DocumentCode :
3378929
Title :
Dynamic Role and Context-Based Access Control for Grid Applications
Author :
Han-bing, YAO ; He-ping, HU ; Zheng-Ding, Lu ; Rui-xuan, Li
Author_Institution :
Coll. of Comput., Huazhong Univ. of Sci. & Technol., Wuhan
fYear :
2005
fDate :
21-24 Nov. 2005
Firstpage :
1
Lastpage :
7
Abstract :
Grid computing is concerned with the sharing and coordinated use of diverse resources in distributed "virtual organizations." The heterogeneous, dynamic and multi-domain nature of these environments introduces challenging security issues that demand new technical approaches. Despite the recent advances in access control approaches applicable to Grid computing, there remain issues that impede the development of effective access control models for Grid applications. Amongst them are the lack of context-based models for access control, and reliance on identity or capability-based access control schemes. In this paper, we present an access control scheme that resolve these issues, and propose a dynamic role and context-based access control (RCBAC) framework which extends the RBAC with context constraints. The RCBAC mechanisms dynamically grant and adapt permissions to users based on a set of contextual information collected from the system and user\´s environments, while retaining the advantages of RBAC model. We also describe the implementation architecture of RCBAC for the grid application.
Keywords :
authorisation; grid computing; capability-based access control; context-based access control; grid computing; virtual organizations; Access control; Application software; Authorization; Context modeling; Distributed computing; Educational institutions; Grid computing; Permission; Resource management; Security; Access Control; Context-aware; Grid Security; RBAC;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
TENCON 2005 2005 IEEE Region 10
Conference_Location :
Melbourne, Qld.
Print_ISBN :
0-7803-9311-2
Electronic_ISBN :
0-7803-9312-0
Type :
conf
DOI :
10.1109/TENCON.2005.301185
Filename :
4085034
Link To Document :
بازگشت