Dynamic Multiparty Authentication of Data Analytics Services within Cloud Environments

被引:9
作者
Al-Aqrabi, Hussain [1 ]
Hill, Richard [1 ]
机构
[1] Univ Huddersfield, Ctr Ind Analyt, Huddersfield HD1 3DH, W Yorkshire, England
来源
IEEE 20TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS / IEEE 16TH INTERNATIONAL CONFERENCE ON SMART CITY / IEEE 4TH INTERNATIONAL CONFERENCE ON DATA SCIENCE AND SYSTEMS (HPCC/SMARTCITY/DSS) | 2018年
关键词
Cloud computing; analytics; security; multiparty interactions; Internet of Things; SECURITY; ARCHITECTURE;
D O I
10.1109/HPCC/SmartCity/DSS.2018.00127
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Approaches to the provision of data analytics for businesses offer methods to analyse and model data, enabling informed decision making to improve business performance and profitability. Typically, analytics processing is an intensive task and the demand for business insight, on-demand, means that organisations make use of elastic cloud provisioned resources to host such services. However, within the shared domains of multi-tenant cloud computing, business data and models are exposed to greater security threats and compromised privacy, since an unauthorised user may be able to gain access to highly sensitive, consolidated business-critical information. Business analytics processes are often composed from orchestrated, collaborating services, which are consumed by users from multiple cloud systems (in different security realms), which need to be engaged dynamically at runtime. If heterogeneous cloud systems located in different security realms do not have direct authentication relationships, then it is a considerable technical challenge to enable secure collaboration. In order to address this security challenge, a new authentication framework is required to establish trust amongst business analytics service instances and users by distributing a common session secret to all participants of a session. We address this challenge by designing and implementing a secure multiparty authentication framework for dynamic interaction, for the scenario where members of different security realms express a need to access orchestrated services. This novel framework exploits the relationship of trust between session members in different security realms, to enable a user to obtain security credentials that access cloud resources in a remote realm. The mechanism assists cloud session users to authenticate their session membership, thereby improving the performance of authentication processes within multiparty sessions. We see applicability of this framework beyond multiple cloud infrastructure, to that of any scenario where multiple security realms has the potential to exist, such as the emerging Internet of Things (IoT).
引用
收藏
页码:742 / 749
页数:8
相关论文
共 35 条
[1]  
Al-Aqrabi Hussain, 2013, 2013 IEEE International Conference on Green Computing and Communications (GreenCom) and IEEE Internet of Things (iThings) and IEEE Cyber, Physical and Social Computing (CPSCom), P842, DOI 10.1109/GreenCom-iThings-CPSCom.2013.148
[2]  
Al-Aqrabi H., 2013, P 7 INT S SERV OR SY
[3]  
Al-Aqrabi H., 2014, Journal of Computer System Science
[4]  
Al-Aqrabi H., 2012, P 14 IEEE INT S HIGH
[5]  
Al-Aqrabi H., 2014, P CSS ICESS IEEE FRA, P137
[6]  
Albeshri A. A., 2010, IEEE 12 INT C HIGH P
[7]  
[Anonymous], SECURITY PRIVACY TRU
[8]  
Arya Pradeep Kumar, 2013, IET Chennai Fourth International Conference on Sustainable Energy and Intelligent Systems (SEISCON 2013), P449
[9]  
Ateniese G., 2000, IEEE J SEL AREA COMM, V18
[10]  
Brieter G., 2010, IBM Blue Books, P3