• DocumentCode
    705718
  • Title

    Autonomous Decentralized Tenant Access Control Model for Sub-tenancy Architecture in Software-as-a-Service (SaaS)

  • Author

    Qiong Zuo ; Meiyi Xie ; Wei-Tek Tsai

  • Author_Institution
    Sch. of Comput. Sci. & Technol., Huazhong Univ. of Sci. & Technol., Wuhan, China
  • fYear
    2015
  • fDate
    25-27 March 2015
  • Firstpage
    211
  • Lastpage
    216
  • Abstract
    Sub-Tenancy Architecture (STA), is an extension of Multi-Tenancy Architecture (MTA), allows tenants to offer services for subtenant developers to customize their applications in the SaaS infrastructure [1]. In a STA system, tenants are autonomous decentralized entities who can create subtenants, and grant their resources (including private services and data) to their subtenants. The isolation and sharing relations between parent-child tenants, sibling tenants or non-related tenants are more complicated than those between tenants in MTA. It is important to keep resource private, and at the same time, allow them to be shared, and support application customizations for tenants. This paper provides a formal definition of a new tenant-based access control model based on Administrative Role-Based Access Control (ARBAC) for STA in SaaS. Autonomous Areas (AA) and AA-tree are proposed to describe the autonomy of tenants, including their isolation and sharing relationships. Different resource sharing methods are given out to create and deploy the access control scheme in STA models.
  • Keywords
    authorisation; cloud computing; resource allocation; AA-tree; ARBAC; SaaS infrastructure; autonomous area; autonomous decentralized tenant access control model; isolation relationship; multitenancy architecture; resource sharing method; sharing relationship; software-as-a-service; sub-tenancy architecture; Authorization; Computer architecture; Modeling; Organizations; Resource management; Multi-Tenancy Architecture (MTA); Role-based Access Control (RBAC) Model; Software-as-a-Service (SaaS); Sub-Tenancy Architecture (STA); Tenant-based Access Control Model;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Autonomous Decentralized Systems (ISADS), 2015 IEEE Twelfth International Symposium on
  • Conference_Location
    Taichung
  • Print_ISBN
    978-1-4799-8260-8
  • Type

    conf

  • DOI
    10.1109/ISADS.2015.47
  • Filename
    7098261