信息网络安全 ›› 2014, Vol. 14 ›› Issue (9): 184-188.doi: 10.3969/j.issn.1671-1122.2014.09.042

• Orginal Article • Previous Articles     Next Articles

Electronic Evidence and Forensic Analysis System Design of IaaS Cloud Service-oriented Infrastructure Preservation

WU Yu-xiang, LI Ning-bin, JIN Xin, LOU Ye   

  1. Chinese People΄s Public Security University, Beijing 102623, China
  • Received:2014-08-06 Online:2014-09-01

Abstract: With the cloud technology is widely used in the field of computer networking, security, audit and e-discovery needs of cloud environments is increasingly urgent. As the cloud with traditional computer forensics evidence is quite different in the forensic environment, obtaining evidence and evidence analysis, the current lack of effective methods for cloud forensics and electronic techniques, the cloud system as an information system, which was auditability can not be guaranteed. This paper presents a new set of cloud forensics systems for infrastructure IaaS cloud services, data collection terminals through cloud system virtual machine monitor and actively collect evidence, and the evidence collected will be stored centrally in one place, forensics system Real-time forensics, evidence preservation features centralized cloud environment can effectively deal with volatile evidence, the evidence difficult to extract features, to achieve efficient forensics.

Key words: cloud forensics, IaaS cloud service, dynamic forensics, evidence preservation