The invention provides a dynamic risk
access control method of a cloud platform. The control method comprises steps of submitting an access request, implementing a
rule matching strategy, carrying out an event deduction process, extracting a
risk evaluation index, carrying out
risk evaluation index
weight distribution, calculating a risk value, calculating a threshold value, and making an
access control decision. According to the dynamic risk
access control method, an
attribute based access control (ABAC) strategy is improved by using an event deduction mechanism with high
expressivity and flexibility, thereby enhancing the dynamic and flexible properties during
rule matching and thus realizing high adaptability to the complicated cloud environment; and a
risk assessment index is constructed by using a
system security state and historical behavior information of the user, a mathematic model for calculating a
risk assessment index weight is put forward, and a corresponding weight is calculated based on a formula regression
algorithm, so that the sensitivity to the access request by the risk value is improved. On the basis of observation of a simulated experiment, the rule is adjusted dynamically based on a change of an access request attribute; and the
risk assessment index weights are distributed dynamically in real time and the sensitivity to the risk value by the access request is improved. The method has the good real-time and dynamic performances.