SHANDONG SCIENCE ›› 2018, Vol. 31 ›› Issue (5): 115-120.doi: 10.3976/j.issn.1002-4026.2018.05.018

• Other Research Article • Previous Articles    

Design of a cloud forensics middleware system

YANG Zi-qi1, YANG Shu-mian2*, WANG Lian-hai2   

  1. 1.School of Information Science &Engineering, Shandong Normal University, Jinan 250358, China; 2 Shandong Provincial Key Laboratory of Computer Networks,Shandong Computer Science Center ( National Supercomputer Center in Jinan ),Qilu University of Technology (Shandong Academy of Sciences) , Jinan 250014, China
  • Received:2018-05-17 Online:2018-10-20 Published:2018-10-20

Abstract:

The rapid development of cloud computing not only has brought huge economic benefits, but also has brought the issue of computer related crimes. In this paper, a design method of cloud forensics middleware was proposed to obtain credible and complete digital evidence from the cloud in a comprehensive and convenient manner. The design method mainly included three parts: remote control end proofs, serverside evidence analysis and monitoring management, and clientside memory acquisition and analysis. Compared with the traditional online forensics methods, this method was more in line with the requirements of traditional physical evidence technology, greatly improving the efficiency of the forensic staff and the credibility of the evidence. The method has been verified on Windows 10 (the client) and Centos 7.0 (the server) and was proved to be effective and reliable.

CLC Number: 

  • TP393