首页> 外文会议>IEEE International Conference on Computer and Communications >Dynamic Access Control Model Based on FAHP in Cloud Environment
【24h】

Dynamic Access Control Model Based on FAHP in Cloud Environment

机译:云环境下基于FAHP的动态访问控制模型

获取原文

摘要

The characteristic of the cloud computing, resources sharing, determines that user behavior trustworthiness is crucial to the security of cloud resources. However, the traditional access control model (Role Based Access Control, RBAC) is only based on user identity trust and does not consider whether the user behavior is trusted or not, and the authorization mechanism is static, lacking of flexibility. Moreover, the lack of monitoring of user behavior makes it unable to timely detect and prevent the illegal operation of users. In view of the above several problems, this paper improves the traditional RBAC model, introduces the concepts of user trust evaluation and security level to the RBAC, uses the fuzzy analytic hierarchy process (FAHP) to calculate the user trust value, supervise and control the process when the user executes permissions, so as to achieve the purpose of dynamic access control based on user identity trust and behavior trust. The results of validation analysis of the improved model show that the improved RBAC model overcomes the shortcomings of the traditional RBAC model and can better protect the security of cloud resources, with small control granularity and good flexibility.
机译:云计算的特性(资源共享)决定了用户行为的可信赖性对于云资源的安全性至关重要。但是,传统的访问控制模型(基于角色的访问控制,RBAC)仅基于用户身份信任,不考虑用户行为是否受信任,并且授权机制是静态的,缺乏灵活性。此外,由于缺乏对用户行为的监控,因此无法及时发现并防止用户的非法操作。针对以上几个问题,本文对传统的RBAC模型进行了改进,将用户信任评估和安全级别的概念引入了RBAC中,使用模糊层次分析法(FAHP)来计算用户信任值,并对用户信任度进行监督和控制。在用户执行权限时进行处理,从而达到基于用户身份信任和行为信任的动态访问控制的目的。改进模型的验证分析结果表明,改进后的RBAC模型克服了传统RBAC模型的缺点,可以以较小的控制粒度和良好的灵活性更好地保护云资源的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号