City on the Sky: Flexible, Secure Data Sharing on the Cloud
Dinh Tien Tuan Anh, Wang Wenqiang, Anwitaman Datta

TL;DR
This paper proposes a flexible, secure data sharing framework for cloud environments, extending XACML to better enforce access constraints, demonstrated through a prototype in a commercial cloud setting.
Contribution
It introduces an extended XACML-based framework that enhances access control flexibility and enforcement for cloud data sharing scenarios.
Findings
Prototype implementation shows effective enforcement of complex access constraints.
Experimental results demonstrate acceptable performance overhead.
Framework supports diverse data sharing scenarios in cloud environments.
Abstract
Sharing data from various sources and of diverse kinds, and fusing them together for sophisticated analytics and mash-up applications are emerging trends, and are prerequisites for grand visions such as that of cyber-physical systems enabled smart cities. Cloud infrastructure can enable such data sharing both because it can scale easily to an arbitrary volume of data and computation needs on demand, as well as because of natural collocation of diverse such data sets within the infrastructure. However, in order to convince data owners that their data are well protected while being shared among cloud users, the cloud platform needs to provide flexible mechanisms for the users to express the constraints (access rules) subject to which the data should be shared, and likewise, enforce them effectively. We study a comprehensive set of practical scenarios where data sharing needs to be…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Database Systems and Queries · Distributed systems and fault tolerance · Data Quality and Management
