Title :
A Scalable Security Model for Enabling Dynamic Virtual Private Execution Infrastructures on the Internet
Author :
Primet, Pascale Vicat-Blanc ; Gelas, Jean-Patrick ; Mornard, Olivier ; Koslovski, Guilherme ; Roca, Vincent ; Giraud, Lionel ; Montagnat, Johan ; Huu, Tram Truong
Author_Institution :
INRIA, Univ. of Lyon, Lyon
Abstract :
With the expansion and the convergence of computing and communication, the dynamic provisioning of customized processing and networking infrastructures as well as resource virtualization are appealing concepts and technologies. Therefore, new models and tools are needed to allow users to create, trust and exploit such on-demand virtual infrastructures within wide area distributed environments. This paper proposes to combine network and system virtualization with cryptographic identification and SPKI/HIP principles to help the user communities to build and share their own resource reservoirs. These ideas are implemented in the HIPerNet framework enabling the creation and the management of customized confined execution environments in a large scale context. Based on the example of biomedical applications, the paper focuses on the security model of the HIPerNet system and develops the key aspects of our distributed security approach. Then the paper discusses and illustrates how HIPerNet solutions fulfill the security requirements of applications through different scenarios.
Keywords :
Internet; authorisation; cryptographic protocols; medical computing; public key cryptography; resource allocation; virtual machines; Internet; SPKI/HIP principle; authorisation; biomedical application; cryptographic identification; dynamic virtual private execution infrastructure; resource virtualization; scalable distributed security model; Computer networks; Computer vision; Environmental management; Grid computing; Hip; Internet; Large-scale systems; Public key cryptography; Resource virtualization; Security; Execution Infrastructure as a service; SPKI; authorization; resource virtualization;
Conference_Titel :
Cluster Computing and the Grid, 2009. CCGRID '09. 9th IEEE/ACM International Symposium on
Conference_Location :
Shanghai
Print_ISBN :
978-1-4244-3935-5
Electronic_ISBN :
978-0-7695-3622-4
DOI :
10.1109/CCGRID.2009.76