Decentralized Access Control for Secure Microservices Cooperation with Blockchain

被引:1
|
作者
Xi, Ning [1 ]
Li, Yajie [1 ]
Liu, Jin [1 ]
机构
[1] Xidian Univ, Sch Cyber Engn, Xian, Peoples R China
来源
基金
国家重点研发计划; 中国国家自然科学基金;
关键词
Microservices; Service cooperation; Access control; Permission management; Blockchain; INTERNET; SCHEME; THINGS;
D O I
10.1007/978-3-031-23020-2_34
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The wide-spread cloud-native technologies have accelerated the flourish of large-scale and high-concurrency microservices today. However, due to the flexibility and complexity of cooperation procedure, it is difficult to realize high-efficient security management on these mircoservices. Traditional centralized access control has flaws of relying on a centralized third-party manager and single-point failure while decentralized mechanisms are suffering from the inconsistency of policies defined by different participants. This paper firstly proposes a practical decentralized access control framework and scheme for secure microservices cooperation based on the blockchain. In our scheme, we realize the separate management on the individualized access policy by vendors instead of a central authority. Secondly, we build a permission blockchain to maintain the consistency and integrity of the policies. Through the analysis and experiments, it shows that our solution gracefully eliminates policy differences while the update cost achieves nearly constant.
引用
收藏
页码:598 / 614
页数:17
相关论文
共 50 条
  • [21] Secure Decentralized Identity Management using Blockchain
    Srivastava, Sandeep
    Agarwal, Deepshikha
    Chaurasia, Brijesh
    2023 IEEE 22ND INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, BIGDATASE, CSE, EUC, ISCI 2023, 2024, : 1355 - 1360
  • [22] Decentralized Access Control using Blockchain Technology for Application in Smart Farming
    Noor, Normaizeerah Mohd
    Razali, Noor Afiza Mat
    Malizan, Nur Atiqah
    Wook, Muslihah
    Hasbullah, Nor Asiakin
    Ishak, Khairul Khalil
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (09) : 788 - 802
  • [23] Decentralized, BlockChain Based Access Control Framework for the Heterogeneous Internet of Things
    Dukkipati, Chethana
    Zhang, Yunpeng
    Cheng, Liang Chieh
    PROCEEDINGS OF THE THIRD ACM WORKSHOP ON ATTRIBUTE-BASED ACCESS CONTROL (ABAC'18), 2018, : 61 - 69
  • [24] Anonymous Authentication for Secure Data Stored on Cloud with Decentralized Access Control
    Mokle, Shraddha
    Shaikh, Nuzhat F.
    PROCEEDINGS OF THE 2016 IEEE INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, SIGNAL PROCESSING AND NETWORKING (WISPNET), 2016, : 216 - 220
  • [25] Efficient decentralized access control for secure data sharing in cloud computing
    Liu, Tonglai
    Wu, Jigang
    Li, Jiaxing
    Li, Jingyi
    Li, Yidong
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2023, 35 (17):
  • [26] Secure Decentralized Access Control Policy for Data Sharing in Smart Grid
    Ye, Yadi
    Zhang, Leyou
    You, Wenting
    Mu, Yi
    IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (IEEE INFOCOM WKSHPS 2021), 2021,
  • [27] CEBAC: A Decentralized Cooperation Enforcement Based Access Control Framework in MANETs
    Saremi, Fatemeh
    Mashayekhi, Hoda
    Movaghar, Ali
    Jalili, Rasool
    ADVANCES IN COMPUTER SCIENCE AND ENGINEERING, 2008, 6 : 427 - 434
  • [28] Secure and Fair Data Trading Based on Blockchain With Enhanced Access Control
    Feng, Zhongda
    Wu, Qianhong
    Liu, Yizhong
    Qin, Bo
    Zhai, Mingzhe
    Susillo, Willy
    IEEE INTERNET OF THINGS JOURNAL, 2025, 12 (06): : 7277 - 7292
  • [29] Blockchain-Aided Secure Access Control for UAV Computing Networks
    Wang, Jingjing
    Jiao, Zihan
    Chen, Jianrui
    Hou, Xiangwang
    Yang, Tingting
    Lan, Dapeng
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2024, 11 (06): : 5267 - 5279
  • [30] Blockchain-Based Decentralized Lightweight Control Access Scheme for Smart Grids
    Naseer, Oumair
    Ullah, Saif
    Anjum, Luqman
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2021, 46 (09) : 8233 - 8243