CHAPTER 17
Locking Down Cloud Servers
Thorsten Herre
SAP SE
Walldorf, Germany
Contents
17.2 Responsibilities and Ownership
17.3 Legal Regulatory and Licensing Aspects
17.4 Define Data Center Regions and Availability Zones
17.5 Hypervisor Security Design
17.6 Cloud Server Encryption Options
17.6.1 Cloud Storage Encryption
17.6.2 Encryption Key Management in the Cloud
17.6.3 Encryption and Authentication for Administrative Access
17.7 Network Security Architecture
17.7.1 Virtual Private Cloud Security Design
17.7.2 Network Intrusion Detection and Abuse Handling
17.7.3 Customer Cloud Connection Security
17.7.3.2 Leased Lines and Direct Connection