Title :
Comparison of advanced authorisation infrastructures for grid computing
Author :
Stell, A.J. ; Sinnott, R.O. ; Watt, J.P.
Author_Institution :
Nat. e-Sci. Centre, Glasgow Univ., UK
Abstract :
The widespread use of grid technology and distributed compute power, with all its inherent benefits, will only be established if the use of that technology can be guaranteed efficient and secure. The predominant method for currently enforcing security is through the use of public key infrastructures (PKI) to support authentication and the use of access control lists (ACL) to support authorisation. These systems alone do not provide enough fine-grained control over the restriction of user rights, necessary in a dynamic grid environment. This paper compares the implementation and experiences of using the current standard for grid authorisation with Globus - the grid security infrastructure (GSI) - with the role-based access control (RBAC) authorisation infrastructure PERMIS. The suitability of these security infrastructures for integration with regard to existing grid technology is presented based upon experiences within the JISC-funded DyVOSE project.
Keywords :
authorisation; grid computing; message authentication; Globus grid security infrastructure; access control list; authentication; distributed computing; grid authorisation; grid computing; public key infrastructure; role-based access control; Access control; Authentication; Authorization; Control systems; Distributed computing; Grid computing; National security; Power system security; Protection; Public key;
Conference_Titel :
High Performance Computing Systems and Applications, 2005. HPCS 2005. 19th International Symposium on
Print_ISBN :
0-7695-2343-9
DOI :
10.1109/HPCS.2005.20