

Context-Aware Access Control Model for Cloud Computing



In view of malicious insider attacks on cloud computing environments, a new Context-Aware Access Control Model for cloud computing (CAACM) was presented. According to the characteristic of cloud computing, we take spatial state, temporal state and platform trust level as context. The model establishes mechanisms of authorization from cloud management role to objects, which enables dynamic activation of role permission by associating cloud management role with context. It also achieves fine-grained access control on cloud objects by supervising the permission of management role in full life cycle. Moreover, it introduces the concept of exclusive managerial role, which extends access control from static protection on resources to dynamic authorization on managerial roles. Further, it describes the approach of role permission activation systematically. CAACM formally proves to be safe and it lays the groundwork for the deployment of CAACM in cloud computing systems.


 1. Introduction
  2.1. Fundamental Conceptions
  2.2. Formal Definition
  2.3. Access Control Policies
  2.4. Access Control Mechanism
  2.5. Security Proof
 3. Application of CAACM
 4. Model Comparison
 5. Conclusion and Future Work


  • Zhenji Zhou Institute of Command Information System, PLA University of science and technology Nanjing, Jiangsu, China
  • Lifa Wu Institute of Command Information System, PLA University of science and technology Nanjing, Jiangsu, China
  • Zheng Hong Institute of Command Information System, PLA University of science and technology Nanjing, Jiangsu, China


자료제공 : 네이버학술정보

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

0개의 논문이 장바구니에 담겼습니다.