论文标题

基于区块链的RBAC模型与云环境中的职责约束分开

Blockchain-based RBAC Model with Separation of Duties constraint in Cloud Environment

论文作者

Ri, Ok-Chol, Kim, Yong-Jin, Jong, You-Jin

论文摘要

近年来,云计算一直在迅速发展,并且广泛用于商业和科学研究等各个领域。但是,包括访问控制在内的安全问题在普及云计算方面是一个非常重要的问题,这影响了其广泛的云计算应用。作为解决这些问题的解决方案之一,我们提出了一个基于区块链的基于区块链的访问控制模型,并在云环境中分离了职责限制。在模型中,我们使用HyperLeDger Fabric作为一个区块链平台来存储访问控制策略,并为有效的角色管理提供了多个功能。此外,我们通过组合提出的模型和用户拥有角色所有权的验证机制,并分析了该方案的安全性属性,从而提出了用于云存储数据的访问控制方案。最后,我们部署了HyperLeDger Fabric Test网络,实现了一个在线测试系统,该系统使用ALI Cloud环境中建议的方案执行访问控制,并在这种情况下评估了模型性能。

In recent years, cloud computing has been developing rapidly and is widely used in various fields such as commerce and scientific research. However, security issues, including access control, are a very important problem in popularizing cloud computing and this has influenced its wide application of cloud computing. As one of the solutions to these problems, we have proposed a blockchain-based role-based access control model with the separation of duties constraints in a cloud environment. In the model, we used Hyperledger Fabric as a blockchain platform for storing the access control policies and provided several functions for effective role management. In addition, we presented an access control scheme for cloud storage data by combining the proposed model and the verification mechanism for the user's ownership of a role and analyzed the security properties of the scheme. Finally, we deployed Hyperledger Fabric test network, implemented an online test system that performs access control using the proposed scheme in the Ali cloud environment, and evaluated the model performance in this scenario.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源