Article
RSS
Bots in the Cloud - Cloud Slam

With all the recent attention to the Kneber bot net, I am reminded that we must consider how we would detect bot infections in the cloud. Most bot infections are well-hidden from local security tools and like Kneber only reveal themselves via detection of suspicious network activity. Most cloud providers do not allow tenants to monitor the network. How will cloud tenants detect when their cloud based systems are compromised?

I see three security models for solving this problem:

  1. Cloud Security Management -- the cloud provider assumes responsibility for detection.
  2. Self-service Security -- the cloud provider provides tenants with network monitoring and detection capabilities.
  3. Assume the risk.

Read the rest of the article.

Published Monday, March 01, 2010 6:27 PM by David Marshall
Filed under:
Share this post: del.ici.ousDel.ici.ous Digg ThisDigg Newsvine ThisNewsvine Reddit ThisReddit Slashdot It!Slashdot TechnoratiTechnorati
Comments
There are no comments for this post.
To post a comment, you must be a registered user. Registration is free and easy! Sign up now!
Calendar
<March 2010>
SuMoTuWeThFrSa
28123456
78910111213
14151617181920
21222324252627
28293031123
45678910