• DocumentCode
    1614917
  • Title

    Security for Grid services

  • Author

    Welch, Von ; Siebenlist, Frank ; Foster, Ian ; Bresnahan, John ; Czajkowski, Karl ; Gawor, Jarek ; Kesselman, Carl ; Meder, Sam ; Pearlman, Laura ; Tuecke, Steven

  • Author_Institution
    Dept. of Comput. Sci., Chicago Univ., IL, USA
  • fYear
    2003
  • Firstpage
    48
  • Lastpage
    57
  • Abstract
    Grid computing is concerned with the sharing and coordinated use of diverse resources in distributed "virtual organizations." The dynamic and multiinstitutional nature of these environments introduces challenging security issues that demand new technical approaches. In particular, one must deal with diverse local mechanisms, support dynamic creation of services, and enable dynamic creation of trust domains. We describe how these issues are addressed in two generations of the Globus Toolkit®. First, we review the Globus Toolkit version 2 (GT2) approach; then we describe new approaches developed to support the Globus Toolkit version 3 (GT3) implementation of the Open Grid Services Architecture, an initiative that is recasting Grid concepts within a service-oriented framework based on Web services. GT3\´s security implementation uses Web services security mechanisms for credential exchange and other purposes, and introduces a tight least-privilege model that avoids the need for any privileged network service.
  • Keywords
    Internet; grid computing; middleware; security of data; software tools; GT2; GT3; Globus Toolkit version 2 approach; Globus Toolkit version 3 implementation; Web services security mechanisms; credential exchange; distributed virtual organizations; diverse local mechanisms; dynamic creation; least-privilege model; multiinstitutional nature; network service; open Grid services architecture; security implementation; service-oriented framework; trust domains; Computer network management; Computer science; Computer security; Grid computing; Information security; Mathematics; National security; Resource management; Service oriented architecture; Web services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    High Performance Distributed Computing, 2003. Proceedings. 12th IEEE International Symposium on
  • ISSN
    1082-8907
  • Print_ISBN
    0-7695-1965-2
  • Type

    conf

  • DOI
    10.1109/HPDC.2003.1210015
  • Filename
    1210015