A profile based network intrusion detection and prevention system for securing cloud environment

dc.contributor.authorGupta, Sanchika
dc.contributor.authorKumar, Padam
dc.contributor.authorAbraham, Ajith
dc.date.accessioned2013-05-15T10:51:43Z
dc.date.available2013-05-15T10:51:43Z
dc.date.issued2013
dc.description.abstractCloud computing provides network based access to computing and data storage services on a pay per usage model. Cloud provides better utilization of resources and hence a reduced service access cost to individuals. Cloud services include software as a service, platform as a service, and infrastructure as a service. Cloud computing virtually and dynamically distributes the computing and data resources to a variety of users, based on their needs, with the use of virtualization technologies. As Cloud computing is a shared facility and is accessed remotely, it is vulnerable to various attacks including host and network based attacks (Brown 2012, and Grance 2009) and hence requires immediate attention. This paper identifies vulnerabilities responsible for well-known network based attacks on cloud and does a critical analysis on the security measures available in cloud environment. This paper focuses on a nonconventional technique for securing cloud network from malicious insiders and outsiders with the use of network profiling. With network profiling, a profile is created for each virtual machine (VM) in cloud that describes network behavior of each cloud user (an assigned VM). The behavior gathered is then used for determination (detection) of network attacks on cloud. The novelty of the approach lies in the early detection of network attacks with robustness and minimum complexity. The proposed technique can be deployed with minimal changes to existing cloud environment. An initial prototype implementation is verified and tested on private cloud with a fully functional implementation under progresscs
dc.description.firstpageart. no. 364575cs
dc.description.sourceWeb of Sciencecs
dc.format.extent615736 bytescs
dc.format.mimetypeapplication/pdfcs
dc.identifier.citationInternational Journal of Distributed Sensor Networks. 2013, art. no. 364575.cs
dc.identifier.doi10.1155/2013/364575
dc.identifier.issn1550-1329
dc.identifier.issn1550-1477
dc.identifier.locationNení ve fondu ÚKcs
dc.identifier.urihttp://hdl.handle.net/10084/96351
dc.identifier.wos000317207100001
dc.language.isoencs
dc.publisherHindawics
dc.relation.ispartofseriesInternational Journal of Distributed Sensor Networkscs
dc.relation.urihttp://dx.doi.org/10.1155/2013/364575cs
dc.rightsCopyright © 2013 Sanchika Gupta et al. This is an open access article distributed under the Creative Commons Attribution License, which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.cs
dc.rights.accessopenAccess
dc.rights.urihttp://creativecommons.org/licenses/by/3.0/cs
dc.titleA profile based network intrusion detection and prevention system for securing cloud environmentcs
dc.typearticlecs
dc.type.statusPeer-reviewedcs
dc.type.versionpublishedVersioncs

Files

Original bundle

Now showing 1 - 1 out of 1 results
Loading...
Thumbnail Image
Name:
IJ-distributed-sensor-network-2013-364575-gupta.pdf
Size:
601.3 KB
Format:
Adobe Portable Document Format
Description:
publishedVersion

License bundle

Now showing 1 - 1 out of 1 results
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: