论文标题
混合云计算中多租户资源的身份和访问管理框架
Identity and Access Management Framework for Multi-tenant Resources in Hybrid Cloud Computing
论文作者
论文摘要
尽管近年来,越来越多的组织一直在尝试将其基础设施转移到云中,但在混合云设置中如何管理身份和访问方面面临着巨大的挑战。本文在多租户混合云环境中展示了共享资源的新颖身份和访问管理框架。本文展示了一种实现云中本地身份“镜像”身份的方法。遵循最佳的安全实践,该框架确保只有合法用户才能在云中使用其镜像身份。此外,本文还提出了一种缩放框架以适应大规模企业的技术。本文中展出的框架为企业提供了一个综合且可扩展的解决方案,以在其混合云基础架构中实现身份和访问控制。尽管本文着重于在Google Cloud平台中实施框架,但可以轻松地应用于任何主要的公共云平台。
While more organizations have been trying to move their infrastructure to the cloud in recent years, there have been significant challenges in how identities and access are managed in a hybrid cloud setting. This paper showcases a novel identity and access management framework for shared resources in a multi-tenant hybrid cloud environment. The paper demonstrates a method to implement the "mirror" identities of on-premise identities in the cloud. Following the best security practices, the framework ensures that only rightful users can use their mirror identities in the cloud. Furthermore, the paper also proposes a technique in scaling the framework to accommodate large-scale enterprises. The framework exhibited in the paper provides a comprehensive and scalable solution for enterprises to implement identity and access control in their hybrid cloud infrastructure. Although the paper focuses on implementing the framework in Google Cloud Platform, it can be easily applied to any major public cloud platform.