• DocumentCode
    1781267
  • Title

    Network security for Hybrid Cloud

  • Author

    Donadio, Pasquale ; Fioccola, Giovanni B. ; Canonico, Roberto ; Ventre, Giorgio

  • Author_Institution
    Alcatel-Lucent Italia, Milan, Italy
  • fYear
    2014
  • fDate
    12-15 Nov. 2014
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    Cloud computing has enabled elastic and transparent access to distributed services, without investing in new infrastructures. In the last few years, Cloud computing has grown from being a promising business concept to one of the fast growing segments of the IT industry. Despite of all the hype surrounding the Cloud, enterprise customers are still reluctant to deploy their business in the Cloud. Security is one of the major issues which reduces the growth of Cloud computing and complications with data privacy and data protection continue to plague the market. In this paper, we propose a solution for Hybrid Cloud security, focusing on a Virtual Intrusion Detection System (V-IDS). We present a new architecture that considers the basic principles of the Cloud computing, virtualization and GMPLS Control Plane and applies them to the intrusion detection systems, in order to protect Cloud networks characterized by constantly changing of the underlying infrastructure and physical topology. Based on the defined architecture, we have implemented a prototype of Cloud based IDS that validates our thesis. The prototype is realized though the integration of two open-source technologies: OpenStack and DRAGON (Dynamic Resource Allocation via GMPLS Optical Networks).
  • Keywords
    cloud computing; computer network security; data privacy; DRAGON; Dynamic Resource Allocation via GMPLS Optical Networks; GMPLS control plane; IT industry; OpenStack; V-IDS; cloud based IDS; cloud computing; cloud network security; data privacy; data protection; distributed services; enterprise customers; hybrid cloud security; open-source technologies; transparent access; virtual intrusion detection system; virtualization; Cloud computing; Computer architecture; Intrusion detection; Monitoring; Prototypes; Real-time systems; Cloud Computing; Network Management; Path Computation Element; Secure Networking;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Euro Med Telco Conference (EMTC), 2014
  • Conference_Location
    Naples
  • Print_ISBN
    978-8-8872-3721-4
  • Type

    conf

  • DOI
    10.1109/EMTC.2014.6996640
  • Filename
    6996640