计算机与现代化

• 信息安全 • 上一篇    下一篇

大数据应用模式及安全风险分析

  

  1. (1.北京工业大学计算机学院,北京100124;2.可信计算北京市重点实验室,北京100124;
    3.信息安全等级保护关键技术国家工程实验室,北京100124)
  • 收稿日期:2014-05-15 出版日期:2014-08-15 发布日期:2014-08-19
  • 作者简介:闫智(1988-),女,河北保定人,北京工业大学计算机学院硕士研究生,研究方向:信息安全,可信计算; 詹静(1982-),女,湖北武汉人,讲 师,博士,研究方向:信息安全,网络安全,可信计算。
  • 基金资助:
    国家科技重大专项课题资助项目(2012ZX03002003)

Big Data Application Mode and Security Risk Analysis

  1. (1. College of Computer Science, Beijing University of Technology, Beijing 100124, China;
    2. Beijing Municipal Key Laboratory of Trusted Computing, Beijing 100124, China;
    3. National Engineering Laboratory for Critical Technologies of Information Security Classified Protection,
    Beijing 100124, China)
  • Received:2014-05-15 Online:2014-08-15 Published:2014-08-19

摘要:

传统设备和工具在扩展性和分析技术上已经不能满足大数据的应用要求,当前大数据通常是在云计算环境下搭建Hadoop进行存储
和分析,而基于云的大数据安全风险来源于云计算服务商以及远程数据应用者对未授权文件及内容的越权操作。本文分析了在不同云计
算部署模式下,Hadoop不同阶段操作过程中,不可信主体对数据服务和隐私安全构成的威胁,并给出对应的威胁模型实例。最后根据上
述安全风险给出对应的安全策略。

关键词: 大数据, 云计算, 安全, Hadoop

Abstract:

Traditional equipments and tools can not meet the requirements of big data application in scalability
and analysis. People currently always use Hadoop to store and analyze big data in cloud computing environment. The
risks of big data application on cloud come from cloud service providers and remote users who access data with
unauthorized right. The paper presented the threats under different deployment of cloud, and analysed the risk at
different stages of operation in Hadoop. The paper gave a thread model for big data application and finally gave
the corresponding security policy.

Key words: big data, cloud computing, security, Hadoop

中图分类号: