Semantically Rich, Context Aware Access Control for Openstack

dc.contributor.authorRathode, Vishal
dc.contributor.authorNarayanan, Sandeep Nair
dc.contributor.authorMittal, Sudip
dc.contributor.authorJoshi, Anupam
dc.date.accessioned2018-10-19T13:37:44Z
dc.date.available2018-10-19T13:37:44Z
dc.date.issued2018-09-01
dc.descriptionIEEE International Conference on Collaboration and Internet Computing 2018en_US
dc.description.abstractIn an open source cloud computing platform such as OpenStack, operators use Role-Based Access Control (RBAC) model to grant access to cloud resources. However, these user-level role-based access control techniques fail to include comprehensive user context. We believe a situational aware framework will improve security by bringing in user's context to such cloud systems. In this paper, we create a semantically rich context-sensitive access control system for OpenStack by incorporating the user's current context attributes like location, time, etc. In a proof-of-concept implementation, we integrate a knowledge graph with our own access control system to express and enforce the contextual-situation policies in OpenStack. The proposed system provides enhanced, flexible access control while minimizing the overhead of altering the existing access control framework. We also discuss various use cases, to highlight the benefits of our system and show enforcement results.en_US
dc.description.urihttps://ieeexplore.ieee.org/document/8537867en_US
dc.format.extent6 pagesen_US
dc.genreconference papers and proceedings preprintsen_US
dc.identifierdoi:10.13016/M2959CC02
dc.identifier.citationV. Rathod, S. Narayanan, S. Mittal and A. Joshi, "Semantically Rich, Context Aware Access Control for Openstack," 2018 IEEE 4th International Conference on Collaboration and Internet Computing (CIC), Philadelphia, PA, 2018, pp. 460-465, doi: 10.1109/CIC.2018.00069.en_US
dc.identifier.urihttp://hdl.handle.net/11603/11611
dc.identifier.uri10.1109/CIC.2018.00069
dc.language.isoen_USen_US
dc.publisherIEEEen_US
dc.relation.isAvailableAtThe University of Maryland, Baltimore County (UMBC)
dc.relation.ispartofUMBC Computer Science and Electrical Engineering Department Collection
dc.relation.ispartofUMBC Faculty Collection
dc.relation.ispartofUMBC Student Collection
dc.rightsThis item is likely protected under Title 17 of the U.S. Copyright Law. Unless on a Creative Commons license, for uses protected by Copyright Law, contact the copyright holder or the author.
dc.rights© 2018 IEEE
dc.subjectCybersecurityen_US
dc.subjectAccess Controlen_US
dc.subjectKnowledge Graphsen_US
dc.subjectOpenStacken_US
dc.subjectContextual Attributesen_US
dc.subjectUMBC Ebiquity Research Groupen_US
dc.titleSemantically Rich, Context Aware Access Control for Openstacken_US
dc.typeTexten_US

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
899.pd.pdf
Size:
910.15 KB
Format:
Adobe Portable Document Format
Description:
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.68 KB
Format:
Item-specific license agreed upon to submission
Description: