SaaS Authentication Middleware for Mobile Consumers of IaaS Cloud

Richard K. Lomotey, R. Deters
{"title":"SaaS Authentication Middleware for Mobile Consumers of IaaS Cloud","authors":"Richard K. Lomotey, R. Deters","doi":"10.1109/SERVICES.2013.34","DOIUrl":null,"url":null,"abstract":"The mobile terrain is rapidly establishing itself as the reliable node for accessing cloud hosted data. Today, commodity cloud providers especially from the Infrastructure-as-a-Service (IaaS) cloud expose their service APIs which facilitates the \"app-ification\" of enterprise workflows on mobile devices. However, these IaaS providers require the customer (i.e., the data consumer) to submit multiple security credentials which are computation intensive for the purposes of authentication and authorization. As a result, the authentication process introduces undesired delays in a mobile network when consuming enterprise data due to the increasing computational demand and the voluminous HTTP header that is transported across the wireless bandwidth.This paper introduces an application called MiLAMob that is a middleware-layer that handles the authentication process on behalf of the consumer devices in real time and with minimal HTTP traffic. The middleware currently supports mobile consumption of data on IaaS clouds such as Amazon S3, Dropbox, and MEGA. Further, the middleware employs the OAuth 2.0 technique (E.g. Facebook, Google+, and Personal Login) to identify the mobile end-user and uses security tokens to handle the tedious authentication with the IaaS cloud. Also, the deployment of the middleware enforces additional data protection because the security credentials and the IaaS abstractions are shielded from the mobile application domain and the end users.","PeriodicalId":169370,"journal":{"name":"2013 IEEE Ninth World Congress on Services","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2013-06-28","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"23","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2013 IEEE Ninth World Congress on Services","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SERVICES.2013.34","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 23

Abstract

The mobile terrain is rapidly establishing itself as the reliable node for accessing cloud hosted data. Today, commodity cloud providers especially from the Infrastructure-as-a-Service (IaaS) cloud expose their service APIs which facilitates the "app-ification" of enterprise workflows on mobile devices. However, these IaaS providers require the customer (i.e., the data consumer) to submit multiple security credentials which are computation intensive for the purposes of authentication and authorization. As a result, the authentication process introduces undesired delays in a mobile network when consuming enterprise data due to the increasing computational demand and the voluminous HTTP header that is transported across the wireless bandwidth.This paper introduces an application called MiLAMob that is a middleware-layer that handles the authentication process on behalf of the consumer devices in real time and with minimal HTTP traffic. The middleware currently supports mobile consumption of data on IaaS clouds such as Amazon S3, Dropbox, and MEGA. Further, the middleware employs the OAuth 2.0 technique (E.g. Facebook, Google+, and Personal Login) to identify the mobile end-user and uses security tokens to handle the tedious authentication with the IaaS cloud. Also, the deployment of the middleware enforces additional data protection because the security credentials and the IaaS abstractions are shielded from the mobile application domain and the end users.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
IaaS云移动用户的SaaS认证中间件
移动领域正迅速成为访问云托管数据的可靠节点。今天,商品云提供商,特别是来自基础设施即服务(IaaS)云的提供商公开了他们的服务api,这些api促进了企业工作流在移动设备上的“应用”。然而,这些IaaS提供商要求客户(即数据消费者)提交多个安全凭证,这些凭证对于身份验证和授权来说是计算密集型的。因此,在使用企业数据时,由于不断增加的计算需求和通过无线带宽传输的大量HTTP头,身份验证过程在移动网络中引入了不希望的延迟。本文介绍了一个名为MiLAMob的应用程序,它是一个中间件层,代表消费者设备实时处理身份验证过程,并且使用最小的HTTP流量。该中间件目前支持IaaS云(如Amazon S3、Dropbox和MEGA)上的移动数据消费。此外,中间件采用OAuth 2.0技术(例如Facebook、Google+和Personal Login)来识别移动终端用户,并使用安全令牌来处理IaaS云的繁琐身份验证。此外,中间件的部署强制执行额外的数据保护,因为安全凭证和IaaS抽象对移动应用程序域和最终用户是屏蔽的。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Auditing Requirements for Implementing the Chinese Wall Model in the Service Cloud HRPaaS: A Handwriting Recognition Platform as a Service  Based on Middleware and the HTTP API Service Discovery Using Ontology Encoding Enhanced by Similarity of Information Content Simultaneously Supporting Privacy and Auditing in Cloud Computing Systems Bridging the GAP between Software Certification and Trusted Computing for Securing Cloud Computing
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1