DocumentCode :
2995830
Title :
Cloud Services Gateway: A Tool for Exposing Private Services to the Public Cloud with Fine-grained Control
Author :
Perera, Srinath ; Kumarasiri, Rajika ; Kamburugamuva, Supun ; Fernando, Senaka ; Weerawarana, Sanjiva ; Fremantle, Paul
Author_Institution :
WSO2 Inc., Colombo, Sri Lanka
fYear :
2012
fDate :
21-25 May 2012
Firstpage :
2237
Lastpage :
2246
Abstract :
By enabling users to allocate computing resources on demand, cheaply, and in an elastic manner, Cloud Computing has made large computation resources available to small and medium size organizations. However, using the Cloud requires users to place their computations, data, or both in a shared data center own by an outsider. This sharing has raised many security concerns. Such concerns are much apparent with use cases like health informatics, where the security of the information is critical and imposed by government regulations. We propose a hybrid approach to solve this problem, where only computations are moved to the public domains while keeping the data within the private network, and computations may access data through a set of services that expose data following the Principle of Least Privilege. Such architectures will, however, require computations in the cloud to connect to the local network that holds the data, and the obvious solution: that is opening up ports in the organizational firewall could potentially create security loopholes. As an alternative, we propose Cloud Services Gateway (CSG), which enable users to selectively expose their private services that reside inside a firewall to outside clients while maintaining fine grained control. This paper motivates hybrid Cloud architectures and presents the architecture and design decisions of Cloud Services Gateway.
Keywords :
cloud computing; resource allocation; security of data; software architecture; cloud architectures; cloud computing; cloud services gateway; fine-grained control; information security; principle of least privilege; private services; public cloud; resource allocation; security concerns; Cloud computing; Computer architecture; Containers; Logic gates; Security; Servers; cloud computing; security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Parallel and Distributed Processing Symposium Workshops & PhD Forum (IPDPSW), 2012 IEEE 26th International
Conference_Location :
Shanghai
Print_ISBN :
978-1-4673-0974-5
Type :
conf
DOI :
10.1109/IPDPSW.2012.276
Filename :
6270587
Link To Document :
بازگشت