Prachi and I have been working on IAM module for CloudStack, you may be able to get some idea from our work. Please see our functional spec at https://cwiki.apache.org/confluence/display/CLOUDSTACK/CloudStack+Identity+and+Access+Management+%28IAM%29+Plugin. Also you can also take a look at our slides presented on Apache CloudStack Collaboration conference in Denver several weeks ago, http://events.linuxfoundation.org/sites/events/files/slides/ApachIAM.pdf.
Thanks -min From: Priya Sharma <priya_sha...@persistent.co.in<mailto:priya_sha...@persistent.co.in>> Reply-To: "dev@cloudstack.apache.org<mailto:dev@cloudstack.apache.org>" <dev@cloudstack.apache.org<mailto:dev@cloudstack.apache.org>> Date: Monday, April 28, 2014 11:46 PM To: "'dev@cloudstack.apache.org<mailto:'dev@cloudstack.apache.org>'" <dev@cloudstack.apache.org<mailto:dev@cloudstack.apache.org>> Subject: Role based access control using XACML and SAML over rest for cloud Hi All, I am pursing MTech and my MTech project is “Role based access control using XACML and SAML over rest for cloud”. I am familiar with role based access control, XACML, SAML ,but not aware how all this work in cloud. My aim is to implement the role based access control for cloud ,I am interested in cloud security. I am familiar with Linux environment, Java technology. Herein I am attaching the architecture diagram, I initially came up with. Any suggestion in the diagram and how to implement role based access control will be helpful. Thanks Priya DISCLAIMER ========== This e-mail may contain privileged and confidential information which is the property of Persistent Systems Ltd. It is intended only for the use of the individual or entity to which it is addressed. If you are not the intended recipient, you are not authorized to read, retain, copy, print, distribute or use this message. If you have received this communication in error, please notify the sender and delete all copies of this message. Persistent Systems Ltd. does not accept any liability for virus infected mails.