Abstract

The shift to Cloud computing has brought with it its specific security challenges concerning the loss of control, trust and multi-tenancy especially in Infrastructure-as-a-Service (IaaS) Cloud model. This article focuses on the design and development of an intrusion detection system (IDS) that can handle security challenges in IaaS Cloud model using an open source IDS. We have implemented a proof-of-concept prototype on the most deployed hypervisor—VMware ESXi—and performed various real-world cyber-attacks, such as port scanning and denial of service (DoS) attacks to validate the practicality and effectiveness of our proposed IDS architecture. Based on our experimental results we found that our Security Onion-based IDS can provide the required protection in a reasonable and effective manner.

Highlights

  • Cloud computing is a model for delivering on-demand computing services over the Internet [1]

  • We found the version of SambAadodfittihoenvailcetnimummearcahtiionne.isWpeearflosormeneudmuseirnagtetdheHMTTePtapspolroti8t 0fruamsinegwtohrek.NWmeafpo.und the version of SambDauorfinthgethveicetinmummearcahtiinone.pWhaesael,soouernIuDmSecroantetidnuHeTsTmPopnoitrotr8in0gutshinegntehtwe Normk aapn.d alerts for strange evenDtsutrointhge tShgeuielncuomnseorlaetifoonr fuprhtahseer, aonuarlyIsDisSbycoansteincuureistymadonmitinorisintrgatothr.eFnigeutwreo5rkbealonwd sahleorwtss tfhore soturatpnugteoefvtehnetsSgtouitlhceonSsgouliel dcounrisnoglethfoerefnuurmtheerraatinoanlypshisasbey. a security administrator

  • Securing Cloud computing architectures from malicious users can be very complicated because it is delivered via public networks, such as the Internet

Read more

Summary

Introduction

Cloud computing is a model for delivering on-demand computing services over the Internet [1]. It allows individuals and businesses to run applications on shared data centers instead of running them in private data centers. These shared data centers can be accessed by connecting to the Cloud network, making the application process starts quicker and more cost effective. Advancements in hardware capabilities that provide very powerful multicore and high-performance computers, has brought about a potential of utilizing the hardware capabilities to the fullest. Virtualization has made it possible to run several VMs simultaneously on one physical server. Virtualization has become a core concept in modern data centers, mainly driven by the benefits of application isolation, resource sharing, fault-tolerance, portability and cost efficiency [11]

Methods
Results
Conclusion
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call