A Cross-Chain-Based Access Control Framework for Cloud Environment

被引:0
作者
Belcaid, Saad [1 ]
Zbakh, Mostapha [1 ]
Aouad, Siham [1 ]
Touhafi, Abdellah [2 ]
Braeken, An [2 ]
机构
[1] Mohammed V Univ Rabat, ENSIAS, Smart Syst Lab SSL, Rabat 10000, Morocco
[2] Vrije Univ Brussel, Dept Engn, Technol INDI, B-1000 Brussels, Belgium
关键词
blockchain; cross chain; access control; cloud security;
D O I
10.3390/fi17040149
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing presents itself as one of the leading technologies in the IT solutions field, providing a variety of services and capabilities. Meanwhile, blockchain-based solutions emerge as advantageous as they permit data immutability, transaction efficiency, transparency, and trust due to decentralization and the use of smart contracts. In this paper, we are consolidating these two technologies into a secure framework for access control in cloud environments. A cross-chain-based methodology is used, in which transactions and interactions between multiple blockchains and cloud computing systems are supported, such that no separate third-party certificates are required in the authentication and authorization processes. This paper presents a cross-chain-based framework that integrates a full, fine-grained, attribute-based access control (ABAC) mechanism that evaluates cloud user access transaction attributes. It grants or denies access to the cloud resources by inferring knowledge about the attributes received using semantic reasoning based on ontologies, resulting in a more reliable method for information sharing over the cloud network. Our implemented cross-chain framework on the Cosmos ecosystem with the integrated semantic ABAC scored an overall access control (AC) processing time of 9.72 ms.
引用
收藏
页数:19
相关论文
共 23 条
[2]  
Buchman E, 2019, Arxiv, DOI arXiv:1807.04938
[3]   BSAF: A blockchain-based secure access framework with privacy protection for cloud-device service collaborations [J].
Duan, Li ;
Xu, Wenyao ;
Ni, Wei ;
Wang, Wei .
JOURNAL OF SYSTEMS ARCHITECTURE, 2023, 140
[4]  
Dumitrescu AT, 2024, Arxiv, DOI arXiv:2401.05239
[5]   A survey on access control mechanisms for cloud computing [J].
El Sibai, Rayane ;
Gemayel, Nader ;
Abdo, Jacques Bou ;
Demerjian, Jacques .
TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2020, 31 (02)
[6]   Secure and Lightweight Blockchain-Enabled Access Control for Fog-Assisted IoT Cloud Based Electronic Medical Records Sharing [J].
Fugkeaw, Somchart ;
Wirz, Leon ;
Hak, Lyhour .
IEEE ACCESS, 2023, 11 :62998-63012
[7]  
Gajmal Y., 2024, J. Auton. Intell, V7, P3, DOI [10.32629/jai.v7i3.1332, DOI 10.32629/JAI.V7I3.1332]
[8]  
Gan WS, 2023, Arxiv, DOI arXiv:2304.06032
[9]  
Goes C, 2020, Arxiv, DOI [arXiv:2006.15918, 10.48550/arXiv.2006.15918, DOI 10.48550/ARXIV.2006.15918]
[10]   Fine-grained access control policy in blockchain-enabled edge computing [J].
He, Guangxuan ;
Li, Chunlin ;
Shu, Yong ;
Luo, Youlong .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2024, 221