• DocumentCode
    3503445
  • Title

    Flexible and Secure Logging of Grid Data Access

  • Author

    Zhang, Weide ; Del Vecchio, Domitilla ; Wasson, Glenn ; Humphrey, Marty

  • Author_Institution
    Dept. of Comput. Sci., Virginia Univ., Charlottesville, VA
  • fYear
    2006
  • fDate
    28-29 Sept. 2006
  • Firstpage
    80
  • Lastpage
    87
  • Abstract
    In grid collaborations, scientists use middleware to execute computational experiments, visualize results, and securely share data on resources ranging from desktop machines to supercomputers. While there has been significant effort in authentication and authorization for these distributed infrastructures, it is still difficult to determine, post-facto, exactly what information might have been accessed, what operations might have occurred, and for what reasons. To address this problem, we have designed and implemented a secure logging infrastructure for grid data access. We uniquely leverage and extend XACML with new capabilities so that data owners can specify logging policies and these policies can be used to engage logging mechanisms to record events of interest to the data owners. A case study based on GridFTP.NET is presented and analyzed, utilizing both local storage of log records and remote storage via SAWS, an independently developed secure audit Web service. We show that with relatively little performance overhead, data owners are provided with new flexibility for determining the post-facto conditions under which their grid data was accessed
  • Keywords
    Web services; authorisation; grid computing; information retrieval; middleware; storage management; GridFTP.NET; SAWS; Web service; XACML; authentication; authorization; desktop machines; distributed infrastructures; grid collaborations; grid data access; logging infrastructure; logging mechanisms; logging policy; middleware; remote storage; share data; supercomputers; Authentication; Authorization; Collaboration; Data visualization; Grid computing; Middleware; Sawing machines; Secure storage; Supercomputers; Web services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Grid Computing, 7th IEEE/ACM International Conference on
  • Conference_Location
    Barcelona
  • Print_ISBN
    1-4244-0343-X
  • Electronic_ISBN
    1-4244-0344-8
  • Type

    conf

  • DOI
    10.1109/ICGRID.2006.311001
  • Filename
    4100458