Cloud system peculiarities, such as enormous resources and long-lasting accesses, introduce new security and management challenges. This paper presents an advanced authorization framework based on the Usage Control (UCON) model and the OASIS XACML standard to regulate the usage of Cloud resources. Our framework addresses the issue of long lasting accesses and it is able to interrupt accesses that are in progress when the corresponding access rights do not hold any more. We provide the implementation of our framework and its integration with the OpenNebula toolkit
Usage Control in Cloud Systems
Lazouski Aliaksandr;Mancini Gaetano;Martinelli Fabio;Mori Paolo
2012
Abstract
Cloud system peculiarities, such as enormous resources and long-lasting accesses, introduce new security and management challenges. This paper presents an advanced authorization framework based on the Usage Control (UCON) model and the OASIS XACML standard to regulate the usage of Cloud resources. Our framework addresses the issue of long lasting accesses and it is able to interrupt accesses that are in progress when the corresponding access rights do not hold any more. We provide the implementation of our framework and its integration with the OpenNebula toolkitFile in questo prodotto:
Non ci sono file associati a questo prodotto.
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.