An Access Control Model Based on System Security Risk for Dynamic Sensitive Data Storage in the Cloud

被引:2
|
作者
Alharbe, Nawaf [1 ]
Aljohani, Abeer [1 ]
Rakrouki, Mohamed Ali [2 ,3 ,4 ]
Khayyat, Mashael [5 ]
机构
[1] Taibah Univ, Appl Coll, Medina 42353, Saudi Arabia
[2] Taibah Univ, Coll Comp Sci & Engn, Medina 42353, Saudi Arabia
[3] Univ Tunis, Ecole Super Sci Econ & Commerciales Tunis, Montfleury 1089, Tunisia
[4] Univ Tunis, Business Analyt & Decis Making Lab BADEM, Tunis Business Sch, Bir El Kassaa 2059, Tunisia
[5] Univ Jeddah, Coll Comp Sci & Engn, Dept Informat Syst & Technol, Jeddah 23445, Saudi Arabia
来源
APPLIED SCIENCES-BASEL | 2023年 / 13卷 / 05期
关键词
computer security; cloud computing; cloud storage; secure medical data storage;
D O I
10.3390/app13053187
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
In cloud computing, dynamic storage of data generated by users, applications, tasks, workflows, etc. requires frequent access operations, so traditional encryption cannot be applied in this case. Considering the vulnerability of dynamic data, its protection needs to consider an efficient and dynamic security protection scheme. In data-oriented access control, the traditional approach is generally static policy matching, which cannot deal with emergencies and has the problem of privileged users. To solve this problem, this paper proposes a data-oriented risk-based access control model, which adds risk assessment to the traditional attribute-based access control and aims at the source of risk from three aspects: subject attribute, resource attribute, and environment attribute. A set of risk assessment indexes is proposed, and the calculation method of risk assessment is quantitatively analyzed by combining fuzzy consistency AHP analysis method, and finally, the realization of XACML is given. The validity of the proposed model is analyzed, and the carried out experimental analysis verifies its effectiveness. The proposed model benefits cloud data storage applications that require dynamic data storage, for example, medical/patient data storage.
引用
收藏
页数:17
相关论文
共 50 条
  • [41] Efficient Data Security Method to Control Data in Cloud Storage System using Cryptographic Techniques
    Prakash, G. L.
    Prateek, Manish
    Singh, Inder
    [J]. 2014 RECENT ADVANCES AND INNOVATIONS IN ENGINEERING (ICRAIE), 2014,
  • [42] Intelligent Temporal Role Based Access Control for Data Storage in Cloud Database
    Muthurajkumar, S.
    Vijayalakshmi, M.
    Kannan, A.
    [J]. 2014 SIXTH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING, 2014, : 184 - 188
  • [43] Enforcing Role-Based Access Control for Secure Data Storage in the Cloud
    Zhou, Lan
    Varadharajan, Vijay
    Hitchens, Michael
    [J]. COMPUTER JOURNAL, 2011, 54 (10): : 1675 - 1687
  • [44] Security framework for cloud data storage based on multi-agent system
    [J]. Zhou, Hui, 1600, Transport and Telecommunication Institute, Lomonosova street 1, Riga, LV-1019, Latvia (18):
  • [45] An optimization algorithm of data access storage in cloud computing based on distributed system
    Ye, Lunqiang
    [J]. BASIC & CLINICAL PHARMACOLOGY & TOXICOLOGY, 2019, 125 : 27 - 28
  • [46] Research on Efficient Dynamic Cloud Storage Ciphertext Access Control
    Song, Ningning
    Mei, Zhen
    Yao, Lin
    [J]. TRUSTWORTHY COMPUTING AND SERVICES, 2014, 426 : 297 - 303
  • [47] A Dynamic Cryptographic Access Control Scheme in Cloud Storage Services
    Zhang, Rui
    Chen, PeiShuai
    [J]. 2012 8TH INTERNATIONAL CONFERENCE ON COMPUTING AND NETWORKING TECHNOLOGY (ICCNT, INC, ICCIS AND ICMIC), 2012, : 50 - 55
  • [48] Quantum cryptography based cloud security model (QC-CSM) for ensuring cloud data security in storage and accessing
    K. Sundar
    S. Sasikumar
    C. Jayakumar
    D. Nagarajan
    S. karthick
    [J]. Multimedia Tools and Applications, 2023, 82 : 42817 - 42832
  • [49] Quantum cryptography based cloud security model (QC-CSM) for ensuring cloud data security in storage and accessing
    Sundar, K.
    Sasikumar, S.
    Jayakumar, C.
    Nagarajan, D.
    Karthick, S.
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 82 (27) : 42817 - 42832
  • [50] An Access Control Model for Cloud Storage Using Attribute-Based Encryption
    Sukhodolskiy, Ilya A.
    Zapechnikov, Sergey V.
    [J]. PROCEEDINGS OF THE 2017 IEEE RUSSIA SECTION YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING CONFERENCE (2017 ELCONRUS), 2017, : 578 - 581