Skip to main content

TRESOR – Towards the Realization of a Trusted Cloud Ecosystem

  • Chapter
  • First Online:

Abstract

The TRESOR (Trusted Ecosystem for Standardized and Open cloud-based Resources http://www.cloud-tresor.de/) project enables cloud computing solutions for the German health sector. This sector deals with sensitive medical information and is in general not suitable for current cloud-based solutions, which are lacking appropriate privacy and security features. The project evaluates and proposes new architectural components to address these shortcomings. These will be combined into a secure and trustworthy ecosystem that will enable the health industry and other sectors to take advantage of cloud computing. The architecture consists of components, such as a marketplace, a broker, a proxy and a PaaS-platform. TRESOR addresses privacy and data protection issues and aims at providing a standardized solution with reduced lock-in effects that can also be used in other domains. In this paper the specific tasks and the architecture of these components are presented, important challenges of the TRESOR project are highlighted and preliminary results, such as a secure transfer protocol, and policy integration are shown.

This is a preview of subscription content, log in via an institution.

Buying options

Chapter
USD   29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD   39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD   54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info
Hardcover Book
USD   54.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Learn about institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

Notes

  1. 1.

    http://trusted-cloud.de/.

References

  1. Umu xacml editor (2013). URL http://umu-xacmleditor.sourceforge.net/

  2. Ws02 identity server (2013). URL http://wso2.com/products/identityserver/

  3. Ardagna, C.A., Cremonini, M., di Vimercati, S.D.C., Samarati, P.: Access control in location based services. Privacy in Location-Based Applications LNCS 5599, 106–126 (2009)

    Google Scholar 

  4. Axiomatics: Axiomatics Language for Authorization (ALFA) (2012). URL http://www.axiomatics.com/axiomatics-alfa-plugin-for-eclipse.html

  5. Bundesäztekammer: Berufsordnung für die in Deutschland tätigen Ärztinnen und Ärzte - §10 Abs. 3. http://www.bundesaerztekammer.de/page.asp?his=1.100.1143 (2011)

  6. Fielding, R.T.: Architectural Styles and the Design of Network-based Software Architectures. Doctoral dissertation, University of California, Irvine (2000). 2000

    Google Scholar 

  7. Geman Federal Ministry of Justice: Verordnung über den Schutz vor Schäden durch Röntgenstrahlen, § 28 Aufzeichnungspflichten, Röntgenpass. http://www.gesetze-iminternet.de/r_v_1987/__28.html (2011)

  8. German Federal Ministry of Justice: StGB § 203 Verletzung von Privatgeheimnissen. http://www.gesetze-im-internet.de/stgb/__203.html (2013). German

  9. Graf, T., Zickau, S., Küpper, A.: Enabling location-based services on stationary devices using smartphone capabilities (2013)

    Google Scholar 

  10. Lockhart, H., Parducci, B., Rissanen, E.: Oasis xacmlv3 administration and delegation profile (2010)

    Google Scholar 

  11. Merz, F.:Wachstumsmotor Gesundheit: Die Zukunft unseres Gesundheitswesens. Carl Hanser Verlag, München (2008)

    Google Scholar 

  12. Microsoft, Inc.: Access & Information Protection. http://www.microsoft.com/enus/server-cloud/windows-server/identity-access.aspx (2013)

  13. Neuman, C., Yu, T., Hartman, S., Raeburn, K.: The Kerberos Network Authentication Service (V5). RFC 4120 (Proposed Standard) (2005). URL http://www.ietf.org/rfc/rfc4120.txt. Updated by RFCs 4537, 5021, 5896, 6111, 6112, 6113, 6649

  14. OASIS (Organization for the Advancement of Structured Information Standards): OASIS eXtensible Access Control Markup Language (XACML). https://www.oasis-open.org/committees/xacml (2013)

  15. OGC (Open Geospatial Consortium): Geospatial eXtensible Access Control Markup Language (GeoXACML) (2011). URL http://www.opengeospatial.org/standards/geoxacml

  16. Repschläger, J., Zarnekow, R., Wind, S., Klaus, T.: Cloud Requirement Framework: Requirements and Evaluation Criteria to adopt Cloud Solutions. In: Proceedings of the 20th European Conference on Information Systems (2012)

    Google Scholar 

  17. Slawik, M.: The trusted cloud transfer protocol. In: Proceedings of the 5th Intl. Conference on Cloud Computing Technology and Science (CloudCom 2013), pp. 203–208. IEEE, Bristol, UK (2013)

    Google Scholar 

  18. Thatmann, D., Slawik, M., Zickau, S., Küpper, A.: Towards a Federated Cloud Ecosystem: Enabling Managed Cloud Service Consumption, accepted. In: Proceedings of the 9th International Conference on Economics of Grids, Clouds, Systems, and Services, GECON 2012. Springer-Verlag Berlin Heidelberg, Berlin, Germany (2012)

    Google Scholar 

  19. The Eclipse Foundation: Eclipse Modeling Framework Project (EMF). http://www.eclipse.org/modeling/emf/ (2013)

Download references

Acknowledgments

The work presented in this paper is performed in the context of the TRESOR project. TRESOR is funded by the German Federal Ministry of Economics and Technology (BMWi) as part of the Trusted CloudFootnote 1 technology program.

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Sebastian Zickau .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2014 Springer International Publishing Switzerland

About this chapter

Cite this chapter

Zickau, S., Slawik, M., Thatmann, D., Uhlig, S., Denisow, I., Küpper, A. (2014). TRESOR – Towards the Realization of a Trusted Cloud Ecosystem. In: Krcmar, H., Reussner, R., Rumpe, B. (eds) Trusted Cloud Computing. Springer, Cham. https://doi.org/10.1007/978-3-319-12718-7_9

Download citation

  • DOI: https://doi.org/10.1007/978-3-319-12718-7_9

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-319-12717-0

  • Online ISBN: 978-3-319-12718-7

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics