Decentralized Access Control in Distributed File Systems

Miltchev, Stefan; Smith, Jonathan M.; Prevelakis, Vassilis; Ioannidis, Sotiris; Keromytis, Angelos D.

The Internet enables global sharing of data across organizational boundaries. Distributed file systems facilitate data sharing in the form of remote file access. However, traditional access control mechanisms used in distributed file systems are intended for machines under common administrative control, and rely on maintaining a centralized database of user identities. They fail to scale to a large user base distributed across multiple organizations. We provide a survey of decentralized access control mechanisms in distributed file systems intended for large scale, in both administrative domains and users. We identify essential properties of such access control mechanisms. We analyze both popular production and experimental distributed file systems in the context of our survey.



Also Published In

ACM Computing Surveys

More About This Work

Academic Units
Computer Science
Published Here
July 5, 2011