arrow
Return

Analyzing Component Composability of Cloud Security Configurations

delete2023-01-01
delete1
delete
OA
AI
K
Kandasamy Muniasamy *
R
Rohit Chadha
P
Prasad Calyam
M
M. Sethumadhavan
DOI:10.1109/ACCESS.2023.3340690delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Security is a major concern when building large-scale computer systems. Cloud services have made it easier to provision large-scale systems on demand over the Internet. While the cloud service providers provide the required building blocks such as compute units, database servers, and storage, customers are still responsible for securely combining these systems to satisfy their organization's security policy. The secure development and operation of such large-scale systems present technical challenges. Composing a larger system using components with known security properties that satisfy a given security policy without re-analyzing the individual components is a difficult problem. In this study, we attempted to analyze the composability of components from a security perspective using first-order predicate logic. We posit that if we build a system using individual components that satisfy a security policy, the composed system will be sound with regard to that policy. Additionally, the methodology can be used to identify drifts or violations during future changes in the system by running checks during the system release cycles for continuous verification.
Keywords:
Security
Cognition
Databases
Cloud computing security
Symbols
Large-scale systems
Buildings
Formal concept analysis
Cloud security
composability
formal analysis
policy-based verification

Journal

IEEE Access cover
IEEE Access
IF:
3.6
Papers:
9.8W
Citations:
29.4W

Organization

A
amrita vishwa vidyapeetham coimbatore
Scholars:
741
Papers: 752
Citations: 1
A
Amrita Vishwa Vidyapeetham
Scholars:
6.9K
Papers: 4.2K
Citations: 3.3K