hence the notion of an Inter-Cloud enviroment where a cloud can use the infrastructure resources of other clouds. However, there is no common framework in existence that allows the srevice owners to seamlessly provision even some basic services across multiple cloud service providers, albeit not due to any inherent incompatibility or proprietary nature of the foundation technologies on which these cloud platforms are built. In this paper we present a novel solution which aims to cover a gap in a subsection of this problem domain. Our solution offer a security architecture that enables service owners to provision a dynamic and service-oriented secure virtual private network on top of multiple cloud IaaS providers. It does this by leveraging the scalability, robustness and flexibility of peer- to-peer overlay techniques to eliminate the manual configuration, key management and peer churn problems encountered in setting up the secure communication channels dynamically, between different components of a typical service that is deployed on multiple clouds. We present the implementation details of our solution as well as experimental results carried out on two commercial clouds. |
Databáze: | OpenAIRE |
Externí odkaz: |