• DocumentCode
    2427768
  • Title

    A Framework for Authentication and Authorization Credentials in Cloud Computing

  • Author

    Mimura Gonzalez, Nelson ; Torrez Rojas, Marco Antonio ; Maciel da Silva, Marcos Vinicius ; Redigolo, Fernando ; Melo de Brito Carvalho, Tereza Cristina ; Miers, Charles Christian ; Naslund, Mats ; Ahmed, Amjed Sid

  • Author_Institution
    Lab. of Comput. Networks & Archit., Univ. of Sao Paulo, São Paulo, Brazil
  • fYear
    2013
  • fDate
    16-18 July 2013
  • Firstpage
    509
  • Lastpage
    516
  • Abstract
    Security is a key concern when adopting cloud technology. Cloud solutions include not only issues inherited from related technologies, such as virtualization and distributed computing, but also new concerns associated to complexity of the cloud ecosystem, composed by the cloud entities and their interactions. One of the concerns is related to authentication and authorization in the cloud in order to provide robust mechanisms to identify entities and establish their permissions and roles in the cloud, controlling resource usage and promoting accounting and isolation. This paper identifies the state of the art in terms of credential management focusing on the cloud ecosystem. It proposes a credential classification and a framework for studying and developing solutions in this context, unifying concepts related to cloud deployment models, service types, entities and lifecycle controls.
  • Keywords
    authorisation; cloud computing; virtualisation; accounting promotion; authentication credential framework; authorization credential framework; cloud computing; cloud deployment models; cloud ecosystem complexity; cloud entity interactions; credential classification; credential management; distributed computing; isolation promotion; lifecycle control; resource usage control; security technology; service types; unifying concepts; virtualization; Authentication; Authorization; Biological system modeling; Cloud computing; Ecosystems; Organizations; authentication; authorization; cloud computing; credentials;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Trust, Security and Privacy in Computing and Communications (TrustCom), 2013 12th IEEE International Conference on
  • Conference_Location
    Melbourne, VIC
  • Type

    conf

  • DOI
    10.1109/TrustCom.2013.63
  • Filename
    6680881