• DocumentCode
    2395415
  • Title

    Enforcing Policy and Data Consistency of Cloud Transactions

  • Author

    Iskander, Marian K. ; Wilkinson, Dave W. ; Lee, Adam J. ; Chrysanthis, Panos K.

  • Author_Institution
    Dept. of Comput. Sci., Univ. of Pittsburgh, Pittsburgh, PA, USA
  • fYear
    2011
  • fDate
    20-24 June 2011
  • Firstpage
    253
  • Lastpage
    262
  • Abstract
    In distributed transactional database systems deployed over cloud servers, entities cooperate to form proofs of authorizations that are justified by collections of certified credentials. These proofs and credentials may be evaluated and collected over extended time periods under the risk of having the underlying authorization policies or the user credentials being in inconsistent states. It therefore becomes possible for a policy-based authorization systems to make unsafe decisions that might threaten sensitive resources. In this paper, we highlight the criticality of the problem. We then present the first formalization of the concept of trusted transactions when dealing with proofs of authorizations. Accordingly, we define different levels of policy consistency constraints and present different enforcement approaches to guarantee the trustworthiness of transactions executing on cloud servers. We propose a Two-Phase Validation Commit protocol as a solution, that is a modified version of the basic Two-Phase Commit protocols. We finally provide performance analysis of the different presented approaches to guide the decision makers in which approach to use.
  • Keywords
    authorisation; cloud computing; distributed databases; protocols; transaction processing; cloud server; cloud transaction; data consistency; distributed transactional database system; policy consistency constraint; policy-based authorization system; trusted transaction; two-phase validation commit protocol; Authorization; Companies; Database systems; Distributed databases; Protocols; Servers; Cloud databases; atomic commit protocol; authorization policies; consistency; distributed transactions;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Distributed Computing Systems Workshops (ICDCSW), 2011 31st International Conference on
  • Conference_Location
    Minneapolis, MN
  • ISSN
    1545-0678
  • Print_ISBN
    978-1-4577-0384-3
  • Electronic_ISBN
    1545-0678
  • Type

    conf

  • DOI
    10.1109/ICDCSW.2011.42
  • Filename
    5961498