A new hybrid access control model for multi-domain systems

Author(s):  
Ben Attia Hasiba ◽  
Laid Kahloul ◽  
Saber Benharzallah
2019 ◽  
Vol 8 (4) ◽  
pp. 7267-7271

Access control and Data confidentiality are key technology to ensure the security of system and to protect the privacy of the users. The modified Collaborative Trust Enhanced Security (CTES) model has an inbuilt access control mechanism for Kerberos protocol itself to enforce the access control policy directly into the Client system node. This paper explains the hybrid access control model with Role Based Access Control (RBAC) and Attribute Based Access Control (ABAC) for modified CTES framework through Kerberos protocol. Hence, it retains the concept of “role”, “group” and “attributes” for the user which are necessary to protect data privacy in the system. Data confidentiality for the stored data in Cloud is achieved by cryptographic techniques. Gnu Privacy Guard (GnuPG) based certificate is capable enough to verify the identity of the correspondent in information exchange as well as the information integrity. It is a strongest authentication technique where the user is asked to provide his/her digital ID for validation in the Server and enables Single sign-on services for Kerberos Authorization in modified CTES model. In this paper, it is proposed for a new Kerberos Authorization with Hybrid Access Control Model (KAHAC) for single-domain systems and multi-domain systems in Public Cloud based on roles, attributes, groups, access modes and the type of resources.


IEEE Access ◽  
2020 ◽  
Vol 8 ◽  
pp. 24196-24208
Author(s):  
Muhammad Umar Aftab ◽  
Yasir Munir ◽  
Ariyo Oluwasanmi ◽  
Zhiguang Qin ◽  
Muhammad Haris Aziz ◽  
...  

2011 ◽  
Vol 474-476 ◽  
pp. 1081-1086
Author(s):  
Long Jun Huang ◽  
Cai Ying Zhou ◽  
Yuan Wang Wei ◽  
Li Ping Dai

The scale of modern systems is increasingly large, the system safety requirements have become more sophisticated, a single access control model could not do. In view of this situation, this paper presents a core RBAC, integration MAC, DAC thought and proposed a hybrid access control model - M-AC model (Mixed Access Control Model). The model is fully three kinds of advantages of the traditional access control model to eliminate each other's shortcomings, to meet the large-scale complex systems, the stringent requirements for access control. In the formal definition is given of the model, as well as rules, with an actual project, the implementation of the model methods are analyzed and studied.


2009 ◽  
Vol 28 (12) ◽  
pp. 3214-3216
Author(s):  
Yi DING ◽  
Yong FANG ◽  
An-min ZHOU ◽  
Jiao ZENG ◽  
Yu FAN

Sign in / Sign up

Export Citation Format

Share Document