首页> 外文期刊>Communications, China >Research on multicloud access control policy integration framework
【24h】

Research on multicloud access control policy integration framework

机译:多云访问控制策略集成框架研究

获取原文
获取原文并翻译 | 示例
           

摘要

Multicloud access control is important for resource sharing and security interoperability across different clouds, and heterogeneity of access control policy is an important challenge for cloud mashups. XACML is widely used in distributed environment as a declaratively fine-grained, attribute-based access control policy language, but the policy integration of XACML lacks formal description and theory foundation. Multicloud Access Control Policy Integration Framework (MACPIF) is proposed in the paper, which consists of Attribute-based Policy Evaluation Model (ABPEM), Four-value Logic with Completeness (FLC) and Four-value Logic based Policy Integration Operators (FLPIOs). ABPEM evaluates access control policy and extends XACML decision to four-value. According to policy decision set and policy integration characteristics, we construct FLC and define FLPIOs including Intersection, Union, Difference, Implication and Equivalence. We prove that MACPIF can achieve policy monotonicity, functional completeness, canonical suitability and canonical completeness. Analysis results show that this framework can meet the requirements of policy integration in Multicloud.
机译:多云访问控制对于不同云之间的资源共享和安全互操作性至关重要,而访问控制策略的异构性则是云混搭的重要挑战。 XACML作为一种声明性的细粒度,基于属性的访问控制策略语言而在分布式环境中得到了广泛使用,但是XACML的策略集成缺乏形式化的描述和理论基础。本文提出了一种多云访问控制策略集成框架(MACPIF),该框架由基于属性的策略评估模型(ABPEM),具有完整性的四值逻辑(FLC)和基​​于四值逻辑的策略集成算子(FLPIO)组成。 ABPEM评估访问控制策略,并将XACML决策扩展到四值。根据策略决策集和策略集成特性,我们构建FLC并定义FLPIO,包括交叉路口,并集,差异,含意和等价。我们证明MACPIF可以实现策略单调性,功能完整性,规范适用性和规范完整性。分析结果表明,该框架可以满足Multicloud中策略集成的要求。

著录项

  • 来源
    《Communications, China》 |2019年第9期|222-234|共13页
  • 作者单位

    Army Engn Univ PLA Command & Control Engn Coll Nanjing 210007 Jiangsu Peoples R China|PANDA Elect Grp Co Ltd Nanjing 210014 Jiangsu Peoples R China;

    Nanjing Univ Posts & Telecommun Sch Comp Sci Nanjing 210023 Jiangsu Peoples R China;

    Army Engn Univ PLA Command & Control Engn Coll Nanjing 210007 Jiangsu Peoples R China;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Multicloud; access control; policy integration; four-value logic;

    机译:多云;访问控制;政策整合;四值逻辑;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号