Giannis Verginadis, G. Mentzas, Simeon Veloudis, I. Paraskakis
{"title":"A Survey on Context Security Policies in the Cloud","authors":"Giannis Verginadis, G. Mentzas, Simeon Veloudis, I. Paraskakis","doi":"10.1109/UCC.2015.103","DOIUrl":null,"url":null,"abstract":"With the pervasion of cloud computing new security risks are created. A promising approach to alleviating these risks is to provide a security-by-design framework that will assist cloud application developers in defining appropriate context-driven access control policies. This paper surveys different approaches to context-driven access control, as well as different modelling formalisms for representing access control policies. The aim of this survey is to assess the appropriateness of existing approaches for the construction of a generic security-by-design framework, in particular one which is exposed as a PaaS offering.","PeriodicalId":381279,"journal":{"name":"2015 IEEE/ACM 8th International Conference on Utility and Cloud Computing (UCC)","volume":"3 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2015-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2015 IEEE/ACM 8th International Conference on Utility and Cloud Computing (UCC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/UCC.2015.103","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 7
Abstract
With the pervasion of cloud computing new security risks are created. A promising approach to alleviating these risks is to provide a security-by-design framework that will assist cloud application developers in defining appropriate context-driven access control policies. This paper surveys different approaches to context-driven access control, as well as different modelling formalisms for representing access control policies. The aim of this survey is to assess the appropriateness of existing approaches for the construction of a generic security-by-design framework, in particular one which is exposed as a PaaS offering.