DocumentCode :
2518284
Title :
Joint policy management and auditing in virtual organizations
Author :
Smith, Timothy J. ; Ramakrishna, Lavanya
Author_Institution :
R&D Inst., MCNC, Research Triangle Park, NC, USA
fYear :
2003
fDate :
17 Nov. 2003
Firstpage :
117
Lastpage :
124
Abstract :
A major problem facing organizations using grid-computing models is the reluctance to participate in multiorganizational collaborative environments due to security concerns, such as unauthorized access, and fair resource usage. The joint control of virtual organizations (JoVO) framework enables organizations to form a unified VO, with jointly agreed, knowable and enforceable security policies. The JoVO framework is based on the fault and intrusion tolerant joint control of identity, attributes, and access control policy through the use of threshold-based certification authorities. We propose a set of agents, the credential management agent and identity and authorization agent to aid grid services when operating in a multidomain environment. One of the key areas of concern in grid computing is the assurance of all parties involved that security policies are appropriate and will be enforced. We propose an automated distributed audit agent framework consisting of white-box and black-box service testing for joint validation of access control policy.
Keywords :
auditing; authorisation; grid computing; mobile agents; open systems; virtual enterprises; auditing; authorization agent; automated distributed audit agent framework; black-box service testing; credential management agent; fair resource usage; grid-computing models; intrusion tolerant joint control; joint policy management; multiorganizational collaborative environments; security policies; threshold-based certification authorities; unauthorized access control; virtual organizations; white-box service testing; Access control; Automatic control; Collaboration; Collaborative tools; Collaborative work; Data security; Environmental management; Grid computing; Identity management systems; Information security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Grid Computing, 2003. Proceedings. Fourth International Workshop on
Print_ISBN :
0-7695-2026-X
Type :
conf
DOI :
10.1109/GRID.2003.1261706
Filename :
1261706
Link To Document :
بازگشت