skip to main content
10.1145/3292006.3302381acmconferencesArticle/Chapter ViewAbstractPublication PagescodaspyConference Proceedingsconference-collections
poster

ABACaaS: Attribute-Based Access Control as a Service

Published:13 March 2019Publication History

ABSTRACT

In recent years, Attribute-Based Access Control (ABAC) has emerged as the desired access control model in scenarios involving sharing of resources across multiple domains. This necessitates organizations using traditional access control models to use ABAC. However, ab initio deployment of ABAC is both cost and time intensive. In this paper, we present ABACaaS - a cloud service that enables any organization to integrate ABAC into their own environment irrespective of the platform they operate in. We show both SaaS as well as PaaS instances of ABACaaS along with results on its performance.

References

  1. R. Sandhu, E. J. Coyne, H. L. Feinstein, and C. E. Youman:Role-Based Access Control Models. IEEE Computer 29, 2, 38--47 (1996) Google ScholarGoogle ScholarDigital LibraryDigital Library
  2. V. C. Hu, D. Ferraiolo, R. Kuhn, A. Schnitzer, K. Sandlin, R. Miller, and K. Scarfon: Guide to Attribute Based Access Control (ABAC) Definition and Considerations. NIST Special Publication (2014)Google ScholarGoogle Scholar
  3. D. Servos, and S. L. Osborn: Current Research and Open Problems in Attribute-Based Access Control. ACM Comput. Surv., 65:1--65:45 (2017) Google ScholarGoogle ScholarDigital LibraryDigital Library
  4. J. M. Alcaraz Calero, N. Edwards, J. Kirschnick, L. Wilcock, and M. Wray:Toward a Multi-Tenancy Authorization System for Cloud Services.IEEE Security and Privacy, 48--55 (2010) Google ScholarGoogle ScholarDigital LibraryDigital Library
  5. R. Wu, X. Zhang, G-J. Ahn, H. Sharifi, and H. Xie:ACaaS: Access Control as a Service for IaaS Cloud. International Conference on Social Computing, 423--428 (2013) Google ScholarGoogle ScholarDigital LibraryDigital Library
  6. X. Jin:Attribute-Based Access Control Models and Implementation in cloud Infrastructure as a Service. Ph.D. Thesis, The University of Texas, (2014)Google ScholarGoogle Scholar
  7. NIST definition for SaaS, PaaS, IaaS, https://cloudinfosec.wordpress.com/2013/05/04/nist-definition-for-saas-paas-iaas/Google ScholarGoogle Scholar

Index Terms

  1. ABACaaS: Attribute-Based Access Control as a Service

      Recommendations

      Comments

      Login options

      Check if you have access through your login credentials or your institution to get full access on this article.

      Sign in
      • Published in

        cover image ACM Conferences
        CODASPY '19: Proceedings of the Ninth ACM Conference on Data and Application Security and Privacy
        March 2019
        373 pages
        ISBN:9781450360999
        DOI:10.1145/3292006

        Copyright © 2019 Owner/Author

        Permission to make digital or hard copies of part or all of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for third-party components of this work must be honored. For all other uses, contact the Owner/Author.

        Publisher

        Association for Computing Machinery

        New York, NY, United States

        Publication History

        • Published: 13 March 2019

        Check for updates

        Qualifiers

        • poster

        Acceptance Rates

        Overall Acceptance Rate149of789submissions,19%

        Upcoming Conference

        CODASPY '24

      PDF Format

      View or Download as a PDF file.

      PDF

      eReader

      View online with eReader.

      eReader