Decentralized Access Control for Secure Microservices Cooperation with Blockchain

被引:1
|
作者
Xi, Ning [1 ]
Li, Yajie [1 ]
Liu, Jin [1 ]
机构
[1] Xidian Univ, Sch Cyber Engn, Xian, Peoples R China
来源
基金
国家重点研发计划; 中国国家自然科学基金;
关键词
Microservices; Service cooperation; Access control; Permission management; Blockchain; INTERNET; SCHEME; THINGS;
D O I
10.1007/978-3-031-23020-2_34
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The wide-spread cloud-native technologies have accelerated the flourish of large-scale and high-concurrency microservices today. However, due to the flexibility and complexity of cooperation procedure, it is difficult to realize high-efficient security management on these mircoservices. Traditional centralized access control has flaws of relying on a centralized third-party manager and single-point failure while decentralized mechanisms are suffering from the inconsistency of policies defined by different participants. This paper firstly proposes a practical decentralized access control framework and scheme for secure microservices cooperation based on the blockchain. In our scheme, we realize the separate management on the individualized access policy by vendors instead of a central authority. Secondly, we build a permission blockchain to maintain the consistency and integrity of the policies. Through the analysis and experiments, it shows that our solution gracefully eliminates policy differences while the update cost achieves nearly constant.
引用
收藏
页码:598 / 614
页数:17
相关论文
共 50 条
  • [1] Decentralized access control for secure microservices cooperation with blockchain
    Xi, Ning
    Liu, Jin
    Li, Yajie
    Qin, Bojun
    ISA TRANSACTIONS, 2023, 141 : 44 - 51
  • [2] BlendSM-DDM: BLockchain-ENabled Secure Microservices for Decentralized Data Marketplaces
    Xu, Ronghua
    Ramachandran, Gowri Sankar
    Chen, Yu
    Krishnamachari, Bhaskar
    2019 5TH IEEE INTERNATIONAL SMART CITIES CONFERENCE (IEEE ISC2 2019), 2019, : 14 - 17
  • [3] A Secure and Efficient Decentralized Access Control Scheme Based on Blockchain for Vehicular Social Networks
    Zhang, Leyou
    Zhang, Ye
    Wu, Qing
    Mu, Yi
    Rezaeibagha, Fatemeh
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (18) : 17938 - 17952
  • [4] Decentralized Access Control Encryption in Public Blockchain
    Yao, Zhongyuan
    Pan, Heng
    Si, Xueming
    Zhu, Weihua
    BLOCKCHAIN AND TRUSTWORTHY SYSTEMS, BLOCKSYS 2019, 2020, 1156 : 240 - 257
  • [5] Hybrid Blockchain-Enabled Secure Microservices Fabric for Decentralized Multi-Domain Avionics Systems
    Xu, Ronghua
    Chen, Yu
    Blasch, Erik
    Aved, Alexander
    Chen, Genshe
    Shen, Dan
    SENSORS AND SYSTEMS FOR SPACE APPLICATIONS XIII, 2020, 11422
  • [6] Blockchain Technology and Artificial Intelligence Based Decentralized Access Control Model to Enable Secure Interoperability for Healthcare
    Rana, Sumit Kumar
    Rana, Sanjeev Kumar
    Nisar, Kashif
    Ibrahim, Ag Asri Ag
    Rana, Arun Kumar
    Goyal, Nitin
    Chawla, Paras
    SUSTAINABILITY, 2022, 14 (15)
  • [7] MSChain: Blockchain based Decentralized Certificate Transparency for Microservices
    Dilshan, Dulaj
    Piumika, Supimi
    Rupasinghe, Chameera
    Perera, Indika
    Siriwardena, Prabath
    MERCON 2020: 6TH INTERNATIONAL MULTIDISCIPLINARY MORATUWA ENGINEERING RESEARCH CONFERENCE (MERCON), 2020, : 638 - 643
  • [8] Blockchain-Based, Decentralized Access Control for IPFS
    Steichen, Mathis
    Fiz, Beltran
    Norvill, Robert
    Shbair, Wazen
    State, Radu
    IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, : 1499 - 1506
  • [9] Blockchain aware decentralized identity management and access control system
    Agarkar, Aarti Amod
    Karyakarte, Mandar
    Chavhan, Gajanan
    Patil, Milind
    Talware, Rajendra
    Kulkarni, Lalit
    Measurement: Sensors, 2024, 31
  • [10] Blockchain Radio Access Network (B-RAN): Towards Decentralized Secure Radio Access Paradigm
    Ling, Xintong
    Wang, Jiaheng
    Bouchoucha, Taha
    Levy, Bernard C.
    Ding, Zhi
    IEEE ACCESS, 2019, 7 : 9714 - 9723