Security access control framework under distributed cloud environment and access method thereof

A security access control and access control technology, which is applied in the field of cloud data processing to prevent channel attacks, prevent interference, and ensure access security.

Inactive Publication Date: 2015-11-11
HEFEI CITY COULD DATA CENT
View PDF3 Cites 6 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The purpose of the present invention is to solve the defect in the prior art that there is no access control architecture for distributed multi-cloud systems, and to provide a security access control architecture and access method in a distributed cloud environment to solve the above problems

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Security access control framework under distributed cloud environment and access method thereof
  • Security access control framework under distributed cloud environment and access method thereof
  • Security access control framework under distributed cloud environment and access method thereof

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0043] In order to have a further understanding and understanding of the structural features of the present invention and the achieved effects, the preferred embodiments and accompanying drawings are used for a detailed description, as follows:

[0044] like figure 2As shown, the security access control architecture under the distributed cloud environment of the present invention, wherein the distributed cloud environment A includes cloud application server A1, cloud platform server A2, virtual infrastructure server A3 and physical layer device A4. Among them, the physical layer device A4 is a cloud service provider, which provides a specific physical layer device basis. The virtual infrastructure server A3 is IaaS, that is, Infrastructure-as-a-Service (Infrastructure-as-a-Service), sometimes also called Hardware-as-a-Service. When trying to run some enterprise applications on the office or company's website, it is necessary to buy a server or other expensive hardware to con...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a security access control framework under a distributed cloud environment and an access method thereof, which solves a defect of unavailability in allusion to a distributed multi-cloud system access control framework. The security access control framework under the distributed cloud environment comprises virtual resource manager A and a distributed access control module A, wherein the virtual resource manager A is used for providing and configuring virtual resources and maintaining a virtual demand resource table associated with the configuration thereof, and the virtual demand resource table comprises local and remote resources in the whole virtual global catalog service library; the distributed access control module A is used for strengthening an access control policy, and comprises a policy decision point, a policy strengthening point and a policy library; and a cloud application server A, a cloud platform server A and a virtual infrastructure server A are all provided with the virtual resource manager A and the distributed access control module A. Provided by the invention is a method for preventing channel attack and no interference in a multi-tenant or resource virtual environment, and a safe and reliable distributed cloud computing infrastructure is established.

Description

technical field [0001] The invention relates to the technical field of cloud data processing, in particular to a security access control framework and an access method in a distributed cloud environment. Background technique [0002] The growing popularity of cloud computing has drawn strong attention to its security challenges, especially in this regard due to resource sharing. Due to the sharing of physical resources in potential dishonest leases, the result will increase the risk of channel attacks, resulting in cloud computing characterized by multi-tenant operation and virtualization, which presents its unique security and access control challenges. Additionally, interference between multi-tenant computing can lead to unauthorized traffic. At the same time, the diversity of services in the cloud computing environment also requires different levels of granularity in access control. Inappropriate or unreliable authorization mechanisms can significantly increase the risk...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L29/08
CPCH04L63/10H04L67/10
Inventor 刘胜军谢飞李晓洁
Owner HEFEI CITY COULD DATA CENT
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products