随着云计算的发展,虚拟机数量庞大,租户的应用种类繁多,不同租户的安全运维能力不同,很多租户的云环境有极大的安全风险。云平台如何为租户提供丰富的安全能力,并提供业务连续性的保障是各界普遍关注的问题。传统的隔离与访问控制方式无法动态自适应云环境下的安全需求。提出了一种云环境下自适应安全框架,该框架可以动态自动适配云环境下复杂的虚拟网络环境,既可方便地集成不同的安全组件,又保持了云计算的扩展性。通过应用示例说明了该框架的工作过程。
With the development of cloud computing,there are huge number of virtual machines and a wide variety of tenant applications with different security operation and maintenance capabilities.The cloud environment of many tenants has a great security risk. It is a common concern whether a cloud platform can provide a wealth of security for tenants and business continuity. Traditional isolation and access control mode cannot dynamically adapt to cloud environment security requirements. A cloud environment adaptive security framework is proposed in this paper. The framework can dynamically adapt to complex virtual network environment of cloud environment,integrate different security components,and keep the extensibility of cloud computing. The working process of the framework is expounded by application example.