JOURNAL ARTICLE

A multi-tenant RBAC model for collaborative cloud services

Abstract

Most cloud services are built with multi-tenancy which enables data and configuration segregation upon shared infrastructures. In this setting, a tenant temporarily uses a piece of virtually dedicated software, platform, or infrastructure. To fully benefit from the cloud, tenants are seeking to build controlled and secure collaboration with each other. In this paper, we propose a Multi-Tenant Role-Based Access Control (MT-RBAC) model family which aims to provide fine-grained authorization in collaborative cloud environments by building trust relations among tenants. With an established trust relation in MT-RBAC, the trustee can precisely authorize cross-tenant accesses to the truster's resources consistent with constraints over the trust relation and other components designated by the truster. The users in the trustee may restrictively inherit permissions from the truster so that multi-tenant collaboration is securely enabled. Using SUN's XACML library, we prototype MT-RBAC models on a novel Authorization as a Service (AaaS) platform with the Joyent commercial cloud system. The performance and scalability metrics are evaluated with respect to an open source cloud storage system. The results show that our prototype incurs only 0.016 second authorization delay for end users on average and is scalable in cloud environments.

Keywords:
Cloud computing Computer science Scalability Role-based access control Multitenancy Access control Computer security XACML Software as a service Database Service (business) Relation (database) Authorization World Wide Web Software Operating system Software development

Metrics

49
Cited By
25.15
FWCI (Field Weighted Citation Impact)
34
Refs
0.99
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Access Control and Trust
Social Sciences →  Social Sciences →  Sociology and Political Science
Cryptography and Data Security
Physical Sciences →  Computer Science →  Artificial Intelligence
Cloud Data Security Solutions
Physical Sciences →  Computer Science →  Information Systems

Related Documents

JOURNAL ARTICLE

A Cross-Tenant RBAC Model for Collaborative Cloud Services

Zhengtao LiuJinyue Xia

Journal:   Computers, materials & continua/Computers, materials & continua (Print) Year: 2019 Vol: 60 (1)Pages: 395-408
JOURNAL ARTICLE

Accountability management for multi-tenant cloud services

Ahmed Hadj KacemMonia LoulouMohamed SellamiFatma Masmoudi

Journal:   International Journal of Grid and Utility Computing Year: 2019 Vol: 10 (2)Pages: 141-141
JOURNAL ARTICLE

Accountability management for multi-tenant cloud services

Fatma MasmoudiMohamed SellamiMonia LoulouAhmed Hadj Kacem

Journal:   International Journal of Grid and Utility Computing Year: 2019 Vol: 10 (2)Pages: 141-141
© 2026 ScienceGate Book Chapters — All rights reserved.