Abstract
Cloud computing is becoming a key IT infrastructure technology being adopted progressively by companies and users. Still, there are issues and uncertainties surrounding its adoption, such as security and how users data is dealt with that require attention from developers, researchers, providers and users. The A4Cloud project tries to help solving the problem of accountability in the cloud by providing tools that support the process of achieving accountability. This paper presents the contents of the first A4Cloud tutorial. These contents include basic concepts and tools developed within the project. In particular, we will review how metrics can aid the accountability process and some of the tools that the A4Cloud project will produce such as the Data Track Tool (DTT) and the Cloud Offering Advisory Tool (COAT).
This work has been partially funded by the European Commission through the FP7/2007-2013 project A4Cloud under grant agreement number 317550. The fifth author is funded by a FPI fellowship from the Junta de Andalucía through the project PISCIS (P10-TIC-06334).
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Similar content being viewed by others
Notes
- 1.
Description is taken from the official documentation of the project.
- 2.
EU FP6 project PRIME, https://www.prime-project.eu/.
- 3.
EU FP7 project PrimeLife http://primelife.ercim.eu/.
- 4.
Early versions of lo-fi mockups with a trace view visualization were developed within the scope of a Google Research Award project in discussion with technical and HCI specialists from Google.
- 5.
Backbone: http://backbonejs.org/.
- 6.
Python Programming Language: https://www.python.org.
- 7.
JSON: http://json.org/.
References
AICPA/CICA privacy task force. generally accepted privacy principles. http://www.aicpa.org/INTERESTAREAS/INFORMATIONTECHNOLOGY/RESOURCES/PRIVACY/GENERALLYACCEPTEDPRIVACYPRINCIPLES/Pages/default.aspx
Cloud security alliance. cloud control matrix (ccm) v3. https://cloudsecurityalliance.org/research/ccm/
The cloud accountability project. http://www.a4cloud.eu/
Implementing accountability in the marketplace - a discussion document, accountability phase iii - the madrid project. Centre for Information Policy Leadership (CIPL), November 2011
National institute of standards and technology, nist sp 800–53 - security and privacy controls for federal information systems and organizations. revision 4 (2013)
Alnemr, R., Pearson, S., Leenes, R., Mhungu, R: Coat: cloud offerings advisory tool. In: IEEE 6th International Conference on Cloud Computing Technology and Science, CloudCom 2014, Singapore, December 2014, pp. 15–18 (2014)
Felici, M., Koulouris, T., Pearson, S: Accountability for data governance in cloud ecosystems. In: IEEE 5th International Conference on Cloud Computing Technology and Science, CloudCom 2013, Bristol, United Kingdom, 2–5 December, 2013, vol. 2, pp. 327–332 (2013)
Fischer-Hübner, S., Hedbom, H., Wästlund, E.: Trust and assurance HCI. In: Camenisch, J., Fischer-Hübner, S., Rannenberg, K. (eds.) PrimeLife - Privacy and Identity Management for Life in Europe, p. 261. Springer, Heidelberg (2011)
Mell, P., Grance, T.: The NIST definition of cloud computing. Technical report SP 800-145 (2011)
Nuñez, D., Fernandez-Gago, C., Pearson, S., Felici, M.: A metamodel for measuring accountability attributes in the cloud. In: 2013 IEEE 5th International Conference on Cloud Computing Technology and Science (CloudCom), vol. 1, pp. 355–362. IEEE (2013)
Pettersson, J.S., Fischer-Hübner, S., Bergmann, M.: Outlining “Data Track”: privacy-friendly data maintenance for end-users. In: Wojtkowski, W., Wojtkowski, W.G., Zupancic, J., Magyar, G., Knapp, G. (eds.) Advances in Information Systems Development, pp. 215–226. Springer, Heidelberg (2007)
Pulls, T., Peeters, R., Wouters, K.: Distributed privacy-preserving transparency logging. In: Workshop on Privacy in the Electronic Society (WPES), Heidelberg, Germany, November 2013, pp. 83–94 (2013)
Benghabrit, W., Grall, H., Royer, J-C., Sellami, M., Azraoui, M., Elkhiyaoui, K., Önen, M., Santana De Oliveira, A., Bernsmed, K.: A cloud accountability policy representation framework. In: CLOSER 2014, 4th International Conference on Cloud Computing and Services Science, 3–5 April 2014, Barcelona, Spain (2014). http://www.eurecom.fr/publication/4222
Fischer-Hübner, S., Angulo, J., Pulls, T.: How can cloud users be supported in deciding on, tracking and controlling how their data are used? In: Hansen, M., Hoepman, J.-H., Leenes, R., Whitehouse, D. (eds.) Privacy and Identity 2013. IFIP AICT, vol. 421, pp. 77–92. Springer, Heidelberg (2014). http://dx.doi.org/10.1007/978-3-642-55137-6_6
Angulo, J., Fischer-Hübner, S., Pulls, T., Wästlund, E.: Usable transparency with the “Data Track” - a tool for visualising data disclosures. In: SIGCHI Conference on Human Factors in Computing Systems (CHI 2015), Seoul, South Korea (2015). (Work-in-progress track)
Author information
Authors and Affiliations
Corresponding author
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2015 IFIP International Federation for Information Processing
About this paper
Cite this paper
Fernandez-Gago, C. et al. (2015). Tools for Cloud Accountability: A4Cloud Tutorial. In: Camenisch, J., Fischer-Hübner, S., Hansen, M. (eds) Privacy and Identity Management for the Future Internet in the Age of Globalisation. Privacy and Identity 2014. IFIP Advances in Information and Communication Technology, vol 457. Springer, Cham. https://doi.org/10.1007/978-3-319-18621-4_15
Download citation
DOI: https://doi.org/10.1007/978-3-319-18621-4_15
Published:
Publisher Name: Springer, Cham
Print ISBN: 978-3-319-18620-7
Online ISBN: 978-3-319-18621-4
eBook Packages: Computer ScienceComputer Science (R0)