Find, read and cite all the research you need on researchgate. The national institute of standards and technology released their security reference architecture for cloud computing, setting an important baseline for cloudbased systems in the united states. Nist cloud computing reference architecture ieee conference. This actorrole based model used the guiding principles of the nist cloud computing reference architecture to develop an eleven component model. Nist national institute for standards and technology the following standards have been retained for the csc phase 2 maturity assessment. Cloudy with showers of business opportunities and nist and.
Jun 1, 2016 this major update to the nist 80053 quick start published earlier this year deploys a standardized environment that helps support additional nistbased security requirements on the aws cloud. Recommendations of the national institute of standards and technology special publication 500292 9781478168027. Cloudy with showers of business opportunities and and a good chance of security and accountability dr. Thus, the computing ability and intelligence of cnc systems can be improved by a switch to the cloud architecture. The nist definition characterizes important aspects of cloud computing and is. Nist cloud computing reference architecture ccra within the resource abstraction and control layer and hardware layer. Recent years have witnessed a rapid increase not only in interest, but also in the actual adoption. A design of cnc architecture based on cloud computing. The issue of intercloud operability due to different cloud computing vendors reference architecture ra needs to be addressed to allow consumers to use services from any vendor. The nist definition characterizes important aspects of cloud computing and is intended to serve as a means for broad comparisons of cloud services and deployment strategies, and to provide a baseline for discussion from what is cloud computing to how to best use cloud computing. Michaela iorga, senior security technical lead for cloud computing cochair, cloud security wg. Manifesting itself as the descendant of several other computing research areas such as serviceoriented architecture, distributed and grid computing, and virtualization, cloud computing inherits. Cloud computing cc reference architecture ra version 1. Terminology of the reference architecturenist refernecemodel cloud service auditor 1 a party that can conduct independent examination of cloud service controls with the intent to express an opinion thereon.
Such identification is not intended to imply recommendation or endorsement by the national institute of standards and technology. An overview of the nist cloud computing program and reference architecture. An overview of the nist cloud computing program and reference. An assessment of existing technical standards that could be used in cloud computing and a reference architecture for government use in the cloud have been published by the. The goal is to accelerate the federal governments adoption of secure and effective cloud computing to reduce costs and improve services. Fang liu, jin tong, jian mao, robert bohn, john messina, lee badger, dawn leaf. The nist cloud computing program designs security assessments, procedures, and technical guidance documents on building cloud architecture and services and. Cloud computing is a model for enabling ubiquitous, convenient, ondemand network access to a shared pool of configurable computing resources e. Cloud computing reference architecture and its forensic. This growth of cloud computing service consumers may influence the future data centers and operational models. Nist spotlights five actors in the cloud by judith myerson in cloud on october 23, 2014, 8. So, cloud computing is measured, ondemand, elastic computing using pooled resources, usually on the internet. This document presents the nist federated cloud reference architecture model. Standardized architecture for nistbased assurance frameworks on the aws cloud.
You will be notified whenever a record that you have chosen has been cited. It has been created from the collective experiences of hundreds of cloud client engagements and implementation of ibmhosted clouds. Cloud forensics nist cloud computing standardization digital investigation digital forensics. Cloud computing reference architecture and its forensic implications. Next, the nist definition of cloud computing list three service models. The us national institute of standards and technology nist has developed a clear and concise definition of what cloud is that has been broadly adopted, both nationally and. Nist cloud computing reference architecture guide books. Nist sp 500292 nist cloud computing reference architecture ii reports on computer systems technology the information technology laboratory itl at the national institute of standards and technology nist promotes the u. An overview of the nist cloud computing program and.
The nist definition characterizes important aspects of cloud computing and is intended to serve as a means for broad comparisons of cloud services anddeployment strategies, and to provide a baseline for discussion from what is cloud computing to how to best use cloud computing. The nist cloud computing security reference architecture provides a security overlay to the nist cloud computing reference architecture published in 2011. The purpose of this document is to define a nist cloud computing security reference architecture nccsra a framework that. Sp 800145, the nist definition of cloud computing csrc. Certain commercial entities, equipment, or material may be identified in this document in order to describe a concept adequately. Pdf nist cloud computing reference architecture researchgate. Nist and describes standards research in support of the nist cloud computing program. Nist sp 500322 evaluation of cloud computing services based on nist 800145. About nist special publication 500292 nist cloud computing reference architecture permalink the adoption of cloud computing into the us government usg and its implementation depend upon a variety of technical and nontechnical factors. This is the second edition of the nist cloud computing standards roadmap, which has been developed by the members of the public nist cloud computing standards roadmap working group. Nist cloud computing standards roadmap xi foreword this is the second edition of the nist cloud computing standards roadmap, which has been developed by the members of the public nist cloud computing standards roadmap working group. Federal agencies are under orders to begin migrating applications to a cloud computing environment under a the administrations cloudfirst initiative, and the national institute of standards and technology is developing standards and guidelines to enable the transition.
Itl skip to main content an official website of the united states government. Cloud computing reference architecture from different. Of course, for that to be possible, the united states government will need to ensure maximum security for those cloud applications. California enterprise architecture framework cloud. Nist cloud computing reference architecture proceedings. Nist cloud computing security reference architecture 800299. Administrative domains, regulatory environments, identity providers, cloud service consumer, cloud service provider. Page 18 2 background this document presents the nist cloud computing security reference architecture formal model derived from nist sp 500292. Nist cloud computing reference architecture slideshare. Nist cloud computing security reference architecture draft. Recommendations of the national institute of standards and technology special publication 500292 june. Recommendations of the national institute of standards and technology special publication 500292june.
Nist cloud computing security reference architecture nist. Nists security reference architecture for the cloudfirst. Nist cloud computing standards roadmap working group. In the proposed solution, users can also launch thirdparty software e. Product development in a multidisciplinary environment pp 11191129 cite as. Information technology laboratory cloud computing program nist cloud computing reference architecture toplevel view the nist cloud computing reference architecture consists of five major actors. A fundamental reference point, based on the nist definition of cloud computing, is needed to describe an. Nist special publication 500292, nist cloud computing reference architecture, september 2011 nist special publication 500293, us government cloud computing technology roadmap, volume i and volume ii, october 2014 nist special publication 500299, nist cloud computing security reference. Defining intercloud architecture for interoperability and. The adoption of cloud computing into the federal government and its implementation depend upon a variety of technical and nontechnical. The nist cloud computing program is a set of best procedures, practices and standards for developing, deploying and maintaining cloud computing architecture.
Cloud computing is the next step in the continued evolution of information systems. The reference architecture includes the cloud computing roles, cloud computing activities, and the cloud computing functional components and their relationships. This document presents the nist cloud computing reference architecture ra and taxonomy tax that will accurately communicate the components and offerings of cloud computing. Each actor plays a role and performs a set of activities and functions. Nist cloud computing reference architecture, an associated set of security components derived from the csa tcira, and a methodology for using the formal model and the security components to orchestrate. Nist cloud computing security reference architecture. Cloud computing has been defined by nist as a model for enabling convenient, ondemand network access to a shared pool of configurable computing resources e.
This is a vendor neutral conceptual model that concentrates on the role and interactions of the. This edition includes updates to the information on portability, interoperability, and security. Nist cloud computing reference architecture semantic scholar. Secure systems research group fau a security reference architecture for cloud systems eduardo b. This alert has been successfully added and will be sent to. Guidelines on security and privacy in public cloud computing. Download scientific diagram cloud reference architecture by nist. This paper presents the first version of the nist cloud computing reference architecture ra. With all the opinionbased cloud computing definitions out there, it is hard to come to an agreement about what the cloud or a cloud service is. This document describes these components individually and how they function as an ensemble. The purpose of this document is to define a nist cloud computing security reference architecture nccsraa framework that. In this paper, researchers provide a preliminary analysis on the forensic implications of cloud computing reference architecture, on the segregation of duties of cloud actors in cloud investigations, forensic artifacts on all layers of cloud system stack, cloud actors interaction scenarios in cloud investigations, and forensic implications of all cloud deployment models.
Evaluation of cloud computing services based on nist 800145. The ibm cloud computing reference architecture ccra is a blueprint to guide ibm development teams and field practitioners in the design of public and private clouds. The nist cloud federation reference architecture nist. Special publication 500292 discusses how the adoption of cloud computing into the federal government and its implementation depend upon a variety of technical and nontechnical factors. This actorrole based model used the guiding principles of the nist cloud computing reference architecture to develop a model with 11 components. When a provider claims conformance with any other standard, it should cite the specific version and. Nist spotlights five actors in the cloud techrepublic. Nist publishes a standards framework and reference.
Standard andor project under the direct responsibility of isoiec jtc 1sc 38 secretariat stage ics. Digital forensic readiness architecture for cloud computing systems. A fundamental reference point, based on the nist definition of cloud computing, is needed to describe an overall framework that can be used governmentwide. Nist draws up a security architecture for cloud computing. This cloud model is composed of five essential characteristics, three. Cad, cam, and cae on the cloudenabled frontend, making it.
109 20 175 1029 896 584 715 1345 221 813 1508 897 921 936 429 1433 456 722 995 1156 1071 46 1397 585 639 458 764 254 712 542 398