首页> 外文会议>Annual Conference on Privacy, Security and Trust >A multi-tenant RBAC model for collaborative cloud services
【24h】

A multi-tenant RBAC model for collaborative cloud services

机译:用于协作云服务的多租户RBAC模型

获取原文
获取外文期刊封面目录资料

摘要

Most cloud services are built with multi-tenancy which enables data and configuration segregation upon shared infrastructures. In this setting, a tenant temporarily uses a piece of virtually dedicated software, platform, or infrastructure. To fully benefit from the cloud, tenants are seeking to build controlled and secure collaboration with each other. In this paper, we propose a Multi-Tenant Role-Based Access Control (MT-RBAC) model family which aims to provide fine-grained authorization in collaborative cloud environments by building trust relations among tenants. With an established trust relation in MT-RBAC, the trustee can precisely authorize cross-tenant accesses to the truster's resources consistent with constraints over the trust relation and other components designated by the truster. The users in the trustee may restrictively inherit permissions from the truster so that multi-tenant collaboration is securely enabled. Using SUN's XACML library, we prototype MT-RBAC models on a novel Authorization as a Service (AaaS) platform with the Joyent commercial cloud system. The performance and scalability metrics are evaluated with respect to an open source cloud storage system. The results show that our prototype incurs only 0.016 second authorization delay for end users on average and is scalable in cloud environments.
机译:大多数云服务都是通过多租户构建的,从而可以在共享基础架构上实现数据和配置隔离。在这种情况下,租户临时使用虚拟专用的软件,平台或基础架构。为了充分利用云,租户正在寻求彼此之间建立受控且安全的协作。在本文中,我们提出了一个多租户基于角色的访问控制(MT-RBAC)模型系列,旨在通过建立租户之间的信任关系在协作云环境中提供细粒度的授权。通过在MT-RBAC中建立信任关系,受托人可以准确地授权跨租户访问信任者的资源,这与对信任关系和信任者指定的其他组件的约束一致。受托者中的用户可以限制性地继承来自托拉斯的权限,以便安全地启用多租户协作。使用SUN的XACML库,我们在具有Joyent商业云系统的新型授权即服务(AaaS)平台上对MT-RBAC模型进行原型设计。针对开源云存储系统评估了性能和可伸缩性指标。结果表明,我们的原型平均仅对最终用户产生0.016秒的授权延迟,并且可以在云环境中进行扩展。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号