Author_Institution :
State Key Lab. of Inf. Security, Inst. of Inf. Eng., Beijing, China
Abstract :
Users can utilize powerful computing resources in cloud computing, which brings users great convenience. However, cloud computing is also facing many challenges for data security as the users outsource their sensitive data to clouds, which are generally beyond the same trusted domain as data owners. To address this problem, access control, which grants access permissions to an authorized user, is considered as one of critical security mechanisms for data protection in cloud computing environment. However, due to the unpredictability of user identities and access behavior, access control in cloud computing has become a key security problem. In this paper, we propose a self-adaptive access control model based on feedback loop. The feedback loop includes monitor, analyze, plan, execute parts and knowledge base, and the knowledge base is used to make decisions on access requests. We also propose an algorithm of access attributes´ relation degree for knowledge base. The self-adaptive access control model based on feedback loop we proposed can be applied to cloud computing environment.
Keywords :
authorisation; cloud computing; data protection; knowledge based systems; access attribute relation degree; cloud computing environment; critical security mechanisms; data protection; data security; feedback loop; knowledge base; self-adaptive access control model; Cloud computing; History; MAPE-K; access control; feedback loop; knowledge base; self-adaptation;