云计算
外包
加密
计算机安全
计算机科学
保密
深包检验
网络数据包
服务器
计算机网络
业务
操作系统
营销
作者
Chang Lan,Justine Sherry,Raluca Ada Popa,Sylvia Ratnasamy,Zhi Liu
出处
期刊:Networked Systems Design and Implementation
日期:2016-03-16
卷期号:: 255-273
被引量:90
摘要
It is increasingly common for enterprises and other organizations to outsource network processing to the cloud. For example, enterprises may outsource firewalling, caching, and deep packet inspection, just as they outsource compute and storage. However, this poses a threat to enterprise confidentiality because the cloud provider gains access to the organization's traffic.
We design and build Embark, the first system that enables a cloud provider to support middlebox outsourcing while maintaining the client's confidentiality. Embark encrypts the traffic that reaches the cloud and enables the cloud to process the encrypted traffic without decrypting it. Embark supports a wide-range of middleboxes such as firewalls, NATs, web proxies, load balancers, and data exfiltration systems. Our evaluation shows that Embark supports these applications with competitive performance.
科研通智能强力驱动
Strongly Powered by AbleSci AI