A Usage Control Based Architecture for Cloud Environments

被引:13
|
作者
Tavizi, Tina [1 ]
Shajari, Mehdi [1 ]
Dodangeh, Peyman [2 ]
机构
[1] Amirkabir Univ Technol, Dept Comp Engn & IT, Tehran, Iran
[2] Sharif Univ Technol, Dept Comp Engn, Tehran, Iran
关键词
cloud computing; access control; usage control; UCON; Enforcement architecture; authorization; obligation; condition; XACML; ACCESS-CONTROL;
D O I
10.1109/IPDPSW.2012.193
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Today modern computing systems leverage distributed models such as cloud, grid, etc. One of the obstacles of wide spreading these distributed computing models is security challenges which includes access control problem. These computing models because of providing features like on-demand self-service, ubiquitous network access, rapid elasticity and scalability, having dynamic infrastructure and offering measured service, need a powerful and continuous control over access and usage session. Usage control (UCON) model is emerged to cover some drawbacks of traditional access control models with features like attribute mutability and continuity of control. Several recent works have been done to apply UCON for distributed computing environments, but none of them could cover all aspects of the model. In this paper we propose an architecture for applying UCON model in cloud environments. Moreover we present a new architecture for obligation handling. We also introduce a new approach to handle attribute mutability. For implementation we have extended XACML syntax and semantics as policy language and leveraged Sun's OASIS XACML implementation.
引用
下载
收藏
页码:1534 / 1539
页数:6
相关论文
共 50 条
  • [41] A cloud service control approach for distributed and adaptive equipment control in cloud environments
    Adamson, Goran
    Holm, Magnus
    Moore, Philip
    Wang, Lihui
    RESEARCH AND INNOVATION IN MANUFACTURING: KEY ENABLING TECHNOLOGIES FOR THE FACTORIES OF THE FUTURE - PROCEEDINGS OF THE 48TH CIRP CONFERENCE ON MANUFACTURING SYSTEMS, 2016, 41 : 644 - 649
  • [42] Distributed Usage Control Architecture for Business Coalitions
    Stihler, Maicon
    Santin, Altair Olivo
    Calsavara, Alcides
    Marcon, Arlindo L., Jr.
    2009 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-8, 2009, : 708 - 713
  • [43] Simulators Usage Analysis to Estimate Power Consumption in Cloud Computing Environments
    Meyer, Vinicius
    Krindges, Rafael
    Ferreto, Tiago C.
    De Rose, Cesar A. F.
    Hessel, Fabiano
    2018 SYMPOSIUM ON HIGH PERFORMANCE COMPUTING SYSTEMS (WSCAD 2018), 2018, : 70 - 76
  • [44] MPC-based control architecture of an autonomous wheelchair for indoor environments
    Bardaro, Gianluca
    Bascetta, Luca
    Ceravolo, Eugenio
    Farina, Marcello
    Gabellone, Mauro
    Matteucci, Matteo
    CONTROL ENGINEERING PRACTICE, 2018, 78 : 160 - 174
  • [45] Cloud Architecture Learning based on Social Architecture
    Liu, Xiaoli
    2011 6TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCES AND CONVERGENCE INFORMATION TECHNOLOGY (ICCIT), 2012, : 418 - 421
  • [46] A decentralized prediction-based workflow load balancing architecture for cloud/fog/IoT environments
    Shamsa, Zari
    Rezaee, Ali
    Adabi, Sahar
    Rahmani, Amir Masoud
    COMPUTING, 2024, 106 (01) : 201 - 239
  • [47] Highly Scalable Microservice-based Enterprise Architecture for Smart Ecosystems in Hybrid Cloud Environments
    Muessig, Daniel
    Stricker, Robert
    Laessig, Joerg
    Heider, Jens
    ICEIS: PROCEEDINGS OF THE 19TH INTERNATIONAL CONFERENCE ON ENTERPRISE INFORMATION SYSTEMS - VOL 3, 2017, : 454 - 459
  • [48] A decentralized prediction-based workflow load balancing architecture for cloud/fog/IoT environments
    Zari Shamsa
    Ali Rezaee
    Sahar Adabi
    Amir Masoud Rahmani
    Computing, 2024, 106 : 201 - 239
  • [49] A cloud-based architecture for emergency management and first responders localization in smart city environments
    Palmieri, Francesco
    Ficco, Massimo
    Pardi, Silvio
    Castiglione, Aniello
    COMPUTERS & ELECTRICAL ENGINEERING, 2016, 56 : 810 - 830
  • [50] An Enhanced Architecture for Big Data Task Scheduling in Cloud Environments
    Diallo, Laouratou
    Hashim, Aisha H. A.
    Olanrewaju, Rashidah F.
    ADVANCED SCIENCE LETTERS, 2016, 22 (10) : 2963 - 2967