Title :
Grid ID Management based on Distributed Agents using SPML
Author :
Kim, Seung-Hyun ; Jin, Seunghun
Author_Institution :
Inf. Security Res. Div., Electron. & Telecommun. Res. Inst., Daejeon
Abstract :
The grid is a kind of computational infrastructures that interconnect high performance resources (e.g. super computer, mass storage, specialized experimental device) which are geologically distributed. Everyone can use the grid network as a single system. To connect each resource with the grid and provide service to every user who requires the resource, the grid middleware should be installed. The most popular middleware is the Globus toolkit and GSI (grid security infrastructure) takes charge the security part in the Globus toolkit. GSI is based on the PKI (public key infrastructure) and supports certificate-based mutual authentication, SSO (single sign-on) using X.509 proxy certificate and simple access control using grid-map. However GSI is hard to manage the grid account identifier and to process authentication or authorization management on each resource manually. This paper proposes agents-based distributed management architecture for the grid environment. An administrator could maintain identical policies for resource at single point. SPML (service provisioning markup language) also enables the administrator to express various tasks and to support the extensibility. Proposed scheme utilizes central server only to manage the resources´ policy, and maintains every policy in each resource. Therefore proposed scheme avoids SPF (single point of failure) problem while running the grid
Keywords :
authorisation; grid computing; message authentication; middleware; public key cryptography; GSI; Globus toolkit; PKI; SPML; X.509 proxy certificate; access control; agent-based distributed management architecture; authorization management; certificate-based mutual authentication; distributed agents; grid ID management; grid middleware; grid security infrastructure; public key infrastructure; service provisioning markup language; single sign-on; Access control; Authentication; Distributed computing; Geology; Grid computing; High performance computing; Identity management systems; Middleware; Public key; Resource management; Grid; Grid Security Infrastructure; Identity Management; SPML;
Conference_Titel :
Consumer Electronics, 2006. ISCE '06. 2006 IEEE Tenth International Symposium on
Conference_Location :
St. Petersburg
Print_ISBN :
1-4244-0216-6
DOI :
10.1109/ISCE.2006.1689521