A Multilevel Security Model for Private Cloud

被引:0
|
作者
XUE Haiwei [1 ]
ZHANG Yunliang [1 ]
GUO Zhien [1 ]
DAI Yiqi [1 ]
机构
[1] Department of Computer Science, Tsinghua University
关键词
Cloud computing; Private cloud; Security model; BLP model; Access control;
D O I
暂无
中图分类号
TP309 [安全保密];
学科分类号
081201 ; 0839 ; 1402 ;
摘要
Towards data leak caused by misoperation and malicious inside users, we proposed a multilevel security model based on Bell-lapadula(BLP) model. In our model each subject was assigned with a security level. Subjects can read objects only when their security levels are not less than objects’ security levels, and subjects can write objects only when their security levels are not more than objects’ security levels. The current security level in our model can be dynamically changed when users read sensitive data, since users can access data with different security levels in private cloud. Our model use mandatory access control method to control user’s operation and can guarantee that users can not leak sensitive data after they read them. Our model can be proved secure by mathematical method, and we implemented a prototype system of our model and the experimental results show that it is secure.
引用
收藏
页码:232 / 235
页数:4
相关论文
共 50 条
  • [41] Ensuring Data Governace and Enhancing Data Security in a Private Cloud Environment
    Monday, Happy N.
    Li, Jian P.
    Nneji, Grace U.
    Ukwuoma, Chiagoziem C.
    Agomuo, David
    Nneji, Richard I.
    2018 IEEE 9TH ANNUAL INFORMATION TECHNOLOGY, ELECTRONICS AND MOBILE COMMUNICATION CONFERENCE (IEMCON), 2018, : 1018 - 1024
  • [42] Protecting Your Own Private Key in Cloud: Security, Scalability and Performance
    Yu, Wenqian
    Yu, Ping
    Wang, Junyuan
    Wei, Changzheng
    Gong, Lu
    Li, Weigang
    Cui, Bo
    Tadepalli, Hari K.
    Will, Brian
    2018 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2018,
  • [43] Security Enhanced Attribute Based Signcryption for Private Data Sharing in Cloud
    Pei, Xin
    Wang, Yongjian
    Yao, Wei
    Lin, Jiuchuan
    Peng, Ruxiang
    2016 IEEE TRUSTCOM/BIGDATASE/ISPA, 2016, : 737 - 743
  • [44] A High Security Distance Education Platform Infrastructure Based on Private Cloud
    Ran, Jingtai
    Hou, Kepeng
    Li, Kegang
    Dai, Niya
    INTERNATIONAL JOURNAL OF EMERGING TECHNOLOGIES IN LEARNING, 2018, 13 (10): : 42 - 54
  • [45] A Review on Security Issue in Security Model of Cloud Computing Environment
    Venkatakotireddy, G.
    Rao, B. Thirumala
    Vurukonda, Naresh
    ARTIFICIAL INTELLIGENCE AND EVOLUTIONARY COMPUTATIONS IN ENGINEERING SYSTEMS, ICAIECES 2017, 2018, 668 : 207 - 212
  • [46] Mobile cloud security: An adversary model for lightweight browser security
    Pokharel, Shasi
    Choo, Kim-Kwang Raymond
    Liu, Jixue
    COMPUTER STANDARDS & INTERFACES, 2017, 49 : 71 - 78
  • [47] A Simple Security Model based on Cloud Reference Model
    Li, Xiaoli
    Chen, Jinhua
    Luo, Min
    2011 TENTH INTERNATIONAL SYMPOSIUM ON DISTRIBUTED COMPUTING AND APPLICATIONS TO BUSINESS, ENGINEERING AND SCIENCE (DCABES), 2011, : 155 - 159
  • [48] A Multilevel Security Framework for Cloud-Based Ubiquitous Healthcare Application Service
    Cagalaban, Giovanni
    Kim, Donghyun
    Kim, Seoksoo
    Choi, E-Jung
    COMPUTER APPLICATIONS FOR SECURITY, CONTROL AND SYSTEM ENGINEERING, 2012, 339 : 168 - 175
  • [49] A Model Driven Method for Multilevel Security Systems Design
    Zielinski, Zbigniew
    Stasiak, Andrzej
    Dabrowski, Wlodzimierz
    PRZEGLAD ELEKTROTECHNICZNY, 2012, 88 (02): : 120 - 125
  • [50] A multilevel security model based on communication channel capacity
    Liu, Xiong
    Zhuo, Xue-Jun
    Tang, Yong-Li
    Dai, Yi-Qi
    Tien Tzu Hsueh Pao/Acta Electronica Sinica, 2010, 38 (10): : 2460 - 2464