Abstract | ||
---|---|---|
The security model relying on the traditional defense of the perimeter cannot protect modern dynamic organizations. The emerging paradigm called zero trust proposes a modern alternative that enforces access control on every request and avoids implicit trust based on the physical location of people and devices. These architectures rely on several trusted components, but existing proposals make the unrealistic assumption that attackers cannot compromise some of them. We overcome these assumptions and present a novel survivable zero trust architecture that can guarantee the necessary security level for cloud computing environments. The proposed architecture guarantees a high level of security and robustness and under specific conditions it can tolerate intrusions and can recover from failures and successful attacks. (c) 2021 Elsevier Ltd. All rights reserved. |
Year | DOI | Venue |
---|---|---|
2021 | 10.1016/j.cose.2021.102419 | COMPUTERS & SECURITY |
Keywords | DocType | Volume |
Zero trust, Survivability, Distributed systems, Access control, Security | Journal | 110 |
ISSN | Citations | PageRank |
0167-4048 | 0 | 0.34 |
References | Authors | |
0 | 4 |
Name | Order | Citations | PageRank |
---|---|---|---|
Luca Ferretti | 1 | 43 | 7.66 |
Federico Magnanini | 2 | 0 | 0.68 |
Mauro Andreolini | 3 | 281 | 22.73 |
M. Colajanni | 4 | 154 | 12.10 |