Policy-based access control in Peer-to-Peer Grid systems

被引:0
作者
da Silva, JF [1 ]
Gaspary, LP [1 ]
Barcellos, MP [1 ]
Detsch, A [1 ]
机构
[1] UNISINOS Univ, Porto Alegre, RS, Brazil
来源
2005 6TH INTERNATIONAL WORKSHOP ON GRID COMPUTING (GRID) | 2005年
关键词
Peer-to-Peer; grid computing; authorization; access control; OurGrid;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Access control to resources is one of the most important requirements to be satisfied in grid systems that span over multiple administrative domains. Such a mechanism allows every institution taking part of a grid community to define and enforce policies for the use of their local resources by remote users. Despite the efforts of the research community to address this topic, existing approaches do not scale (e.g. in terms of communication overhead) for a large number of nodes (peers) providing resources, as these approaches rely on centralized servers to process access requests. Furthermore, they provide limited, large-grain policy specification functionality and are not committed to employing open, standardized formats to express policies. In this paper, we address these limitations by proposing PeGAC (Peer-to-Peer Grid Access Control), a policy-based, distributed access control mechanism, which can be applied to P2P grid systems. In our proposal, policies are specified using the role-based access control model and coded using the extensible access control markup language. As a proof-of-concept we have integrated PeGAC into OurGrid, a middleware for the implementation of P2P grid systems. Preliminary results of experiments carried out at the resulting infrastructure show that our solution poses small communication and processing overhead, and can handle large policy repositories efficiently.
引用
收藏
页码:107 / 113
页数:7
相关论文
共 7 条
  • [1] ALFIERI R, 2003, EUR GRIDS C, P33
  • [2] ANDRADE N, 2003, 9 WORKSH JOB SCH STR, P61
  • [3] [Anonymous], 2005, EXTENSIBLE ACCESS CO
  • [4] Scheduling in bag-of-task grids: The PAUA case
    Cirne, W
    Brasileiro, F
    Costa, L
    Paranhos, D
    Santos-Neto, E
    Andrade, N
    De Rose, U
    Ferreto, T
    Mowbray, M
    Scheer, R
    Jornada, J
    [J]. 16TH SYMPOSIUM ON COMPUTER ARCHITECTURE AND HIGH PERFORMANCE COMPUTING, PROCEEDINGS, 2004, : 124 - 131
  • [5] DETSCH A, 2004, 2 WORKSH MIDDL GRID, P52
  • [6] SANDHU R, 2005, PROPOSED NIST STANDA
  • [7] ZHANG G, 2003, 4 INT WORKSH GRID CO