Security is a key problem for the development of Cloud Computing. A common service security architecture is a basic abstract to support security research work. The authorization ability in the service security faces m...Security is a key problem for the development of Cloud Computing. A common service security architecture is a basic abstract to support security research work. The authorization ability in the service security faces more complex and variable users and environment. Based on the multidimensional views, the service security architecture is described on three dimensions of service security requirement integrating security attributes and service layers. An attribute-based dynamic access control model is presented to detail the relationships among subjects, objects, roles, attributes, context and extra factors further. The model uses dynamic control policies to support the multiple roles and flexible authority. At last, access control and policies execution mechanism were studied as the implementation suggestion.展开更多
Cloud computing is becoming the developing trend in the information field.It causes many transforms in the related fields.In order to adapt such changes,computer forensics is bound to improve and integrate into the ne...Cloud computing is becoming the developing trend in the information field.It causes many transforms in the related fields.In order to adapt such changes,computer forensics is bound to improve and integrate into the new environment.This paper stands on this point,suggests a computer forensic service framework which is based on security architecture of cloud computing and requirements needed by cloud computing environment.The framework introduces honey farm technique,and pays more attention on active forensics,which can improve case handling efficiency and reduce the cost.展开更多
在信息技术高度发展的今天,云技术因为其规模大、虚拟化、可靠性高、通用性强、高可扩展性和廉价的特点在越来越多的领域展示出优势,将云技术运用于广电融媒体建设是广电人越来越关注的话题。与此同时,云技术构架的特点也使其面临新的风...在信息技术高度发展的今天,云技术因为其规模大、虚拟化、可靠性高、通用性强、高可扩展性和廉价的特点在越来越多的领域展示出优势,将云技术运用于广电融媒体建设是广电人越来越关注的话题。与此同时,云技术构架的特点也使其面临新的风险,因为庞大的数据在云端集中管理和控制,如何有效、安全管控数据是融媒体云平台能够有效使用的基础。本文介绍了美国国家标准与技术研究院(National Institute of Standards and Technology,以下简称NIST)的理念,将云计算模型化,认为云是一种可以方便地通过网络访问一个可配置的计算资源的公共集,来探索和研究广电融媒体云合理的安全架构。展开更多
基金supported by National Information Security Program under Grant No.2009A112
文摘Security is a key problem for the development of Cloud Computing. A common service security architecture is a basic abstract to support security research work. The authorization ability in the service security faces more complex and variable users and environment. Based on the multidimensional views, the service security architecture is described on three dimensions of service security requirement integrating security attributes and service layers. An attribute-based dynamic access control model is presented to detail the relationships among subjects, objects, roles, attributes, context and extra factors further. The model uses dynamic control policies to support the multiple roles and flexible authority. At last, access control and policies execution mechanism were studied as the implementation suggestion.
基金Sponsored by the National Social Science Found of China(Grant No.13CFX054)the Project of Humanities and Social Science of Chinese Ministry of Education(Grant No.11YJCZH175)
文摘Cloud computing is becoming the developing trend in the information field.It causes many transforms in the related fields.In order to adapt such changes,computer forensics is bound to improve and integrate into the new environment.This paper stands on this point,suggests a computer forensic service framework which is based on security architecture of cloud computing and requirements needed by cloud computing environment.The framework introduces honey farm technique,and pays more attention on active forensics,which can improve case handling efficiency and reduce the cost.
文摘在信息技术高度发展的今天,云技术因为其规模大、虚拟化、可靠性高、通用性强、高可扩展性和廉价的特点在越来越多的领域展示出优势,将云技术运用于广电融媒体建设是广电人越来越关注的话题。与此同时,云技术构架的特点也使其面临新的风险,因为庞大的数据在云端集中管理和控制,如何有效、安全管控数据是融媒体云平台能够有效使用的基础。本文介绍了美国国家标准与技术研究院(National Institute of Standards and Technology,以下简称NIST)的理念,将云计算模型化,认为云是一种可以方便地通过网络访问一个可配置的计算资源的公共集,来探索和研究广电融媒体云合理的安全架构。