Colorado State University
In this paper, the authors present a framework for compute cloud forensics that includes an investigation process model based on physical crime scene procedures. The work is motivated by work done by Carrier and Spafford. They posit the concepts for articulation within a distributed service oriented virtualization environment aptly described as a utility compute cloud. In this model, each digital device is a connection of virtual cloud servers mapped to a physical disk cluster situated within the Storage Area Network (SAN). Each digital device is considered a part of the physical crime scene where it is located.