DocumentCode :
409643
Title :
Scoping security issues for interactive grids
Author :
Dwoskin, Jeffrey ; Basu, Sujoy ; Talwar, Vanish ; Kumar, Raj ; Kitso, Fred ; Lee, Ruby
Author_Institution :
Dept. of Electr. Eng., Princeton Univ., NJ, USA
Volume :
1
fYear :
2003
fDate :
9-12 Nov. 2003
Firstpage :
367
Abstract :
Grid computing allows flexible resource sharing among geographically distributed computing resources in multiple administrative domains. Virtualization of resources allows jobs to be run on remote resources participating in a grid. While this computing paradigm has been used primarily for batch jobs, we study interactive grid applications rich in graphics and multimedia such as scientific visualization and digital content creation. A host of security issues need to be addressed for such interactive grids to gain acceptance, particularly in industry. The purpose of this paper is to study these security issues. The grid security infrastructure (GSI), a component of the Globus Toolkit (I. Foster et al., 1997), creates grid credentials for every user and resource. We describe how this may be extended to securely set up an interactive session on a remote host, and the additional security issues associated with interactive session management. We propose controlled shell and controlled desktop mechanisms that restrict the user to execute only authorized commands and applications, and controlled user and super-user accounts that customize the shell and desktop using policy files. We also propose a new approach to scoping the security needs of grid systems by defining three generic scenarios: mutual trust, partial trust and mutual distrust. New security issues arise when the user may not be trusted, or the user and the host computer´s owner are mutually suspicious.
Keywords :
data visualisation; grid computing; interactive systems; multimedia computing; security of data; Globus Toolkit; controlled desktop mechanism; controlled shell mechanism; digital content creation; geographically distributed computing resources; graphics; grid computing; grid security infrastructure; interactive grid; interactive session management; multimedia; multiple administrative domain; resource sharing; scientific visualization; security issues; Application virtualization; Authentication; Computer security; Data security; Distributed computing; Grid computing; Multimedia computing; Resource management; Resource virtualization; Visualization;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Signals, Systems and Computers, 2004. Conference Record of the Thirty-Seventh Asilomar Conference on
Print_ISBN :
0-7803-8104-1
Type :
conf
DOI :
10.1109/ACSSC.2003.1291937
Filename :
1291937
Link To Document :
بازگشت