DocumentCode :
166139
Title :
Design and Implementation of a forensic framework for Cloud in OpenStack cloud platform
Author :
Saibharath, S. ; Geethakumari, G.
Author_Institution :
Dept. of Comput. Sci. & Inf. Syst., BITS-Pilani, Hyderabad, India
fYear :
2014
fDate :
24-27 Sept. 2014
Firstpage :
645
Lastpage :
650
Abstract :
In this paper, a forensic framework has been developed to do cloud forensics in OpenStack for infrastructure as a service model using the existing forensic tools. For the instances which have been allotted to the user, the snapshots of volatile random access memory and image from the hard disk (cinder) in the specific path where it is mounted on should be acquired to do forensics. Adding to internal, external and floating ip address, for every task or modification a cloud end user does through the cloud api or dashboard (in OpenStack cloud platform), packets get transferred through ISP and then the changes get updated in the cloud setup. So network forensics is an integral part of cloud forensics. Our forensic framework obtains live snapshots, image evidences, packet captures and log evidences and does analysis on it. Simulation is carried out through Digital forensic framework on image files of block storage and live snapshots, Wireshark on raw network captures, XML and Java for structuring log files. Cloud forensic process for image acquisition and analysis has been defined by steps used in simulation. Two scenarios of integrity checking in object storage has been simulated through JSch are detailed. Discussion on finding various attacks happened from the evidences obtained is elaborated.
Keywords :
Java; XML; application program interfaces; cloud computing; digital forensics; ISP; JSch; Java; OpenStack cloud platform; Wireshark; XML; cloud api; cloud dashboard; cloud forensic process; floating ip address; forensic framework; forensic tools; hard disk image; image evidences; live snapshots; log evidences; log files structuring; network forensics; packet captures; raw network captures; volatile random access memory; Forensics; Internet; Optimized production technology; Welding; XML; Cloud computing; Cloud forensics; Digital forensics; OpenStack cloud;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Advances in Computing, Communications and Informatics (ICACCI, 2014 International Conference on
Conference_Location :
New Delhi
Print_ISBN :
978-1-4799-3078-4
Type :
conf
DOI :
10.1109/ICACCI.2014.6968451
Filename :
6968451
Link To Document :
بازگشت