Access Control in Ultra-Large-Scale Systems Using a Data-Centric Middleware

被引:0
|
作者
Shokrollahi, Saeed [1 ]
Shams, Fereidoon [1 ]
Esmaeili, Javad [1 ]
机构
[1] Shahid Beheshti Univ, Dept Comp Engn, Tehran, Iran
关键词
Access Control; Colored-Petri-Nets Model; Middleware; Data-Distribution-Service Middleware; Ultra-Large-Scale Systems;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The primary characteristic of an Ultra-Large-Scale (ULS) system is ultra-large size on any related dimension. A ULS system is generally considered as a system-of-systems with heterogeneous nodes and autonomous domains. As the size of a system-of-systems grows, and interoperability demand between sub-systems is increased, achieving more scalable and dynamic access control system becomes an important issue. The Attribute-Based Access Control (ABAC) model is a proper candidate to be used in such an access control system. The correct deployment and enforcement of ABAC policies in a ULS system requires secure and scalable collaboration among different distributed authorization components. A large number of these authorization components should be able to join different domains dynamically and communicate with each other anonymously. Dynamic configuration and reconfiguration of authorization components makes authorization system more complex to manage and maintain in a ULS system. In this paper, an access control middleware is proposed to overcome the complexity of deployment and enforcement of ABAC policies in ULS systems. The proposed middleware is data-centric and consists of two layers. The lower layer is a Data-Distribution-Service (DDS) middleware used for loosely-coupled-communication among authorization components. The upper layer is used for secure configuration and reconfiguration of authorization components. An executable model of the proposed middleware is also represented by a Colored-Petri-Net (CPN) model. This executable model is used to analyze the behavior of the proposed middleware. (C) 2014 ISC. All rights reserved.
引用
收藏
页码:3 / 22
页数:20
相关论文
共 50 条
  • [21] Ultra-Large-Scale Silicon Optical Switches
    Qiao, Lei
    Tang, Weijie
    Chu, Tao
    [J]. 2016 IEEE 13TH INTERNATIONAL CONFERENCE ON GROUP IV PHOTONICS (GFP), 2016, : 1 - 2
  • [22] Transparent integration of autonomous vehicles simulation tools with a data-centric middleware
    Hoffmann, Jose Luis Conradi
    Horstmann, Leonardo Passig
    Frohlich, Antonio Augusto
    [J]. DESIGN AUTOMATION FOR EMBEDDED SYSTEMS, 2024, 28 (01) : 45 - 66
  • [23] A Data-Centric Approach for Analyzing Large-Scale Deep Learning Applications
    Vineet, S. Sai
    Joseph, Natasha Meena
    Korgaonkar, Kunal
    Paul, Arnab K.
    [J]. PROCEEDINGS OF THE 24TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING AND NETWORKING, ICDCN 2023, 2023, : 282 - 283
  • [24] A Method of Ultra-Large-Scale Matrix Inversion Using Block Recursion
    Wang, HouZhen
    Guo, Yan
    Zhang, HuanGuo
    [J]. INFORMATION, 2020, 11 (11) : 1 - 15
  • [25] Increasing the Adaptability of Manufacturing Systems by using Data-centric Communication
    Keddis, Nadine
    Burdalo, Jonathan
    Kainz, Gerd
    Zoitl, Alois
    [J]. 2014 IEEE EMERGING TECHNOLOGY AND FACTORY AUTOMATION (ETFA), 2014,
  • [26] SANE: Semantic-Aware Namespace in Ultra-Large-Scale File Systems
    Hua, Yu
    Jiang, Hong
    Zhu, Yifeng
    Feng, Dan
    Xu, Lei
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2014, 25 (05) : 1328 - 1338
  • [27] Transparent integration of autonomous vehicles simulation tools with a data-centric middleware
    José Luis Conradi Hoffmann
    Leonardo Passig Horstmann
    Antônio Augusto Fröhlich
    [J]. Design Automation for Embedded Systems, 2024, 28 : 45 - 66
  • [28] AGREE: exploiting energy harvesting to support data-centric access control in WSNs
    Bianchi, Giuseppe
    Capossele, Angelo T.
    Petrioli, Chiara
    Spenza, Dora
    [J]. AD HOC NETWORKS, 2013, 11 (08) : 2625 - 2636
  • [29] Large-vocabulary data-centric dialogues
    Attwater, DJ
    Whittaker, SJ
    [J]. BT TECHNOLOGY JOURNAL, 1999, 17 (01) : 149 - 159
  • [30] Data-Centric Analysis of Compound Threats to Critical Infrastructure Control Systems
    Bommareddy, Sahiti
    Gilby, Benjamin
    Khan, Maher
    Chiu, Imes
    Panteli, Mathaios
    De Lindt, John W. Van
    Wells, Linton, II
    Amir, Yair
    Babay, Amy
    [J]. 52ND ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOP VOLUME (DSN-W 2022), 2022, : 72 - 79