• DocumentCode
    2899404
  • Title

    Flogger: A File-Centric Logger for Monitoring File Access and Transfers within Cloud Computing Environments

  • Author

    Ko, Ryan K L ; Jagadpramana, Peter ; Lee, Bu Sung

  • Author_Institution
    Cloud & Security Lab., HP Labs., Singapore, Singapore
  • fYear
    2011
  • fDate
    16-18 Nov. 2011
  • Firstpage
    765
  • Lastpage
    771
  • Abstract
    Trust is one of the main obstacles to widespread Cloud adoption. In order to increase trust in Cloud computing, we need to increase transparency and accountability of data in the Cloud for both enterprises and end-users. However, current system tools are unable to log file accesses and transfers effectively within a Cloud environment. In this paper, we present Flogger, a novel file-centric logger suitable for both private and public Cloud environments. Flogger records file- centric access and transfer information from within the kernel spaces of both virtual machines (VMs) and physical machines (PMs) in the Cloud, thus giving full transparency of the entire data landscape in the Cloud. With Flogger, services can be built above it to provide Cloud providers, end-users and regulators with the relevant provenance, e.g. a tool for an end- user to track whether his/ her file was ´touched´ by an unauthorized user. We present the initial developments of Flogger, and interesting results from our experiments. We also present compelling future work that will shape the beginnings of a new logging paradigm: distributed VM/ PM file-centric logging.
  • Keywords
    authorisation; cloud computing; system monitoring; virtual machines; Flogger; cloud computing environments; cloud providers; data accountability; file access monitoring; file centric logger; file-centric access; kernel spaces; log file access; private cloud environments; public cloud environments; system tools; virtual machines; Cloud computing; Communication channels; Databases; Kernel; Linux; Monitoring; Servers; Cloud computing; Cloud computing security; accountability; auditability; detective mechanisms; file-centric logging mechanisms; file-centric logs; logging; trust in Cloud computing; trusted Cloud;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Trust, Security and Privacy in Computing and Communications (TrustCom), 2011 IEEE 10th International Conference on
  • Conference_Location
    Changsha
  • Print_ISBN
    978-1-4577-2135-9
  • Type

    conf

  • DOI
    10.1109/TrustCom.2011.100
  • Filename
    6120893