Adaptive Access Control Mechanism (AACM) for Enterprise Cloud Computing

被引:1
|
作者
Kaur, Amardeep [1 ]
Verma, Amandeep [1 ]
机构
[1] Punjabi Univ, Patiala, India
关键词
CONTROL FRAMEWORK; ENVIRONMENT;
D O I
10.1155/2023/3922393
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Enterprise cloud computing provides various services to enterprises, but access to these services is controlled by a firewall. The firewall determines the actions and operations a legitimate user can perform on the available resources. Access control policies allow or restrict access to resources, and they also keep a record of attempted access. In the role-based access control model, access to resources is based on a user's role in the enterprise. As resources are limited, the policy manager has to create policies that optimize resource availability to different roles to improve overall resource utilization. However, this optimization is challenging without prior knowledge of user behaviour and resource requirements for each role. Due to insufficient knowledge, some resources may be available to the wrong roles, while others may be required by other roles but are inaccessible. This results in decreased resource utilization, requiring the redefinition of access control policies with optimal resource availability. The optimal allocation of resources can be achieved by analyzing user behaviour under different roles. The study proposes a novel method for access control that utilizes role profiling and redefines access control policies for different roles to optimize resource availability. Formal methods are employed to ensure accurate system behaviour in software and hardware systems. Formal specifications provide a high-level representation of system behaviour and characteristics. This paper proposes formal specifications using the "Z" language to ensure accurate system behaviour in access control mechanisms. The proposed mechanism is implemented in a simulated environment and validated using four variants of the recommender approach. The study concludes that the proposed mechanism consistently enhances operational capability, minimizing over- and under-allocation of resources to roles and improving overall resource utilization within the enterprise. The proposed method is beneficial in dynamic environments where the system must adapt to evolving scenarios.
引用
收藏
页数:30
相关论文
共 50 条
  • [31] Cloud Computing and the Impact on Enterprise IT
    Ahrens, Maximilian
    FUTURE INTERNET-FIS 2010, 2010, 6369 : 148 - 155
  • [32] ADOPTION OF CLOUD COMPUTING IN THE ENTERPRISE
    Nastase, Floarea
    Timofte, Carmen
    PROCEEDINGS OF THE 14TH INTERNATIONAL CONFERENCE ON INFORMATICS IN ECONOMY (IE 2015): EDUCATION, RESEARCH & BUSINESS TECHNOLOGIES, 2015, : 68 - 72
  • [33] DACPCC: A Data Access Control Scheme with Access Permission for Cloud Computing
    Wang Y.-D.
    Yang J.-H.
    Yang, Jia-Hai (yang@cernet.edu.cn), 2018, Chinese Institute of Electronics (46): : 236 - 244
  • [34] Survey of access control models and technologies for cloud computing
    Cai, Fangbo
    Zhu, Nafei
    He, Jingsha
    Mu, Pengyu
    Li, Wenxin
    Yu, Yi
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2019, 22 (Suppl 3): : S6111 - S6122
  • [35] Categorical quantum cryptography for access control in cloud computing
    Lirong Qiu
    Xin Sun
    Juan Xu
    Soft Computing, 2018, 22 : 6363 - 6370
  • [36] Server-aided access control for cloud computing
    WENG Jian
    WENG Jia-si
    LIU Jia-nan
    HOU Lin
    网络与信息安全学报, 2016, 2 (10) : 58 - 76
  • [37] Data Security Access Control Model of Cloud Computing
    Hu, Jun
    Chen, Lei
    Wang, Yunhua
    Chen, Shi-hong
    2013 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCES AND APPLICATIONS (CSA), 2013, : 29 - 34
  • [38] An efficient signcryption for data access control in cloud computing
    Fagen Li
    Bo Liu
    Jiaojiao Hong
    Computing, 2017, 99 : 465 - 479
  • [39] An assurance model for access control on cloud computing systems
    Li Y.
    Zhao Y.
    Guo X.
    Liu G.
    1600, Tsinghua University (57): : 432 - 436
  • [40] Fine-grained access control for cloud computing
    Ye, Xinfeng
    Khoussainov, Bakh
    INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2013, 4 (2-3) : 160 - 168