2014
DOI: 10.1007/978-3-319-11698-3_5
|View full text |Cite
|
Sign up to set email alerts
|

Extending OpenStack Access Control with Domain Trust

Abstract: Abstract. OpenStack has been rapidly established as the most popular open-source platform for cloud Infrastrusture-as-a-Service in this fast moving industry. In response to increasing access control requirements from its users, the OpenStack identity service Keystone has introduced several entities, such as domains and projects in addition to roles, resulting in a rather complex and somewhat obscure authorization model. In this paper, we present a formalized description of the core OpenStack access control (OS… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
25
0

Year Published

2014
2014
2019
2019

Publication Types

Select...
3
3
1

Relationship

3
4

Authors

Journals

citations
Cited by 29 publications
(25 citation statements)
references
References 20 publications
(25 reference statements)
0
25
0
Order By: Relevance
“…Other RBAC extensions towards collaboration uses centralized authority to manage collaboration which is not applicable in multi-cloud scenarios. Recent work on collaboration such as CTTM [21] and OSAC-DT [22] extended RBAC to inherit its benefits toward collaboration. CTTM enables trust between tenants in a single cloud.…”
Section: Related Workmentioning
confidence: 98%
See 1 more Smart Citation
“…Other RBAC extensions towards collaboration uses centralized authority to manage collaboration which is not applicable in multi-cloud scenarios. Recent work on collaboration such as CTTM [21] and OSAC-DT [22] extended RBAC to inherit its benefits toward collaboration. CTTM enables trust between tenants in a single cloud.…”
Section: Related Workmentioning
confidence: 98%
“…In Figure 4, the conceptual administrative boundary of each realm with relation to services and users in a cloud is illustrated. Such conceptual structure of entities presents an extension the OSAC model for OpenStack [22].…”
Section: The Administrative Realms Of Collaborationmentioning
confidence: 99%
“…In the context of cloud, in [10], the author proposed trust relationships established between tenants to facilitate sharing. It makes outsourcing easy to implement by simply adding trust relationships among tenants in cloud.…”
Section: Related Workmentioning
confidence: 99%
“…OpenStack provides several services, including compute (Nova), identity (Keystone), block storage (Cin- In [10], the authors present a core OpenStack Access Control (OSAC) model based on the OpenStack Identity API v3, as shown in figure 2. The OSAC model consists of eight entities: users, groups, projects, domains, roles, services, operations, and tokens.…”
Section: Introductionmentioning
confidence: 99%
See 1 more Smart Citation