• DocumentCode
    2100514
  • Title

    SaaS Authentication Middleware for Mobile Consumers of IaaS Cloud

  • Author

    Lomotey, Richard K. ; Deters, Ralph

  • Author_Institution
    Dept. of Comput. Sci., Univ. of Saskatchewan, Saskatoon, SK, Canada
  • fYear
    2013
  • fDate
    June 28 2013-July 3 2013
  • Firstpage
    448
  • Lastpage
    455
  • Abstract
    The mobile terrain is rapidly establishing itself as the reliable node for accessing cloud hosted data. Today, commodity cloud providers especially from the Infrastructure-as-a-Service (IaaS) cloud expose their service APIs which facilitates the "app-ification" of enterprise workflows on mobile devices. However, these IaaS providers require the customer (i.e., the data consumer) to submit multiple security credentials which are computation intensive for the purposes of authentication and authorization. As a result, the authentication process introduces undesired delays in a mobile network when consuming enterprise data due to the increasing computational demand and the voluminous HTTP header that is transported across the wireless bandwidth.This paper introduces an application called MiLAMob that is a middleware-layer that handles the authentication process on behalf of the consumer devices in real time and with minimal HTTP traffic. The middleware currently supports mobile consumption of data on IaaS clouds such as Amazon S3, Dropbox, and MEGA. Further, the middleware employs the OAuth 2.0 technique (E.g. Facebook, Google+, and Personal Login) to identify the mobile end-user and uses security tokens to handle the tedious authentication with the IaaS cloud. Also, the deployment of the middleware enforces additional data protection because the security credentials and the IaaS abstractions are shielded from the mobile application domain and the end users.
  • Keywords
    authorisation; cloud computing; computer network security; middleware; mobile computing; mobile radio; transport protocols; Amazon S3; Dropbox; HTTP traffic; IaaS abstractions; IaaS cloud; IaaS providers; MEGA; MiLAMob; OAuth 2.0 technique; SaaS authentication middleware; authentication process handling; authorization; cloud hosted data access; commodity cloud providers; computational demand; data consumer; data protection; enterprise data; enterprise workflow app-ification; infrastructure-as-a-service cloud; middleware layer; mobile application domain; mobile consumers; mobile consumption; mobile devices; mobile end-user identification; mobile network; mobile terrain; security credentials; security tokens; service API; voluminous HTTP header; wireless bandwidth; Authentication; Cloud computing; Media; Mobile communication; Social network services; Middleware; mobile consumers; OAuth 2.0; cloud computing; Amazon S3; Dropbox; MEGA; authentication; Graph Data;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Services (SERVICES), 2013 IEEE Ninth World Congress on
  • Conference_Location
    Santa Clara, CA
  • Print_ISBN
    978-0-7695-5024-4
  • Type

    conf

  • DOI
    10.1109/SERVICES.2013.34
  • Filename
    6655734