Skip to main content

2018 | OriginalPaper | Buchkapitel

A Multi-level Policy Engine to Manage Identities and Control Accesses in Cloud Computing Environment

verfasst von : Faraz Fatemi Moghaddam, Süleyman Berk Çemberci, Philipp Wieder, Ramin Yahyapour

Erschienen in: Service-Oriented and Cloud Computing

Verlag: Springer International Publishing

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Security challenges are the most important obstacles for the advancement of IT-based on-demand services and cloud computing as an emerging technology. Lack of coincidence in identity management models based on defined policies and various security levels in different cloud servers is one of the most challenging issues in clouds. In this paper, a policy-based user authentication model has been presented to provide a reliable and scalable identity management and to map cloud users’ access requests with defined polices of cloud servers. In the proposed schema several components are provided to define access policies by cloud servers, to apply policies based on a structural and reliable ontology, to manage user identities and to semantically map access requests by cloud users with defined polices.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
1.
Zurück zum Zitat Fatemi Moghaddam, F., Ahmadi, M., Sarvari, S., Eslami, M., Golkar, A.: Cloud computing challenges and opportunities: a survey. In: 1st International Conference on Telematics and Future Generation Networks (TAFGEN), pp. 34–38 (2015) Fatemi Moghaddam, F., Ahmadi, M., Sarvari, S., Eslami, M., Golkar, A.: Cloud computing challenges and opportunities: a survey. In: 1st International Conference on Telematics and Future Generation Networks (TAFGEN), pp. 34–38 (2015)
2.
Zurück zum Zitat Sadiku, M.N.O., Musa, S.M., Momoh, O.D.: Cloud computing: opportunities and challenges. IEEE Potentials 33(1), 34–36 (2014)CrossRef Sadiku, M.N.O., Musa, S.M., Momoh, O.D.: Cloud computing: opportunities and challenges. IEEE Potentials 33(1), 34–36 (2014)CrossRef
3.
Zurück zum Zitat Wang, C., Ren, K., Lou, W., Li, J.: Toward publicly auditable secure cloud data storage services. IEEE Netw. 24(4), 19–24 (2010)CrossRef Wang, C., Ren, K., Lou, W., Li, J.: Toward publicly auditable secure cloud data storage services. IEEE Netw. 24(4), 19–24 (2010)CrossRef
4.
Zurück zum Zitat Coppolino, L., D’Antonio, S., Mazzeo, G., Romano, L.: Cloud security: emerging threats and current solutions. Comput. Electr. Eng. 59, 126–140 (2017)CrossRef Coppolino, L., D’Antonio, S., Mazzeo, G., Romano, L.: Cloud security: emerging threats and current solutions. Comput. Electr. Eng. 59, 126–140 (2017)CrossRef
5.
Zurück zum Zitat Recordon, D., Reed, D.: OpenID 2.0:  a platform for user-centric identity management. In: Proceedings of the Second ACM Workshop on Digital Identity Management - DIM 2006, p. 11 (2006) Recordon, D., Reed, D.: OpenID 2.0:  a platform for user-centric identity management. In: Proceedings of the Second ACM Workshop on Digital Identity Management - DIM 2006, p. 11 (2006)
6.
Zurück zum Zitat Morgan, R.L., Cantor, S., Carmody, S., Hoehn, W., Klingenstein, K.: Federated security: the Shibboleth approach. Educ. Q. 27(4), 12–17 (2004) Morgan, R.L., Cantor, S., Carmody, S., Hoehn, W., Klingenstein, K.: Federated security: the Shibboleth approach. Educ. Q. 27(4), 12–17 (2004)
7.
Zurück zum Zitat Pérez Méndez, A., Marín López, R., López Millán, G.: Providing efficient SSO to cloud service access in AAA-based identity federations. Futur. Gener. Comput. Syst. 58, 13–28 (2016)CrossRef Pérez Méndez, A., Marín López, R., López Millán, G.: Providing efficient SSO to cloud service access in AAA-based identity federations. Futur. Gener. Comput. Syst. 58, 13–28 (2016)CrossRef
8.
Zurück zum Zitat de Carvalho, C.A.B., de Castro Andrade, R.M., de Castro, M.F., Coutinho, E.F., Agoulmine, N.: State of the art and challenges of security SLA for cloud computing. Comput. Electr. Eng. 59, 141–152 (2017)CrossRef de Carvalho, C.A.B., de Castro Andrade, R.M., de Castro, M.F., Coutinho, E.F., Agoulmine, N.: State of the art and challenges of security SLA for cloud computing. Comput. Electr. Eng. 59, 141–152 (2017)CrossRef
9.
Zurück zum Zitat Liu, Z., Yan, H., Li, Z.: Server-aided anonymous attribute-based authentication in cloud computing. Futur. Gener. Comput. Syst. 52, 61–66 (2015)CrossRef Liu, Z., Yan, H., Li, Z.: Server-aided anonymous attribute-based authentication in cloud computing. Futur. Gener. Comput. Syst. 52, 61–66 (2015)CrossRef
10.
Zurück zum Zitat Fatemi Moghaddam, F., Wieder, P., Yahyapour, R.: Policy Engine as a Service (PEaaS): an approach to a reliable policy management framework in cloud computing environments. In: IEEE 4th International Conference on Future Internet of Things and Cloud (FiCloud), pp. 137–144 (2016) Fatemi Moghaddam, F., Wieder, P., Yahyapour, R.: Policy Engine as a Service (PEaaS): an approach to a reliable policy management framework in cloud computing environments. In: IEEE 4th International Conference on Future Internet of Things and Cloud (FiCloud), pp. 137–144 (2016)
11.
Zurück zum Zitat Fatemi Moghaddam, F.: Multi-layered policy generation and management in clouds. University of Göttingen (2018) Fatemi Moghaddam, F.: Multi-layered policy generation and management in clouds. University of Göttingen (2018)
12.
Zurück zum Zitat Hajivali, M., Fatemi Moghaddam, F., Alrashdan, M.T., Alothmani, A.Z.M.: Applying an agent-based user authentication and access control model for cloud servers. In: International Conference on ICT Convergence (ICTC), pp. 807–812 (2013) Hajivali, M., Fatemi Moghaddam, F., Alrashdan, M.T., Alothmani, A.Z.M.: Applying an agent-based user authentication and access control model for cloud servers. In: International Conference on ICT Convergence (ICTC), pp. 807–812 (2013)
13.
Zurück zum Zitat Bajaj, S., Box, D., Chappell, D., Curbera, F., Daniels, G., Hallam-Baker, P., Hondo, M., Kaler, C., Langworthy, D., Malhotra, A.: Web Services Policy Framework (WS-Policy). Specif. IBM, BEA, Microsoft, SAP AG, Sonic Software, VeriSign (2004) Bajaj, S., Box, D., Chappell, D., Curbera, F., Daniels, G., Hallam-Baker, P., Hondo, M., Kaler, C., Langworthy, D., Malhotra, A.: Web Services Policy Framework (WS-Policy). Specif. IBM, BEA, Microsoft, SAP AG, Sonic Software, VeriSign (2004)
Metadaten
Titel
A Multi-level Policy Engine to Manage Identities and Control Accesses in Cloud Computing Environment
verfasst von
Faraz Fatemi Moghaddam
Süleyman Berk Çemberci
Philipp Wieder
Ramin Yahyapour
Copyright-Jahr
2018
DOI
https://doi.org/10.1007/978-3-319-99819-0_9