An Access Control Model Based on System Security Risk for Dynamic Sensitive Data Storage in the Cloud

被引:2
|
作者
Alharbe, Nawaf [1 ]
Aljohani, Abeer [1 ]
Rakrouki, Mohamed Ali [2 ,3 ,4 ]
Khayyat, Mashael [5 ]
机构
[1] Taibah Univ, Appl Coll, Medina 42353, Saudi Arabia
[2] Taibah Univ, Coll Comp Sci & Engn, Medina 42353, Saudi Arabia
[3] Univ Tunis, Ecole Super Sci Econ & Commerciales Tunis, Montfleury 1089, Tunisia
[4] Univ Tunis, Business Analyt & Decis Making Lab BADEM, Tunis Business Sch, Bir El Kassaa 2059, Tunisia
[5] Univ Jeddah, Coll Comp Sci & Engn, Dept Informat Syst & Technol, Jeddah 23445, Saudi Arabia
来源
APPLIED SCIENCES-BASEL | 2023年 / 13卷 / 05期
关键词
computer security; cloud computing; cloud storage; secure medical data storage;
D O I
10.3390/app13053187
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
In cloud computing, dynamic storage of data generated by users, applications, tasks, workflows, etc. requires frequent access operations, so traditional encryption cannot be applied in this case. Considering the vulnerability of dynamic data, its protection needs to consider an efficient and dynamic security protection scheme. In data-oriented access control, the traditional approach is generally static policy matching, which cannot deal with emergencies and has the problem of privileged users. To solve this problem, this paper proposes a data-oriented risk-based access control model, which adds risk assessment to the traditional attribute-based access control and aims at the source of risk from three aspects: subject attribute, resource attribute, and environment attribute. A set of risk assessment indexes is proposed, and the calculation method of risk assessment is quantitatively analyzed by combining fuzzy consistency AHP analysis method, and finally, the realization of XACML is given. The validity of the proposed model is analyzed, and the carried out experimental analysis verifies its effectiveness. The proposed model benefits cloud data storage applications that require dynamic data storage, for example, medical/patient data storage.
引用
收藏
页数:17
相关论文
共 50 条
  • [1] On the Security of Data Access Control for Multiauthority Cloud Storage Systems
    Wu, Xianglong
    Jiang, Rui
    Bhargava, Bharat
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2017, 10 (02) : 258 - 272
  • [2] Security Enhanced Cloud Storage Access Control System Based on Attribute Based Encryption
    Wang, Yong
    Sun, Qingyu
    Ma, Yuan
    Zhang, Ji
    Liu, Zhenyan
    Xue, Jingfeng
    [J]. 2018 INTERNATIONAL CONFERENCE ON BIG DATA AND ARTIFICIAL INTELLIGENCE (BDAI 2018), 2018, : 52 - 57
  • [3] A Robust Lightweight Data Security Model for Cloud Data Access and Storage
    Pajany, M.
    Zayaraz, G.
    [J]. INTERNATIONAL JOURNAL OF INFORMATION TECHNOLOGY AND WEB ENGINEERING, 2021, 16 (03) : 39 - 53
  • [4] The Cloud Data Security and Access Control Model in the Study
    Dong, Jing
    [J]. PROCEEDINGS OF THE 2016 7TH INTERNATIONAL CONFERENCE ON EDUCATION, MANAGEMENT, COMPUTER AND MEDICINE (EMCM 2016), 2017, 59 : 498 - 500
  • [5] Data Security Access Control Model of Cloud Computing
    Hu, Jun
    Chen, Lei
    Wang, Yunhua
    Chen, Shi-hong
    [J]. 2013 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCES AND APPLICATIONS (CSA), 2013, : 29 - 34
  • [6] A Dynamic Risk-based Access Control Model for Cloud Computing
    Chen, Aiguo
    Xing, Hanwen
    She, Kun
    Duan, Guiduo
    [J]. PROCEEDINGS OF 2016 IEEE INTERNATIONAL CONFERENCES ON BIG DATA AND CLOUD COMPUTING (BDCLOUD 2016) SOCIAL COMPUTING AND NETWORKING (SOCIALCOM 2016) SUSTAINABLE COMPUTING AND COMMUNICATIONS (SUSTAINCOM 2016) (BDCLOUD-SOCIALCOM-SUSTAINCOM 2016), 2016, : 579 - 584
  • [7] Revocable, dynamic and decentralized data access control in cloud storage
    Wang, Chong
    Jin, Hao
    Wei, Ronglei
    Zhou, Ke
    [J]. JOURNAL OF SUPERCOMPUTING, 2022, 78 (07): : 10063 - 10087
  • [8] Revocable, dynamic and decentralized data access control in cloud storage
    Chong Wang
    Hao Jin
    Ronglei Wei
    Ke Zhou
    [J]. The Journal of Supercomputing, 2022, 78 : 10063 - 10087
  • [9] Dynamic Risk Access Control Model for Cloud Platform
    Xie, Lixia
    Wei, Ruixin
    Ning, Yuguang
    Yang, Hongyu
    [J]. CLOUD COMPUTING AND SECURITY, PT III, 2018, 11065 : 12 - 22
  • [10] Blockchain based Secure Data Storage and Access Control System using Cloud
    Desai, Shubham
    Deshmukh, Onkar
    Shelke, Rahul
    Choudhary, Harish
    Sambhare, S. S.
    Yadav, Arjunsingh
    [J]. 2019 5TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION, CONTROL AND AUTOMATION (ICCUBEA), 2019,