Home > Research > Publications & Outputs > C'MON

Links

Text available via DOI:

View graph of relations

C'MON: Monitoring the compliance of cloud services to contracted properties

Research output: Contribution in Book/Report/Proceedings - With ISBN/ISSNConference contribution/Paperpeer-review

Published
Close
Publication date29/08/2017
Host publicationARES '17 Proceedings of the 12th International Conference on Availability, Reliability and Security
PublisherACM
Pages6
ISBN (print)9781450352574
<mark>Original language</mark>English

Abstract

The usage of computing resources "as a service" makes cloud computing an attractive solution for enterprises with fluctuating needs for information processing. As security aspects play an important role when cloud computing is applied for business-critical tasks, security service level agreements (secSLAs) have been proposed to specify the security properties of a provided cloud service. While a number of approaches for service providers exist to assess the compliance of their services to the corresponding secSLAs, there is virtually no support for customers to detect if the services they use comply to the specified security levels. To close this gap, we propose C'mon, an approach to continuously monitor the compliance of cloud services to secSLAs. Our evaluation of C'mon shows its ability to identify violations of contracted security properties in an IaaS setting with very low performance overheads. © 2017 ACM.