DEVELOPING SECURE CLOUD APPLICATIONS.
Saved in:
| Title: | DEVELOPING SECURE CLOUD APPLICATIONS. |
|---|---|
| Authors: | RAK, MASSIMILIANO1, FICCO, MASSIMO1, BATTISTA, ERMANNO1, CASOLA, VALENTINA1, MAZZOCCA, NICOLA2 |
| Source: | Scalable Computing: Practice & Experience. Mar2014, Vol. 15 Issue 1, p49-63. 15p. |
| Subjects: | Cloud storage, Application software security measures, Service level agreements |
| Abstract: | Today the main limit to Cloud adoption is related to the perception of a security loss the users have. Indeed, the existing solutions to provide security are mainly focused on Cloud service provider prospective in order to securely integrate frameworks and Infrastructures as a Services in a Cloud datacenter. Customer could not monitor and evaluate the security mechanisms enforced by service provider. Service Level Agreements mainly focus on performance related terms and no guarantees are given for security mechanisms. Customers are interested in tools to verify and monitor the implemented security requirements. On the other hand, developers need tools to deploy Cloud applications offering measurable security grants to end users. In this paper, we propose an approach to implement security mechanisms as components in the application design process. We modeled security interactions according to the specific threat, the specific security requirements and user/application capabilities trying to improve security. It enables a Service Provider to offer security guarantees to customers. The approach has been designed to fit with different Cloud platforms, but to demonstrate its applicability, we will present a case study on the mOSAIC Platform. [ABSTRACT FROM AUTHOR] |
| Copyright of Scalable Computing: Practice & Experience is the property of Scalable Computing: Practice & Experience and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract. (Copyright applies to all Abstracts.) | |
| Database: | Engineering Source |
| FullText | Links: – Type: pdflink Text: Availability: 0 |
|---|---|
| Header | DbId: egs DbLabel: Engineering Source An: 117002533 AccessLevel: 6 PubType: Academic Journal PubTypeId: academicJournal PreciseRelevancyScore: 0 |
| IllustrationInfo | |
| Items | – Name: Title Label: Title Group: Ti Data: DEVELOPING SECURE CLOUD APPLICATIONS. – Name: Author Label: Authors Group: Au Data: <searchLink fieldCode="AR" term="%22RAK%2C+MASSIMILIANO%22">RAK, MASSIMILIANO</searchLink><relatesTo>1</relatesTo><br /><searchLink fieldCode="AR" term="%22FICCO%2C+MASSIMO%22">FICCO, MASSIMO</searchLink><relatesTo>1</relatesTo><br /><searchLink fieldCode="AR" term="%22BATTISTA%2C+ERMANNO%22">BATTISTA, ERMANNO</searchLink><relatesTo>1</relatesTo><br /><searchLink fieldCode="AR" term="%22CASOLA%2C+VALENTINA%22">CASOLA, VALENTINA</searchLink><relatesTo>1</relatesTo><br /><searchLink fieldCode="AR" term="%22MAZZOCCA%2C+NICOLA%22">MAZZOCCA, NICOLA</searchLink><relatesTo>2</relatesTo> – Name: TitleSource Label: Source Group: Src Data: <searchLink fieldCode="JN" term="%22Scalable+Computing%3A+Practice+%26+Experience%22">Scalable Computing: Practice & Experience</searchLink>. Mar2014, Vol. 15 Issue 1, p49-63. 15p. – Name: Subject Label: Subjects Group: Su Data: <searchLink fieldCode="DE" term="%22Cloud+storage%22">Cloud storage</searchLink><br /><searchLink fieldCode="DE" term="%22Application+software+security+measures%22">Application software security measures</searchLink><br /><searchLink fieldCode="DE" term="%22Service+level+agreements%22">Service level agreements</searchLink> – Name: Abstract Label: Abstract Group: Ab Data: Today the main limit to Cloud adoption is related to the perception of a security loss the users have. Indeed, the existing solutions to provide security are mainly focused on Cloud service provider prospective in order to securely integrate frameworks and Infrastructures as a Services in a Cloud datacenter. Customer could not monitor and evaluate the security mechanisms enforced by service provider. Service Level Agreements mainly focus on performance related terms and no guarantees are given for security mechanisms. Customers are interested in tools to verify and monitor the implemented security requirements. On the other hand, developers need tools to deploy Cloud applications offering measurable security grants to end users. In this paper, we propose an approach to implement security mechanisms as components in the application design process. We modeled security interactions according to the specific threat, the specific security requirements and user/application capabilities trying to improve security. It enables a Service Provider to offer security guarantees to customers. The approach has been designed to fit with different Cloud platforms, but to demonstrate its applicability, we will present a case study on the mOSAIC Platform. [ABSTRACT FROM AUTHOR] – Name: AbstractSuppliedCopyright Label: Group: Ab Data: <i>Copyright of Scalable Computing: Practice & Experience is the property of Scalable Computing: Practice & Experience and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract.</i> (Copyright applies to all Abstracts.) |
| PLink | https://search.ebscohost.com/login.aspx?direct=true&site=eds-live&db=egs&AN=117002533 |
| RecordInfo | BibRecord: BibEntity: Identifiers: – Type: doi Value: 10.12694/scpe.v15i1.965 Languages: – Code: eng Text: English PhysicalDescription: Pagination: PageCount: 15 StartPage: 49 Subjects: – SubjectFull: Cloud storage Type: general – SubjectFull: Application software security measures Type: general – SubjectFull: Service level agreements Type: general Titles: – TitleFull: DEVELOPING SECURE CLOUD APPLICATIONS. Type: main BibRelationships: HasContributorRelationships: – PersonEntity: Name: NameFull: RAK, MASSIMILIANO – PersonEntity: Name: NameFull: FICCO, MASSIMO – PersonEntity: Name: NameFull: BATTISTA, ERMANNO – PersonEntity: Name: NameFull: CASOLA, VALENTINA – PersonEntity: Name: NameFull: MAZZOCCA, NICOLA IsPartOfRelationships: – BibEntity: Dates: – D: 01 M: 03 Text: Mar2014 Type: published Y: 2014 Identifiers: – Type: issn-print Value: 18951767 Numbering: – Type: volume Value: 15 – Type: issue Value: 1 Titles: – TitleFull: Scalable Computing: Practice & Experience Type: main |
| ResultId | 1 |