Title :
Research on Cross-realm Resource Access Control Based on Virtual Organizations
Author :
Che, Bin ; Yang, Geng
Author_Institution :
Coll. of Comput. Sci., Nanjing Univ. of Posts & Telecommun.
Abstract :
Grid computing is becoming a mainstream technology for large-scale distributed resource sharing and system integration (Foster and Kesselman, 2004). Virtual organization (VO) is a collection of people in the same administrative domain (Stell et al., 2005). Currently, if a user has to access to many resources from different VOs, he should belong to those VOs and have credential certificates in each of them. In this way users have to enter their user names and passwords when they need to initialize their proxies to access to different VOs and cause redundancy about VO accounts. Traditional mechanism always confused users and blocked the spread of grid computing. This paper describes the GEIP (Globus Enterprise Information Portal) deployed in our grid computing environment, based on Trust Matrix based on trust degree and RB&MAC(role-based and mapping access control) giving special emphasis on whether a user with only one credential certificate is allowed to travel through different VOs and how to do it. These technologies create a feasible framework for authentication and authorization in distributed grid applications. We discuss the main features in GEIP, including mapping mechanism between global and local accounts, management of credential certificate
Keywords :
authorisation; grid computing; Globus Enterprise Information Portal; Trust Matrix; authentication; authorization; credential certificate management; cross-realm resource access control; distributed grid applications; grid computing; large-scale distributed resource sharing; mapping access control; role-based access control; system integration; virtual organization; virtual organizations; Access control; Application software; Authentication; Authorization; Educational institutions; Grid computing; Permission; Pervasive computing; Portals; Telecommunication computing; Grid Computing; Portal; RB&MAC; Trust Matrix; Virtual Organizations;
Conference_Titel :
Pervasive Computing and Applications, 2006 1st International Symposium on
Conference_Location :
Urumqi
Print_ISBN :
1-4244-0326-x
Electronic_ISBN :
1-4244-0326-x
DOI :
10.1109/SPCA.2006.297572