• DocumentCode
    1787497
  • Title

    The MyProxy Gateway

  • Author

    Dooley, Rion ; Stubbs, Joe ; Basney, Jim

  • Author_Institution
    Texas Adv. Comput. Center, Univ. of Texas at Austin, Austin, TX, USA
  • fYear
    2014
  • fDate
    3-5 June 2014
  • Firstpage
    6
  • Lastpage
    11
  • Abstract
    In 2000, the original My Proxy server was released to provide a centralized way to securely store and delegate grid credentials. In 2009, the OAuth for My Proxy (OA4MP) server was released in response to security concerns expressed by resource providers and a strong trend of science gateways moving to the web. OA4MP provided a standards-based way for users to delegate X.509 credentials from My Proxy to science gateways without exposing user passwords to third-party services. This addressed both a security concern for service providers and a desire by gateway developers for a standards-based approaches to security. While OA4MP solved some problems, it introduced others. The My Proxy Gateway Service (MPG) is a Restful API to My Proxy that picks up where OA4MP left off by supporting OAuth2 credential renewal, attribute insertion, trust root management, language agnostic access patterns, and improved accounting. In this paper we first start by looking at related work and detailing the evolution of My Proxy up to the writing of this paper. Next we briefly describe OAuth2 and highlight the differences between it and OAuth1. After that we describe the MPG, its multiple configurations, and security considerations. We conclude with finishing remarks.
  • Keywords
    Internet; computer network security; grid computing; network servers; MyProxy gateway; MyProxy server; OA4MP; OAuth for MyProxy; World Wide Web; grid credentials; security concerns; Authentication; Authorization; Browsers; Logic gates; Servers; Web services; REST; api; authentication; grid; myproxy; oauth; security; web service;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Science Gateways (IWSG), 2014 6th International Workshop on
  • Conference_Location
    Dublin
  • Type

    conf

  • DOI
    10.1109/IWSG.2014.8
  • Filename
    6882061