Multi-Tenant Access and Information Flow Control for SaaS

被引:5
|
作者
Solanki, Nidhiben [1 ]
Zhu, Wei [1 ]
Yen, I-Ling [1 ]
Bastani, Farokh [1 ]
Rezvani, Elham [2 ]
机构
[1] Univ Texas Dallas, Richardson, TX 75083 USA
[2] Microsoft Corp, Redmond, WA 98052 USA
关键词
SaaS; access control; information flow control; RBAC; role hierarchy and resource hierarchy based access control; data dependency; data dependency based information flow control;
D O I
10.1109/ICWS.2016.21
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Due to multi-tenancy, access control is a very important component in SaaS (Software as a Service), especially for controlling cross-tenant accesses. Due to the potential information flow among multiple tenants, information flow control should also be carefully addressed. Existing models for SaaS access control have some limitations, especially in information flow control. In this paper, we define a new SaaS-AIFC model to provide comprehensive and improved access and information flow control in SaaS. SaaS-AIFC incorporates two advanced features. First, SaaS-AIFC integrates the advanced role mapping technique to govern the cross-tenant accesses. Role mapping is very flexible and can be very efficient for SaaS with a large number of tenants. We integrate role mapping in SaaS by developing a detailed process for mapping establishment and retrieval during validation. Second, we propose a new IFC model in SaaS-AIFC, which tracks the dependency of data objects and uses the dependency information to achieve flexible information flow control. An architecture design for realizing the SaaS-AIFC model is also proposed.
引用
收藏
页码:99 / 106
页数:8
相关论文
共 50 条
  • [21] Promotion of Accountability and Performance of the Social Economy Entities with SaaS Multi-Tenant Information Systems
    Marques, Rui Pedro
    Santos, Carlos
    Duarte, Ruben
    2020 15TH IBERIAN CONFERENCE ON INFORMATION SYSTEMS AND TECHNOLOGIES (CISTI'2020), 2020,
  • [22] Towards Dynamic Tenant Management for Microservice based Multi-Tenant SaaS Applications
    Kalra, Sumit
    Prabhakar, T. V.
    ISEC'18: PROCEEDINGS OF THE 11TH INNOVATIONS IN SOFTWARE ENGINEERING CONFERENCE, 2018,
  • [23] A Process Model for Customisation of Software in Multi-Tenant SaaS Model
    Khan, Khaled M.
    Nhlabatsi, Armstrong
    Khan, Niamul
    2015 IEEE/ACM 8TH INTERNATIONAL CONFERENCE ON UTILITY AND CLOUD COMPUTING (UCC), 2015, : 418 - 419
  • [24] Design and Implementation of a Cloud SaaS Framework for Multi-Tenant Applications
    Morakos, Petros
    Meliones, Apostolos
    5TH INTERNATIONAL CONFERENCE ON INFORMATION, INTELLIGENCE, SYSTEMS AND APPLICATIONS, IISA 2014, 2014, : 273 - 278
  • [25] Dynamic Provisioning of Service Composition in a Multi-Tenant SaaS Environment
    Wael Sellami
    Hatem Hadj Kacem
    Ahmed Hadj Kacem
    Journal of Network and Systems Management, 2020, 28 : 367 - 397
  • [26] Multi-tenant Quality Attributes to Manage Tenants in SaaS Applications
    Kalra, Sumit
    Prabhakar, T., V
    2020 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE ARCHITECTURE COMPANION (ICSA-C 2020), 2020, : 83 - 88
  • [27] WFFS: A SaaS-Based Multi-tenant Workflow Engine
    Lv, Bingcai
    Zhang, Shidong
    Liu, Zhengzheng
    Kong, Lanju
    EMERGING COMPUTATION AND INFORMATION TECHNOLOGIES FOR EDUCATION, 2012, 146 : 77 - +
  • [28] Software Architecture Driven Configurability of Multi-tenant SaaS Application
    Wang, Hua
    Zheng, Zhijun
    WEB INFORMATION SYSTEMS AND MINING, 2010, 6318 : 418 - 424
  • [29] Deep Customization of Multi-Tenant SaaS Using Intrusive Microservices
    Song, Hui
    Chauvel, Franck
    Solberg, Arnor
    2018 IEEE/ACM 40TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING: NEW IDEAS AND EMERGING TECHNOLOGIES RESULTS (ICSE-NIER), 2018, : 97 - 100
  • [30] SignedQuery: Protecting Users Data in Multi-tenant SaaS Environments
    Saleh, Eyad
    Takouna, Ibrahim
    Meinel, Christoph
    2013 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2013, : 213 - 218