Back to Search Start Over

An Access Control Model Based on System Security Risk for Dynamic Sensitive Data Storage in the Cloud

Authors :
Nawaf Alharbe
Abeer Aljohani
Mohamed Ali Rakrouki
Mashael Khayyat
Source :
Applied Sciences, Vol 13, Iss 5, p 3187 (2023)
Publication Year :
2023
Publisher :
MDPI AG, 2023.

Abstract

In cloud computing, dynamic storage of data generated by users, applications, tasks, workflows, etc. requires frequent access operations, so traditional encryption cannot be applied in this case. Considering the vulnerability of dynamic data, its protection needs to consider an efficient and dynamic security protection scheme. In data-oriented access control, the traditional approach is generally static policy matching, which cannot deal with emergencies and has the problem of privileged users. To solve this problem, this paper proposes a data-oriented risk-based access control model, which adds risk assessment to the traditional attribute-based access control and aims at the source of risk from three aspects: subject attribute, resource attribute, and environment attribute. A set of risk assessment indexes is proposed, and the calculation method of risk assessment is quantitatively analyzed by combining fuzzy consistency AHP analysis method, and finally, the realization of XACML is given. The validity of the proposed model is analyzed, and the carried out experimental analysis verifies its effectiveness. The proposed model benefits cloud data storage applications that require dynamic data storage, for example, medical/patient data storage.

Details

Language :
English
ISSN :
20763417
Volume :
13
Issue :
5
Database :
Directory of Open Access Journals
Journal :
Applied Sciences
Publication Type :
Academic Journal
Accession number :
edsdoj.8479ee6aafc74918ab9f6c7141c38fbe
Document Type :
article
Full Text :
https://doi.org/10.3390/app13053187