Abstract

Since more and more applications and services have been transferred from servers in the B/S architecture to cloud, user access control has become a significant part in a multitenancy cloud platform. Role based access control model makes users participate in an enterprise system as particular identities. However, in a multitenancy cloud environment, it has a high probability that the information of tenants has been leaked by using existing role based access control (RBAC) model. Moreover, management problems may emerge in the multitenancy platform with the increment of the number of tenants. In this paper, a novel concept of 4D-role is presented. With a detailed definition on the concept of 4D-role, a 4D-role based multitenancy model is proposed for running various applications and services in the multitenancy cloud platform. A theoretical analysis indicates that the model has the characters of tenant isolation, role hierarchy, and administration independence. The three characters are also verified by experimental evaluation. Moreover, the evaluation results indicate that the model has a good performance in using cloud resources when large-scale users are operating in the cloud platform simultaneously.

Highlights

  • With the rapid development in computer technology, more and more applications and services have been transferred from servers in the B/S architecture to cloud platforms

  • 4D-Role Power Configuration Module (PCM) and User Account Module (UAM) are communicated through the API, which is supported by the Power Validation Module (PVM)

  • It deals with the operation of power configuration management, which involves the power configurations, such as Basic Permission Configuration (BPC), Permission Configuration (PC), Role Configuration (RC), and User Group Configuration (UGC)

Read more

Summary

Introduction

With the rapid development in computer technology, more and more applications and services have been transferred from servers in the B/S architecture to cloud platforms. Since RBAC based systems administer user authorization using a centralized control mechanism [13,14,15], there may be various RBAC strategies serving in the multitenancy environment In order to solve the problems above, it is necessary for the multitenancy cloud platform to have characters of tenant isolation, role hierarchy, and administration independence. Role hierarchy means that roles of tenant users and administrator users construct hierarchical structures It makes the multitenant cloud provider manage tenants who establish role authorizing mechanism efficiently. Administration independence ensures the cloud administration independent of any tenancy application It prevents tenant information from being leaked by cloud provider, and brings benefits for solving management problems in multitenancy cloud platform. We introduce the 4Drole and the 4D-role based multitenancy model

Basic Concepts
Verification of 4D-RBMT Model Using Mathematical Approaches
User Group Relation
Performance Evaluations
Introduction to the Prototype System
Experimental Evaluation of Performance in Business Functions
Conclusion

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.