Stand-Out Segmentation Access Control for Cloud Outsourced Data
Qassim Bani Hani, Julius P. Ditcher · 2017
Cloud computing provides several benefits to developers, service providers and consumers with respect to scalability, flexibility and availability at inexpensive cost. On the other hand, security is the main concern for cloud computing, particularlyoutsourced data. We focus on a stand-out segment to protectoutsourced of cloud data, which poses various new securitychallenges that need to be addressed. The security stresses ofoutsourced data to open fogs serves as our motivation to work forthe improvement of data security systems. Existing pretty goodprivacy (PGP) and Kerberos mechanisms provide the secureauthentication. However, both experience the security challenges. When user belongs to multiple group that faces authentication orgroup policy-setting problem with Kerberos. On other hand, prettygood privacy (PGP) overcomes on this security challenge, but itexperiences due to poor usability and lack of ubiquity includinglong length of public key. This paper introduces the stand-out segmentation accesscontrol (SSAC) process for securing cloud outsourced data. TheSSAC involves PGP and Kerberos mechanisms for segmentation. The PGP and the Kerberos combination are used for doubleprocess authentication purposes by integrating the features ofboth. The SSAC aims to ensure that no data are leaked and user isproperly authenticated with rich usability and ubiquity support. The proposed double authentication process is implemented usinga JAVA platform. The results confirm that our proposed approachprovides better security than PGP, Kerberos and other knownauthentication mechanisms.