INTERNATIONAL JOURNAL OF COMPUTERS COMMUNICATIONS & CONTROL
ISSN 1841-9836, 10(2):222-229, April, 2015.
Logging for Cloud Computing Forensic Systems
A. Pătraşcu, V.V. Patriciu
Alecsandru Pătraşcu*
1. Military Technical Academy, Computer Science Department
39-40 George Coşbuc Street, Bucharest, Romania
alecsandru.patrascu@gmail.com
2. Advanced Technologies Institute
10 Dinu Vintila, District 2, 021102, Bucharest, Romania
ati@dcti.ro
*Corresponding author: ati@dcti.ro
Victor Valeriu Patriciu
Military Technical Academy, Computer Science Department
39-40 George Coşbuc Street, Bucharest, Romania
victorpatriciu@yahoo.com
Abstract: Cloud computing represents a different paradigm in the field of dis-
tributed computing that involves more and more researchers. We can see in this
context the need to know exactly where, when and how a piece of data is processed
or stored. Compared with classic digital forensic, the field of cloud forensic has a lot
of difficulties because data is not stored on a single place and furthermore it implies
the use of virtualization technologies.
In this paper we present a new method of monitoring activity in cloud computing
environments and datacenters by running a secure cloud forensic framework. We
talk in detail about the capabilities that such system must have and we propose an
architecture for it. For testing and results we have implemented this solution to our
previous developed cloud computing system.
Keywords: cloud computing; data forensics; logging framework; distributed com-
puting; binary diff
1 Introduction
Cloud Computing to put it simply, means Internet Computing. It is a model for enabling
convenient, on-demand network access to a shared pool of configurable computing resources
(e.g., networks, servers, storage, applications, and services) that can be rapidly provisioned and
released with minimal management effort or service provider interaction.
The cloud computing model offers the promise of massive cost savings combined with in-
creased IT agility. It is considered critical that government and industry begin adoption of this
technology in response to difficult economic constraints. However, cloud computing technol-
ogy challenges many traditional approaches to datacenter and enterprise application design and
management. Cloud computing is currently being used. However, security, interoperability, and
portability are cited as major barriers to broader adoption.
In this context, a new need for IT experts is increasing: the need to know exactly how, where
and in what condition is the data from the cloud stored, processed and delivered to the clients.
We can say with great confidence that cloud computing forensics has become more and more a
need in todays distributed digital world.
In this paper we are going to present a new way in which we can integrate a full forensics
framework on top of a new or existing cloud infrastructure. We will talk about the architecture
behind it and we will present its advantages for the entire cloud computing community. We will
present also the impact that our technology proposal will have on existing cloud infrastructures
Copyright © 2006-2015 by CCC Publications