大数据平台下多租户模型管理关键技术研究
[Abstract]:With the rapid development of SaaS cloud technology, more and more software developers begin to provide users with efficient and convenient software services through cloud platform. To meet the need to provide software services to multiple users at the same time, these cloud platforms often run in a "single instance, multi-tenant" mode. Many tenants run in the same system instance at the same time, which leads to many problems in system access control security. For example, the data isolation between tenants is difficult to guarantee, and tenant data is easy to be accessed and tampered with illegally. The privilege system of the platform is single, which can not meet the needs of different tenants, and the privilege management of multi-tenant has a huge workload and is prone to error and so on. In order to solve these access control problems in multi-tenant environment, this paper improves on the existing research. The main work includes: 1) in order to solve the problems of access control exposed in multi-tenant environment, In this paper, a role-based multi-tenant access control model (MT-RBAC model) is proposed. The model presents the basic idea of dividing objects, operations and permissions into regions, and formulates the atomic permissions that must be observed in the design of permissions. Each domain permission set mutually exclusive and the role authority domain single three big stipulation. According to the analysis of MT-RBAC model, this model not only ensures the data isolation among tenants, but also meets the requirements of different tenants' different permission configuration. And make the privilege management more convenient. 2) analyze the requirement and deficiency of MT-RBAC model in data sharing, and propose the MT-RBAC model (SMT-RBAC model) which supports data sharing. On the basis of not breaking the data isolation of MT-RBAC model, this model adds special shared domain and corresponding sharing mechanism. The SMT-RBAC model is applied to the laboratory project big data to deal with the SaaS platform. Firstly, the general overview of the platform and the user management module are briefly introduced. Then the design and implementation of platform access control module based on SMT-RBAC model are described in detail, and the function and performance of the module are tested and analyzed. Finally, the design and implementation of two key technologies, single sign-on and model data consistency checking, are introduced.
【学位授予单位】:电子科技大学
【学位级别】:硕士
【学位授予年份】:2017
【分类号】:TP393.09;TP311.13
【参考文献】
相关期刊论文 前10条
1 丁文毅;;多租户软件中动态个性化配置与定制技术分析[J];网友世界;2013年04期
2 马强;艾中良;;面向云计算环境的访问控制模型[J];计算机工程与设计;2012年12期
3 李晓娜;李庆忠;孔兰菊;庞成;;基于共享模式的SaaS多租户数据划分机制研究[J];通信学报;2012年S1期
4 景秀丽;;云计算服务交付模式及其商业实践研究[J];中国管理信息化;2012年18期
5 董富江;马竟先;;SaaS中多租户数据存储模式比较研究[J];软件导刊;2012年05期
6 谈圳;;云计算虚拟化技术研究[J];信息技术与信息化;2012年01期
7 杨辉;;基于SAAS模式的系统安全性探讨[J];福建电脑;2011年02期
8 熊锦华;虎嵩林;刘晖;;云计算中的按需服务[J];中兴通讯技术;2010年04期
9 魏立峰;孟凯凯;何连跃;;面向用户角色的细粒度自主访问控制机制[J];计算机应用;2009年10期
10 陈全;邓倩妮;;云计算及其关键技术[J];计算机应用;2009年09期
相关会议论文 前1条
1 刘勇;王建民;叶晓俊;;一种扩展的RBAC模型及其实现机制[A];第二十二届中国数据库学术会议论文集(研究报告篇)[C];2005年
相关硕士学位论文 前6条
1 陈莉雅;基于SaaS模式的库存管理数据安全的研究[D];浙江理工大学;2015年
2 李丽宁;SaaS访问控制模型研究与应用[D];西北农林科技大学;2013年
3 袁琦;SAAS模式下访问控制的研究及应用[D];暨南大学;2012年
4 王学;面向SaaS应用交付平台的多租户数据索引研究[D];山东大学;2012年
5 林琳;基于RBAC扩展模型的权限管理系统的设计与实现[D];电子科技大学;2011年
6 及东兴;SaaS平台构建方法研究[D];西安电子科技大学;2010年
,本文编号:2396263
本文链接:https://www.wllwen.com/guanlilunwen/ydhl/2396263.html