Context-aware Security Models for PaaS-enabled Access Control

被引:5
|
作者
Veloudis, Simeon [1 ]
Verginadis, Yiannis [2 ]
Patiniotakis, Ioannis [2 ]
Paraskakis, Iraklis [1 ]
Mentzas, Gregoris [2 ]
机构
[1] Univ Sheffield, Int Fac, SEERC, City Coll, 24Prox Koromila St, Thessaloniki 54622, Greece
[2] Natl Tech Univ Athens, Inst Commun & Comp Syst, Athens, Greece
关键词
Context-aware Security; Ontologies; Access Control; Data Privacy; Security by Design;
D O I
10.5220/0005918602020212
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Enterprises are embracing cloud computing in order to reduce costs and increase agility in their everyday business operations. Nevertheless, due mainly to confidentiality, privacy and integrity concerns, many are still reluctant to migrate their sensitive data to the cloud. In this paper, firstly, we outline the construction of a suitable Context-aware Security Model, for enhancing security in cloud applications. Secondly, we outline the construction of an extensible and declarative formalism for representing policy-related knowledge, one which disentangles the definition of a policy from the code employed for enforcing it. Both of them will be employed for supporting innovative PaaS-enabled access control mechanisms.
引用
收藏
页码:202 / 212
页数:11
相关论文
共 50 条
  • [1] Context-Aware Policy Enforcement for PaaS-Enabled Access Control
    Verginadis, Yiannis
    Patiniotakis, Ioannis
    Gouvas, Panagiotis
    Mantzouratos, Spyros
    Veloudis, Simeon
    Schork, Sebastian Thomas
    Seitzluwig, Ludwig
    Paraskakis, Iraklis
    Mentzas, Gregoris
    [J]. IEEE TRANSACTIONS ON CLOUD COMPUTING, 2022, 10 (01) : 276 - 291
  • [2] Data Distribution and Encryption Modelling for PaaS-enabled Cloud Security
    Verginadis, Yiannis
    Patiniotakis, Ioannis
    Mentzas, Gregoris
    Veloudis, Simeon
    Paraskakis, Iraklis
    [J]. 2016 8TH IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGY AND SCIENCE (CLOUDCOM 2016), 2016, : 497 - 502
  • [3] A Context-Aware Mandatory Access Control Model for Multilevel Security Environments
    Jafarian, Jafar Haadi
    Amini, Morteza
    Jalili, Rasool
    [J]. COMPUTER SAFETY, RELIABILITY, AND SECURITY, PROCEEDINGS, 2008, 5219 : 401 - 414
  • [4] Context-aware provisional access control
    Masoumzadeh, Amir Reza
    Amini, Morteza
    Jalili, Rasool
    [J]. INFORMATION SYSTEMS SECURITY, PROCEEDINGS, 2006, 4332 : 132 - +
  • [5] Dynamic deployment of context-aware access control policies for constrained security devices
    Preda, Stere
    Cuppens, Frederic
    Cuppens-Boulahia, Nora
    Garcia-Alfaro, Joaquin
    Toutain, Laurent
    [J]. JOURNAL OF SYSTEMS AND SOFTWARE, 2011, 84 (07) : 1144 - 1159
  • [6] Enhancing Kerberos Security using Public Key and Context-Aware Access Control
    Gunjal, Gauri
    Pathan, S. K.
    [J]. INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2014, 14 (06): : 78 - 86
  • [7] The Application of the Context-Aware Access Control Model
    Zhang, Chao
    Jin, Zhengping
    [J]. PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON MECHATRONICS, MATERIALS, CHEMISTRY AND COMPUTER ENGINEERING 2015 (ICMMCCE 2015), 2015, 39 : 2670 - 2674
  • [8] Context-Aware Risk Attribute Access Control
    Li, Binyong
    Yang, Fan
    Zhang, Shaowei
    [J]. MATHEMATICS, 2024, 12 (16)
  • [9] Context-aware access control - Making access control decisions based on context information
    Lachmund, Sven
    Walter, Thomas
    Bussard, Laurent
    Gomez, Laurent
    Olk, Eddy
    [J]. 2006 Third Annual International Conference on Mobile and Ubiquitous Systems: Networking & Services, 2006, : 484 - 491
  • [10] Context-aware access control - Making access control decisions based on context information
    Lachmund, Sven
    Walter, Thomas
    Bussard, Laurent
    Gomez, Laurent
    Olk, Eddy
    [J]. 2006 3RD ANNUAL INTERNATIONAL CONFERENCE ON MOBILE AND UBIQUITOUS SYSTEMS - WORKSHOPS, 2006, : 470 - +