A scalable multilabel-based access control as a service for the cloud (SMBACaaS)

被引:9
作者
Chinnasamy, P. [1 ]
Deepalakshmi, P. [1 ]
机构
[1] Kalasalingam Acad Res & Educ, Sch Comp, Dept Comp Sci & Engn, Krishnankoil 626126, India
关键词
CONTENT DELIVERY; CHALLENGES; STORAGE;
D O I
10.1002/ett.3458
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Cloud computing is a shared pool area of computing resources, which might be accessed from anywhere and simply by just about anyone. The cloud's invaluable features, such as data availability and reduced hardware costs, have corporations moving their records into it en masse. Still, concerns about data security remain unaddressed because all data are managed and stored by third-party service providers in a pay-as-you-go model. The fundamental problem faced by enterprizes is trustworthy access control, which is normally used to protect resources from unauthorized user accessibility. In this paper, we introduce a new solution to overcome access control problems by implementing a multilabel-based scalable access control as a service for the cloud. The proposed access control can be offered as a cloud service such as Software as a Service, Infrastructure as a Service, and Platform as a Service. These access services are provided by the trusted third party, named the access control provider. From our results and comparative studies with Google Drive, Amazon S3, and OpenStack Swift, our model using the multilabel feature has demonstrated that it is able to enhance consumer privacy, improve access policy protection, and reinforce data security.
引用
收藏
页数:18
相关论文
共 32 条
[11]   Extensible Access Control Markup Language (XACML) and Next Generation Access Control (NGAC) [J].
Ferraiolo, David ;
Chandramouli, Ramaswamy ;
Kuhn, Rick ;
Hu, Vincent .
ABAC'16: PROCEEDINGS OF THE 2016 ACM INTERNATIONAL WORKSHOP ON ATTRIBUTE BASED ACCESS CONTROL, 2016, :13-24
[12]   Access control as a service for the Cloud [J].
Fotiou, Nikos ;
Machas, Apostolis ;
Polyzos, George C. ;
Xylomenos, George .
JOURNAL OF INTERNET SERVICES AND APPLICATIONS, 2015, 6 (01)
[13]  
Goyal V., 2006, P 2006 INT C PRIVACY, P1
[14]  
Hardt D., 2012, OAUTH 2 0 AUTHORIZAT
[15]  
Jansen WA, 1998, REVISED MODEL ROLE B
[16]  
Jones M.B., OAUTH 2 0 AUTHORIZAT
[17]   A generic Kerberos-based access control system for the cloud [J].
Kaffel-Ben Ayed, Hella ;
Zaghdoudi, Bilel .
ANNALS OF TELECOMMUNICATIONS, 2016, 71 (9-10) :555-567
[18]  
Khamitkar S, 2015, P 19 IIER INT C 2015
[19]  
Leffler J, 2007, LABEL BASED ACCESS C
[20]   OpenID Connect as a security service in cloud-based medical imaging systems [J].
Ma, Weina ;
Sartipi, Kamran ;
Sharghigoorabi, Hassan ;
Koff, David ;
Bak, Peter .
JOURNAL OF MEDICAL IMAGING, 2016, 3 (02)