Title :
Network security for Hybrid Cloud
Author :
Donadio, Pasquale ; Fioccola, Giovanni B. ; Canonico, Roberto ; Ventre, Giorgio
Author_Institution :
Alcatel-Lucent Italia, Milan, Italy
Abstract :
Cloud computing has enabled elastic and transparent access to distributed services, without investing in new infrastructures. In the last few years, Cloud computing has grown from being a promising business concept to one of the fast growing segments of the IT industry. Despite of all the hype surrounding the Cloud, enterprise customers are still reluctant to deploy their business in the Cloud. Security is one of the major issues which reduces the growth of Cloud computing and complications with data privacy and data protection continue to plague the market. In this paper, we propose a solution for Hybrid Cloud security, focusing on a Virtual Intrusion Detection System (V-IDS). We present a new architecture that considers the basic principles of the Cloud computing, virtualization and GMPLS Control Plane and applies them to the intrusion detection systems, in order to protect Cloud networks characterized by constantly changing of the underlying infrastructure and physical topology. Based on the defined architecture, we have implemented a prototype of Cloud based IDS that validates our thesis. The prototype is realized though the integration of two open-source technologies: OpenStack and DRAGON (Dynamic Resource Allocation via GMPLS Optical Networks).
Keywords :
cloud computing; computer network security; data privacy; DRAGON; Dynamic Resource Allocation via GMPLS Optical Networks; GMPLS control plane; IT industry; OpenStack; V-IDS; cloud based IDS; cloud computing; cloud network security; data privacy; data protection; distributed services; enterprise customers; hybrid cloud security; open-source technologies; transparent access; virtual intrusion detection system; virtualization; Cloud computing; Computer architecture; Intrusion detection; Monitoring; Prototypes; Real-time systems; Cloud Computing; Network Management; Path Computation Element; Secure Networking;
Conference_Titel :
Euro Med Telco Conference (EMTC), 2014
Conference_Location :
Naples
Print_ISBN :
978-8-8872-3721-4
DOI :
10.1109/EMTC.2014.6996640