...
首页> 外文期刊>Journal of Information Security >Ensuring Security, Confidentiality and Fine-Grained Data Access Control of Cloud Data Storage Implementation Environment
【24h】

Ensuring Security, Confidentiality and Fine-Grained Data Access Control of Cloud Data Storage Implementation Environment

机译:确保云数据存储实施环境的安全性,机密性和精细的数据访问控制

获取原文
   

获取外文期刊封面封底 >>

       

摘要

With the development of cloud computing, the mutual understandability among distributed data access control has become an important issue in the security field of cloud computing. To ensure security, confidentiality and fine-grained data access control of Cloud Data Storage (CDS) environment, we proposed Multi-Agent System (MAS) architecture. This architecture consists of two agents: Cloud Service Provider Agent (CSPA) and Cloud Data Confidentiality Agent (CDConA). CSPA provides a graphical interface to the cloud user that facilitates the access to the services offered by the system. CDConA provides each cloud user by definition and enforcement expressive and flexible access structure as a logic formula over cloud data file attributes. This new access control is named as Formula-Based Cloud Data Access Control (FCDAC). Our proposed FCDAC based on MAS architecture consists of four layers: interface layer, existing access control layer, proposed FCDAC layer and CDS layer as well as four types of entities of Cloud Service Provider (CSP), cloud users, knowledge base and confidentiality policy roles. FCDAC, it’s an access policy determined by our MAS architecture, not by the CSPs. A prototype of our proposed FCDAC scheme is implemented using the Java Agent Development Framework Security (JADE-S). Our results in the practical scenario defined formally in this paper, show the Round Trip Time (RTT) for an agent to travel in our system and measured by the times required for an agent to travel around different number of cloud users before and after implementing FCDAC.
机译:随着云计算的发展,分布式数据访问控制之间的相互理解已经成为云计算安全领域的重要问题。为了确保云数据存储(CDS)环境的安全性,机密性和细粒度的数据访问控制,我们提出了多代理系统(MAS)架构。该体系结构由两个代理组成:云服务提供商代理(CSPA)和云数据机密性代理(CDConA)。 CSPA为云用户提供了图形界面,方便了对系统所提供服务的访问。 CDConA通过定义和实施表达和灵活的访问结构,为每个云用户提供云数据文件属性上的逻辑公式。此新的访问控制名为基于公式的云数据访问控制(FCDAC)。我们提出的基于MAS架构的FCDAC包括四层:接口层,现有访问控制层,提议的FCDAC层和CDS层,以及云服务提供商(CSP),云用户,知识库和机密性策略角色的四种类型的实体。 FCDAC,这是由我们的MAS体系结构而非CSP决定的访问策略。我们提出的FCDAC方案的原型是使用Java代理开发框架安全性(JADE-S)实现的。在本文正式定义的实际场景中,我们的结果显示了代理在系统中传播的往返时间(RTT),并通过实现FCDAC前后代理在不同数量的云用户之间传播所需的时间来衡量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号