Prachi and I have been working on IAM module for CloudStack, you may be able to 
get some idea from our work. Please see our functional spec at 
https://cwiki.apache.org/confluence/display/CLOUDSTACK/CloudStack+Identity+and+Access+Management+%28IAM%29+Plugin.
 Also you can also take a look at our slides presented on Apache CloudStack 
Collaboration conference in Denver several weeks ago,  
http://events.linuxfoundation.org/sites/events/files/slides/ApachIAM.pdf.

Thanks
-min

From: Priya Sharma 
<priya_sha...@persistent.co.in<mailto:priya_sha...@persistent.co.in>>
Reply-To: "dev@cloudstack.apache.org<mailto:dev@cloudstack.apache.org>" 
<dev@cloudstack.apache.org<mailto:dev@cloudstack.apache.org>>
Date: Monday, April 28, 2014 11:46 PM
To: "'dev@cloudstack.apache.org<mailto:'dev@cloudstack.apache.org>'" 
<dev@cloudstack.apache.org<mailto:dev@cloudstack.apache.org>>
Subject: Role based access control using XACML and SAML over rest for cloud

Hi All,
I am pursing MTech and my MTech project is “Role based access control using 
XACML and SAML over rest for cloud”.
I am familiar with role based access control, XACML, SAML ,but not aware how 
all this work in cloud. My aim is to implement the role based access control 
for cloud ,I  am interested in cloud security.
I am familiar with Linux environment, Java technology.
Herein I am attaching the architecture diagram, I initially came up with.
Any suggestion in the diagram and how to implement role based access control 
will be helpful.

Thanks
Priya

DISCLAIMER ========== This e-mail may contain privileged and confidential 
information which is the property of Persistent Systems Ltd. It is intended 
only for the use of the individual or entity to which it is addressed. If you 
are not the intended recipient, you are not authorized to read, retain, copy, 
print, distribute or use this message. If you have received this communication 
in error, please notify the sender and delete all copies of this message. 
Persistent Systems Ltd. does not accept any liability for virus infected mails.

Reply via email to