DocumentCode
2099102
Title
Bridging the GAP between Software Certification and Trusted Computing for Securing Cloud Computing
Author
Munoz, Andres ; Mana, Antonio
Author_Institution
Grupo GISUM, Univ. de Malaga, Málaga, Spain
fYear
2013
fDate
June 28 2013-July 3 2013
Firstpage
103
Lastpage
110
Abstract
Despite the fact that software security certification has important advantages; among these we highlighted that it allows to increase users´ trust by means of attesting security properties. However, in most of cases the system that is subject of certification is considered to be monolithic. This fact implies that existing certification schemes do not provide support for dynamic changes of components as required in Cloud Computing scenarios. In existing certification schemes certificates refer to a particular version of the product or system, changes in the system structure require a process of recertification. We propose a solution based on the combination of software certification techniques and hardware-based certification, as those provided by the Trusted Computing technology. Likewise, the main target of our approach is bringing the gap existing between the software certification and the means for hardware certification, in order to provide a solution for the whole system certification using Trusted Computing technology.
Keywords
certification; cloud computing; security of data; trusted computing; cloud computing security; hardware-based certification; security properties; software security certification schemes; trusted computing technology; Certification; Cloud computing; Computers; Hardware; Security; Service-oriented architecture; certification; cloud computing; security; trusted computing technology;
fLanguage
English
Publisher
ieee
Conference_Titel
Services (SERVICES), 2013 IEEE Ninth World Congress on
Conference_Location
Santa Clara, CA
Print_ISBN
978-0-7695-5024-4
Type
conf
DOI
10.1109/SERVICES.2013.15
Filename
6655682
Link To Document