Access Control in Ultra-Large-Scale Systems Using a Data-Centric Middleware

被引:0
|
作者
Shokrollahi, Saeed [1 ]
Shams, Fereidoon [1 ]
Esmaeili, Javad [1 ]
机构
[1] Shahid Beheshti Univ, Dept Comp Engn, Tehran, Iran
关键词
Access Control; Colored-Petri-Nets Model; Middleware; Data-Distribution-Service Middleware; Ultra-Large-Scale Systems;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The primary characteristic of an Ultra-Large-Scale (ULS) system is ultra-large size on any related dimension. A ULS system is generally considered as a system-of-systems with heterogeneous nodes and autonomous domains. As the size of a system-of-systems grows, and interoperability demand between sub-systems is increased, achieving more scalable and dynamic access control system becomes an important issue. The Attribute-Based Access Control (ABAC) model is a proper candidate to be used in such an access control system. The correct deployment and enforcement of ABAC policies in a ULS system requires secure and scalable collaboration among different distributed authorization components. A large number of these authorization components should be able to join different domains dynamically and communicate with each other anonymously. Dynamic configuration and reconfiguration of authorization components makes authorization system more complex to manage and maintain in a ULS system. In this paper, an access control middleware is proposed to overcome the complexity of deployment and enforcement of ABAC policies in ULS systems. The proposed middleware is data-centric and consists of two layers. The lower layer is a Data-Distribution-Service (DDS) middleware used for loosely-coupled-communication among authorization components. The upper layer is used for secure configuration and reconfiguration of authorization components. An executable model of the proposed middleware is also represented by a Colored-Petri-Net (CPN) model. This executable model is used to analyze the behavior of the proposed middleware. (C) 2014 ISC. All rights reserved.
引用
收藏
页码:3 / 22
页数:20
相关论文
共 50 条
  • [1] Type-Based Access Control in Data-Centric Systems
    Caires, Luis
    Perez, Jorge A.
    Seco, Joao Costa
    Vieira, Hugo Torres
    Ferrao, Lucio
    [J]. PROGRAMMING LANGUAGES AND SYSTEMS, 2011, 6602 : 136 - +
  • [2] Usage of DDS Data-Centric Middleware for Remote Monitoring and Control Laboratories
    Garcia Valls, Marisol
    Basanta Val, Pablo
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2013, 9 (01) : 567 - 574
  • [3] A Novel Data-Centric Programming Model for Large-Scale Parallel Systems
    Talia, Domenico
    Trunfio, Paolo
    Marozzo, Fabrizio
    Belcastro, Loris
    Garcia-Blas, Javier
    del Rio, David
    Couvee, Philippe
    Goret, Gael
    Vincent, Lionel
    Fernandez-Pena, Alberto
    Martin de Blas, Daniel
    Nardi, Mirko
    Pizzuti, Teresa
    Spataru, Adrian
    Justyna, Marek
    [J]. EURO-PAR 2019: PARALLEL PROCESSING WORKSHOPS, 2020, 11997 : 452 - 463
  • [4] Evolutionary strategies for ultra-large-scale autonomic systems
    Amoretti, Michele
    [J]. INFORMATION SCIENCES, 2014, 274 : 1 - 16
  • [5] A Design Framework for Ultra-Large-Scale Autonomic Systems
    Amoretti, Michele
    [J]. APPLICATIONS OF EVOLUTIONARY COMPUTATION, PT I, 2011, 6624 : 12 - 21
  • [6] Accuracy control in ultra-large-scale electronic structure calculations
    Hoshi, T.
    [J]. JOURNAL OF PHYSICS-CONDENSED MATTER, 2007, 19 (36)
  • [7] Data-centric solutions for EIS access
    Ekberg, B
    [J]. INTECH, 1997, 44 (06) : 24 - 24
  • [8] On Accelerating Ultra-Large-Scale Mining
    Upadhyaya, Ganesha
    Rajan, Hridesh
    [J]. 2017 IEEE/ACM 39TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING: NEW IDEAS AND EMERGING TECHNOLOGIES RESULTS TRACK (ICSE-NIER), 2017, : 39 - 42
  • [9] An ultra-large-scale simulation framework
    Rao, DM
    Wilsey, PA
    [J]. JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2002, 62 (11) : 1670 - 1693
  • [10] Cognitive Data-Centric Systems
    Chang, Leland
    [J]. PROCEEDINGS OF THE GREAT LAKES SYMPOSIUM ON VLSI 2017 (GLSVLSI' 17), 2017, : 1 - 1