首页> 外文会议>International Conference on Information Networking >Unified Cloud Access Control Model for Cloud Storage Broker
【24h】

Unified Cloud Access Control Model for Cloud Storage Broker

机译:云存储代理的统一云访问控制模型

获取原文
获取外文期刊封面目录资料

摘要

Cloud Storage Broker (CSB) provides value-added cloud storage service for enterprise usage by leveraging multi-cloud storage architecture. However, it raises several challenges for managing resources and its access control in multiple Cloud Service Providers (CSPs) for authorized CSB stakeholders. In this paper we propose unified cloud access control model that provides the abstraction of CSP's services for centralized and automated cloud resource and access control management in multiple CSPs. Our proposal offers role-based access control for CSB stakeholders to access cloud resources by assigning necessary privileges and access control list for cloud resources and CSB stakeholders, respectively, following privilege separation concept and least privilege principle. We implement our unified model in a CSB system called CloudRAID for Business (CfB) with the evaluation result shows it provides system-and-cloud level security service for cfB and centralized resource and access control management in multiple CSPs.
机译:Cloud Storage Broker(CSB)通过利用多云存储架构为企业使用提供增值的云存储服务。但是,这给授权的CSB利益相关者在多个Cloud Service Providers(CSP)中管理资源及其访问控制提出了一些挑战。在本文中,我们提出了统一的云访问控制模型,该模型为集中和自动化的云资源以及多个CSP中的访问控制管理提供了CSP服务的抽象。我们的提议通过按照特权分离概念和最小特权原则分别为云资源和CSB利益相关者分配必要的特权和访问控制列表,为CSB利益相关者提供基于角色的访问控制,以访问云资源。我们在名为CloudRAID for Business(CfB)的CSB系统中实现了统一模型,评估结果表明,该模型为cfB提供了系统和云级的安全服务,并在多个CSP中提供了集中式资源和访问控制管理。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号