DocumentCode :
3517564
Title :
Attribute-Based Authorization for Grid Computing
Author :
Khider, Husam ; Osman, Taha ; Sherkat, Nasser
Author_Institution :
Nottingham Trent Univ., Nottingham, UK
fYear :
2010
fDate :
27-29 Jan. 2010
Firstpage :
71
Lastpage :
74
Abstract :
The development of adequate security solutions and in particular of authorization techniques for grid computing systems is a challenging task. Traditional security trends tried to overcome this problem by using a low-level access control policy which maps a user´s identity to a local account. This approach is not scalable and is hard to manage in a distributed environment. Current trends started adopting approaches that pass attributes for authorization instead of passing user´s credentials. The problem still hasn´t been solved completely primarily because it uses PKI (public key infrastructure) user certificate for authorization, and the main problem with this approach is the inflexibility of the PKI infrastructure when it comes to open distributed systems (Grid). Additionally implementations of attribute-based authorization have largely adopted the XML based SAML (security assertion markup language) and XACML (extensible access control markup language) standards for authentication and authorization. The author investigates an approach that uses XACML for authorizations and utilizes a proxy for the attribute authority to allow for the distribution of attribute requests to numerous attribute authorities to whom the user is subscribed.
Keywords :
XML; grid computing; public key cryptography; PKI user certificate; XML-based SAML; attribute-based authorization; authorization techniques; extensible access control markup language; grid computing; low-level access control policy; open distributed systems; public key infrastructure; security assertion markup language; Access control; Authentication; Authorization; Computational modeling; Grid computing; Intelligent systems; Markup languages; Public key; Security; XML; AAProxy; IdP; PKI; SAML; SP; SSO; SUNXACML; VO; XACML;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Intelligent Systems, Modelling and Simulation (ISMS), 2010 International Conference on
Conference_Location :
Liverpool
Print_ISBN :
978-1-4244-5984-1
Type :
conf
DOI :
10.1109/ISMS.2010.24
Filename :
5416120
Link To Document :
بازگشت