A Multilevel Security Model for Private Cloud

被引:0
|
作者
XUE Haiwei [1 ]
ZHANG Yunliang [1 ]
GUO Zhien [1 ]
DAI Yiqi [1 ]
机构
[1] Department of Computer Science, Tsinghua University
关键词
Cloud computing; Private cloud; Security model; BLP model; Access control;
D O I
暂无
中图分类号
TP309 [安全保密];
学科分类号
081201 ; 0839 ; 1402 ;
摘要
Towards data leak caused by misoperation and malicious inside users, we proposed a multilevel security model based on Bell-lapadula(BLP) model. In our model each subject was assigned with a security level. Subjects can read objects only when their security levels are not less than objects’ security levels, and subjects can write objects only when their security levels are not more than objects’ security levels. The current security level in our model can be dynamically changed when users read sensitive data, since users can access data with different security levels in private cloud. Our model use mandatory access control method to control user’s operation and can guarantee that users can not leak sensitive data after they read them. Our model can be proved secure by mathematical method, and we implemented a prototype system of our model and the experimental results show that it is secure.
引用
收藏
页码:232 / 235
页数:4
相关论文
共 50 条
  • [41] Considering an Elastic Scaling Model for Cloud Security
    MacDermott, Aine
    Shi, Qi
    Merabti, Madjid
    Kifiyat, Kashif
    2013 8TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2013, : 150 - 155
  • [42] A Security Threats Measurement Model for Reducing Cloud Computing Security Risk
    Lai, Sen-Tarng
    Leu, Fang-Yie
    2015 9TH INTERNATIONAL CONFERENCE ON INNOVATIVE MOBILE AND INTERNET SERVICES IN UBIQUITOUS COMPUTING IMIS 2015, 2015, : 414 - 419
  • [43] Cloud Security Service for Identifying Unauthorized User Behaviour
    David, D. Stalin
    Anam, Mamoona
    Kaliappan, Chandraprabha
    Selvi, S. Arun Mozhi
    Sharma, Dilip Kumar
    Dadheech, Pankaj
    Sengan, Sudhakar
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 70 (02): : 2581 - 2600
  • [44] Research on Key Technology of Network Security Situation Awareness of Private Cloud in Enterprises
    Liu Qing
    Zhu Boyu
    Wan Jinhua
    Li Qinqian
    2018 IEEE 3RD INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND BIG DATA ANALYSIS (ICCCBDA), 2018, : 462 - 466
  • [45] The Difference of Awareness between Public Institutions and Private Enterprises for Cloud Computing Security
    Oh, Junseok
    Yoon, Young Bae
    Suh, Jong Ryeol
    Lee, Bong Gyou
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2012, 6 (03): : 1 - 9
  • [46] An Alleviated Model for Private Cloud Deployment Using VMware
    Sharma, Kartik
    2017 IEEE INTERNATIONAL CONFERENCE ON INFORMATION, COMMUNICATION, INSTRUMENTATION AND CONTROL (ICICIC), 2017,
  • [47] A Cloud Based System to Sense Security Vulnerabilities of Web Application in Open-Source Private Cloud IAAS
    Kankhare, Deepak Dattatray
    Manjrekar, A. A.
    2016 INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2016, : 252 - 255
  • [48] Security and Risk Assessment in the Cloud
    Madria, Sanjay K.
    COMPUTER, 2016, 49 (09) : 110 - 113
  • [49] Security Concerns in Cloud Computing
    Kaur, Puneet Jai
    Kaushal, Sakshi
    HIGH PERFORMANCE ARCHITECTURE AND GRID COMPUTING, 2011, 169 : 103 - 112
  • [50] Data Security Frameworks In Cloud
    Devi, T.
    Ganesan, R.
    2014 INTERNATIONAL CONFERENCE ON SCIENCE ENGINEERING AND MANAGEMENT RESEARCH (ICSEMR), 2014,