Testing Access Control List Policies in a Hadoop Environment
Oussama Maakoul, Mohammed Amine Tajioue, Sara Hsaini, Salma Azzouzi, My El Hassan Charaf · 2020
Hadoop has emerged over the past few years as the most popular framework to process large-scale datasets efficiently. The idea is to process large datasets using several programs on multi-nodes hardware. However, the execution of such model on large clusters can be more complex and could produce several failures due to bugs or hardware problems or misuse of sensitive data. In fact, data security and Map-Reduce calculations are key concerns when a Map-Reduce calculation is performed in public domain. In this paper, we propose an Access Control model based on XACML language to test the Access Control List policies on both the MapReduce framework and the Hadoop distributed file system. To this end, we transform both the Access Control List policies and the users' objectives using the XACML language. Then, we introduce a Multi-Agents system to test the objectives expressed by users against the ACL policies.