JOURNAL ARTICLE

A Decentralized Cloud Firewall Framework with Resources Provisioning Cost Optimization

Meng LiuWanchun DouShui YuZhensheng Zhang

Year: 2014 Journal:   IEEE Transactions on Parallel and Distributed Systems Vol: 26 (3)Pages: 621-631   Publisher: Institute of Electrical and Electronics Engineers

Abstract

Cloud computing is becoming popular as the next infrastructure of computing platform. Despite the promising model and hype surrounding, security has become the major concern that people hesitate to transfer their applications to clouds. Concretely, cloud platform is under numerous attacks. As a result, it is definitely expected to establish a firewall to protect cloud from these attacks. However, setting up a centralized firewall for a whole cloud data center is infeasible from both performance and financial aspects. In this paper, we propose a decentralized cloud firewall framework for individual cloud customers. We investigate how to dynamically allocate resources to optimize resources provisioning cost, while satisfying QoS requirement specified by individual customers simultaneously. Moreover, we establish novel queuing theory based model M/Geo/1 and M/Geo/m for quantitative system analysis, where the service times follow a geometric distribution. By employing Z-transform and embedded Markov chain techniques, we obtain a closed-form expression of mean packet response time. Through extensive simulations and experiments, we conclude that an M/Geo/1 model reflects the cloud firewall real system much better than a traditional M/M/1 model. Our numerical results also indicate that we are able to set up cloud firewall with affordable cost to cloud customers.

Keywords:
Cloud computing Computer science Provisioning Firewall (physics) Distributed computing Computer network Quality of service Network packet Server Computer security Entropy (arrow of time) Operating system

Metrics

33
Cited By
5.15
FWCI (Field Weighted Citation Impact)
30
Refs
0.96
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Network Security and Intrusion Detection
Physical Sciences →  Computer Science →  Computer Networks and Communications
Network Packet Processing and Optimization
Physical Sciences →  Computer Science →  Hardware and Architecture
Network Traffic and Congestion Control
Physical Sciences →  Computer Science →  Computer Networks and Communications

Related Documents

JOURNAL ARTICLE

A Decentralized Cloud Firewall Framework with Resources Provisioning Cost Optimization

Prateek Srivastava

Journal:   Mathematical Statistician and Engineering Applications Year: 2021 Vol: 70 (1)Pages: 164-172
JOURNAL ARTICLE

Resources Provisioning Cost Optimization in a Decentralized Cloud Firewall Framework

Dilli Babu MP. RajasekaranM PradeeshwarPratheevi Kumar SPuneeth Kumar RC

Journal:   2022 1st International Conference on Computational Science and Technology (ICCST) Year: 2022 Pages: 311-315
BOOK-CHAPTER

Elastic VM for Cloud Resources Provisioning Optimization

Wesam DawoudIbrahim TakounaChristoph Meinel

Communications in computer and information science Year: 2011 Pages: 431-445
© 2026 ScienceGate Book Chapters — All rights reserved.