A Multilevel Security Model for Private Cloud

被引:0
|
作者
XUE Haiwei [1 ]
ZHANG Yunliang [1 ]
GUO Zhien [1 ]
DAI Yiqi [1 ]
机构
[1] Department of Computer Science, Tsinghua University
关键词
Cloud computing; Private cloud; Security model; BLP model; Access control;
D O I
暂无
中图分类号
TP309 [安全保密];
学科分类号
081201 ; 0839 ; 1402 ;
摘要
Towards data leak caused by misoperation and malicious inside users, we proposed a multilevel security model based on Bell-lapadula(BLP) model. In our model each subject was assigned with a security level. Subjects can read objects only when their security levels are not less than objects’ security levels, and subjects can write objects only when their security levels are not more than objects’ security levels. The current security level in our model can be dynamically changed when users read sensitive data, since users can access data with different security levels in private cloud. Our model use mandatory access control method to control user’s operation and can guarantee that users can not leak sensitive data after they read them. Our model can be proved secure by mathematical method, and we implemented a prototype system of our model and the experimental results show that it is secure.
引用
收藏
页码:232 / 235
页数:4
相关论文
共 50 条
  • [1] A Multilevel Security Model for Private Cloud
    Xue Haiwei
    Zhang Yunliang
    Guo Zhien
    Dai Yiqi
    CHINESE JOURNAL OF ELECTRONICS, 2014, 23 (02) : 232 - 235
  • [2] Analysis of Multilevel Framework for Cloud Security
    Nagalakshmi, Vadlamani
    Devi, Vijeyta
    ICT AND CRITICAL INFRASTRUCTURE: PROCEEDINGS OF THE 48TH ANNUAL CONVENTION OF COMPUTER SOCIETY OF INDIA - VOL I, 2014, 248 : 481 - 487
  • [3] A Multilevel Encryption Technique in Cloud Security
    Jana, Bappaditya
    Poray, Jayanta
    Mandal, Tamoghna
    Kule, Malay
    2017 7TH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS AND NETWORK TECHNOLOGIES (CSNT), 2017, : 220 - 224
  • [4] Multilevel Security framework for Cloud Data
    Dixit, Akshat Kumar
    Charu
    2017 INTERNATIONAL CONFERENCE ON COMPUTING AND COMMUNICATION TECHNOLOGIES FOR SMART NATION (IC3TSN), 2017, : 209 - 214
  • [5] A Study of Security Threats in the Private Cloud
    Satimowa, Yelena
    Bytleuowa, Assel
    MEETING SECURITY CHALLENGES THROUGH DATA ANALYTICS AND DECISION SUPPORT, 2016, 47 : 331 - 335
  • [6] A Hybrid Multilevel Authentication Scheme for Private Cloud Environment
    Sridhar, S.
    Smys, S.
    PROCEEDINGS OF THE 10TH INTERNATIONAL CONFERENCE ON INTELLIGENT SYSTEMS AND CONTROL (ISCO'16), 2016,
  • [7] A Hybrid Security Framework to Preserve Multilevel Security on Public Cloud Networks
    Roy, Prince
    Kumar, Rajneesh
    Proceedings of the 2021 10th International Conference on System Modeling and Advancement in Research Trends, SMART 2021, 2021, : 336 - 340
  • [8] Performance and Security Issue on Open Source Private Cloud
    Boonchieng, Ekkarat
    2014 INTERNATIONAL ELECTRICAL ENGINEERING CONGRESS (IEECON), 2014,
  • [9] Security Protection Technology Research and Application for Private Cloud
    Li, Shi-cheng
    Zhang, Tong
    2015 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND TECHNOLOGY (ICCST 2015), 2015, : 450 - 454
  • [10] A Formal Multilevel Database Security Model
    Wang Baohua
    Ma Xinqiang
    Li Danning
    2008 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, VOLS 1 AND 2, PROCEEDINGS, 2008, : 815 - +