Title :
Supporting secure collaborative computing in grid environments
Author :
Zeng, Qinghuai ; Huang, Changqin ; Chen, Deren ; Hualiang Hu Hunan
Author_Institution :
Univ. of Arts & Sci., Changde, China
Abstract :
In grid environments, the dynamic and multi-institutional nature introduces challenging security issues. In this paper, we propose subtask-based authorization service (SAS) architecture to fully secure a type of application oriented to engineering and scientific computing. We minimize privileges for task by decomposing the parallel task and re-allotting the privileges required for each subtask. Community authorization module describes and applies community policies of resource permission and privilege for resource usage or task management. It separates proxy credentials from identity credentials. We adopt a relevant policy and task management delegation to describe rules for task management. The ultimate privileges are formed by the combination of relevant proxy credential, subtask-level privilege certificate and community policy for this user, as well as they conform to resource policy. To enforce the architecture, we extend the RSL specification and the proxy certificate, modify Globus´ gatekeeper, jobmanager and the GASS library to allow authorization callouts, and evaluate the user´s job management requests and job´s resource request in the context of policies.
Keywords :
authorisation; grid computing; groupware; task analysis; GASS library; Globus gatekeeper; RSL specification; community authorization; community policy; engineering computing; grid environments; jobmanager; proxy certificate; relevant proxy credential; resource policy; scientific computing; secure collaborative computing; subtask-based authorization service; subtask-level privilege certificate; task management; user job management; Authorization; Collaboration; Computer architecture; Grid computing; Libraries; Permission; Resource management; Scientific computing; Security; Synthetic aperture sonar;
Conference_Titel :
Computer Supported Cooperative Work in Design, 2004. Proceedings. The 8th International Conference on
Print_ISBN :
0-7803-7941-1
DOI :
10.1109/CACWD.2004.1349224