Title :
Security issues in on-demand grid and cluster computing
Author :
Smith ; Engel, M. ; Friese, Thomas ; Freisleben, Bernd
Author_Institution :
Dept. of Math. & Comput. Sci., Marburg Univ.
Abstract :
In this paper, security issues in on-demand grid and cluster computing are analyzed, a corresponding threat model is presented and the challenges with respect to authentication, authorization, delegation and single sign-on, secure communication, auditing, safety, and confidentiality are discussed. Three different levels of on-demand computing are identified, based on the number of resource providers, solution producers and users, and the trust relationships between them. It is argued that the threats associated with the first two levels can be handled by employing operating system virtualization technologies based on Xen, whereas the threats of the third level require the use of hardware security modules proposed in the context of the Trusted Computing Platform Alliance (TCPA). The presented security mechanisms increase the resilience of the service hosting environment against both malicious attacks and erroneous code. Thus, our proposal paves the way for large scale hosting of grid or Web services in commercial scenarios
Keywords :
authorisation; data privacy; grid computing; message authentication; operating systems (computers); telecommunication security; virtual machines; workstation clusters; Trusted Computing Platform Alliance; Web services; Xen; authentication; authorization; cluster computing security; data confidentiality; erroneous code; hardware security modules; large scale hosting; malicious attacks; on-demand computing; on-demand grid security; operating system virtualization technologies; secure communication; service hosting environment; single sign-on; threat model; Authentication; Authorization; Grid computing; Hardware; Operating systems; Platform virtualization; Proposals; Resilience; Safety; Security;
Conference_Titel :
Cluster Computing and the Grid, 2006. CCGRID 06. Sixth IEEE International Symposium on
Conference_Location :
Singapore
Print_ISBN :
0-7695-2585-7
DOI :
10.1109/CCGRID.2006.1630919