DocumentCode
2016822
Title
A Scalable Security Model for Enabling Dynamic Virtual Private Execution Infrastructures on the Internet
Author
Primet, Pascale Vicat-Blanc ; Gelas, Jean-Patrick ; Mornard, Olivier ; Koslovski, Guilherme ; Roca, Vincent ; Giraud, Lionel ; Montagnat, Johan ; Huu, Tram Truong
Author_Institution
INRIA, Univ. of Lyon, Lyon
fYear
2009
fDate
18-21 May 2009
Firstpage
348
Lastpage
355
Abstract
With the expansion and the convergence of computing and communication, the dynamic provisioning of customized processing and networking infrastructures as well as resource virtualization are appealing concepts and technologies. Therefore, new models and tools are needed to allow users to create, trust and exploit such on-demand virtual infrastructures within wide area distributed environments. This paper proposes to combine network and system virtualization with cryptographic identification and SPKI/HIP principles to help the user communities to build and share their own resource reservoirs. These ideas are implemented in the HIPerNet framework enabling the creation and the management of customized confined execution environments in a large scale context. Based on the example of biomedical applications, the paper focuses on the security model of the HIPerNet system and develops the key aspects of our distributed security approach. Then the paper discusses and illustrates how HIPerNet solutions fulfill the security requirements of applications through different scenarios.
Keywords
Internet; authorisation; cryptographic protocols; medical computing; public key cryptography; resource allocation; virtual machines; Internet; SPKI/HIP principle; authorisation; biomedical application; cryptographic identification; dynamic virtual private execution infrastructure; resource virtualization; scalable distributed security model; Computer networks; Computer vision; Environmental management; Grid computing; Hip; Internet; Large-scale systems; Public key cryptography; Resource virtualization; Security; Execution Infrastructure as a service; SPKI; authorization; resource virtualization;
fLanguage
English
Publisher
ieee
Conference_Titel
Cluster Computing and the Grid, 2009. CCGRID '09. 9th IEEE/ACM International Symposium on
Conference_Location
Shanghai
Print_ISBN
978-1-4244-3935-5
Electronic_ISBN
978-0-7695-3622-4
Type
conf
DOI
10.1109/CCGRID.2009.76
Filename
5071891
Link To Document