Policy based access control in dynamic grid-based collaborative environment

被引:0
|
作者
Demchenko, Yuri [1 ]
Gommans, Leon [1 ]
de Laat, Cees [1 ]
Tokmakoff, Andrew [2 ]
van Buuren, Rene [2 ]
机构
[1] Univ Amsterdam, NL-1012 WX Amsterdam, Netherlands
[2] Telematica Inst, Enschede, Netherlands
来源
2006 INTERNATIONAL SYMPOSIUM ON COLLABORATIVE TECHNOLOGIES AND SYSTEMS, PROCEEDINGS | 2006年
关键词
Grid-based Collaborative Environment; policy-based access control; workflow; RBAC; SAML; XACML;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This paper describes the design and development of a flexible, customer-driven, security infrastructure for Grid-based Collaborative Environments. The paper proposes further development of the access control model built around a service or resource provisioning agreement (e.g., an experiment or project) that is used as a basis for an instant access control policy definition and virtual association of users and resources. Work/flow management technology is considered as a solution for dynamic security context management during the lifetime of an experiment. The paper analyses the required functionality and suggests extensions to the generic AAA Authorisation framework in order to support complex collaboration scenarios in dynamic virtualised environments. The paper provides implementation details on the use of XACML for fine-grained access control policy definition for complex resources and team-based role management, and SAML for secure credentials exchange. In addition, the paper discusses how the Virtual Organisations (VO) concept can be used for experiment-based dynamic security association management. The proposed technical solutions are intended to be compatible and interoperable with the current implementation of the Grid security middleware in the Globus Toolkit and gLite. The paper is based on experiences gained from major Grid-based and Grid-oriented projects in collaborative applications and complex resource provisioning.
引用
收藏
页码:64 / +
页数:2
相关论文
共 50 条
  • [1] Collaborative environment for grid-based flood prediction
    Hluchy, L
    Habala, O
    Tran, V
    Gatial, E
    Maliska, M
    Simo, B
    Slizik, P
    COMPUTING AND INFORMATICS, 2005, 24 (01) : 87 - 108
  • [2] A grid-based mobile agent collaborative virtual environment
    Neo, HK
    Lin, QP
    Liew, KM
    2005 INTERNATIONAL CONFERENCE ON CYBERWORLDS, PROCEEDINGS, 2005, : 335 - 339
  • [3] Access Control Based on Trust Policy in Open Grid Environment
    Gao, Liting
    Wang, Zhenyan
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION APPLICATIONS (ICCIA 2012), 2012, : 1612 - 1615
  • [4] Federate migration in grid-based virtual wargame collaborative environment
    Huang, Hai
    Wu, Wei
    Tang, Xin
    Zhou, Zhong
    TECHNOLOGIES FOR E-LEARNING AND DIGITAL ENTERTAINMENT, PROCEEDINGS, 2006, 3942 : 606 - 615
  • [5] Grid-based collaborative simulation design
    Li, Qi
    Chen, Guo-Qiang
    Xi Tong Gong Cheng Yu Dian Zi Ji Shu/Systems Engineering and Electronics, 2006, 28 (12): : 1919 - 1921
  • [6] Detection workload in a dynamic grid-based intrusion detection environment
    Leu, Fang-Yie
    Li, Ming-Chang
    Lin, Jia-Chun
    Yang, Chao-Tung
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2008, 68 (04) : 427 - 442
  • [7] Coverage Path Planning with Proximal Policy Optimization in a Grid-based Environment
    Ianenko, Aleksandr
    Artamonov, Alexander
    Sarapulov, Georgii
    Safaraleev, Alexey
    Bogomolov, Sergey
    Noh, Dong-ki
    2020 59TH IEEE CONFERENCE ON DECISION AND CONTROL (CDC), 2020, : 4099 - 4104
  • [8] Grid-based robot control
    Wu, SD
    Li, YF
    Current Trends in High Performance Computing and Its Applications, Proceedings, 2005, : 501 - 507
  • [9] A grid-based collaborative virtual geographic environment for the planning of silt dam systems
    Lin Hui
    Zhu Jun
    Gong Jianhua
    Xu Bingli
    Qi Hua
    INTERNATIONAL JOURNAL OF GEOGRAPHICAL INFORMATION SCIENCE, 2010, 24 (04) : 607 - 621
  • [10] Federate job mapping strategy in grid-based virtual wargame collaborative environment
    Zhang, Jing
    Huang, Hai
    TECHNOLOGIES FOR E-LEARNING AND DIGITAL ENTERTAINMENT, PROCEEDINGS, 2007, 4469 : 947 - +