Attribute-Based Authorization for Grid Computing

被引:0
|
作者
Khider, Husam [1 ]
Osman, Taha [1 ]
Sherkat, Nasser [1 ]
机构
[1] Nottingham Trent Univ, Nottingham, England
关键词
SAML; XACML; PKI; SUNXACML; SSO; SP; IdP; VO; AAProxy;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
the development of adequate security solutions and in particular of authorization techniques for grid computing systems is a challenging task. Traditional security trends tried to overcome this problem by using a low-level access control policy which maps a user's identity to a local account. This approach is not scalable and is hard to manage in a distributed environment. Current trends started adopting approaches that pass attributes for authorization instead of passing user's credentials. The problem still hasn't been solved completely primarily because it uses PKI (Public Key Infrastructure) user certificate for authorization, and the main problem with this approach is the inflexibility of the PKI infrastructure when it comes to open distributed systems (Grid). Additionally implementations of attribute-based authorization have largely adopted the XML based SAML (Security Assertion Markup Language) and XACML (eXtensible Access Control Markup Language) standards for authentication and authorization. The author investigates an approach that uses XACML for Authorizations and utilizes a proxy for the attribute authority to allow for the distribution of attribute requests to numerous attribute authorities to whom the user is subscribed.
引用
下载
收藏
页码:71 / 74
页数:4
相关论文
共 50 条
  • [41] Attribute-based Encryption for Cloud Computing Access Control: A Survey
    Zhang, Yinghui
    Deng, Robert H.
    Xu, Shengmin
    Sun, Jianfei
    Li, Qi
    Zheng, Dong
    ACM COMPUTING SURVEYS, 2020, 53 (04)
  • [42] Authorization Management in Multi-Cloud Collaboration using Attribute-based Access Control
    John, John C.
    Sural, Shamik
    Gupta, Arobinda
    2016 15TH INTERNATIONAL SYMPOSIUM ON PARALLEL AND DISTRIBUTED COMPUTING (ISPDC), 2016, : 190 - 195
  • [43] Extending the Collaborative Online Visualization and Steering Framework for Computational Grids with Attribute-based Authorization
    Riedel, Morris
    Frings, Wolfgang
    Habbinga, Sonja
    Eickermann, Thomas
    Mallmann, Daniel
    Streit, Achim
    Wolf, Felix
    Lippert, Thomas
    Ernst, Andreas
    Spurzem, Rainer
    2008 9TH IEEE/ACM INTERNATIONAL CONFERENCE ON GRID COMPUTING, 2008, : 104 - +
  • [44] Using attribute-based access control to enable attribute-based messaging
    Bobba, Rakesh
    Fatemieh, Omid
    Khan, Fariba
    Gunter, Carl A.
    Khurana, Himanshu
    22ND ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 2006, : 403 - +
  • [45] Attribute-Based Secure Data Sharing with Hidden Policies in Smart Grid
    Hur, Junbeom
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2013, 24 (11) : 2171 - 2180
  • [46] Attribute-based signature with AT
    Ma, Chun-Guang
    Shi, Lan
    Wang, Ding
    Dianzi Keji Daxue Xuebao/Journal of the University of Electronic Science and Technology of China, 2013, 42 (03): : 410 - 414
  • [47] Attribute-based learning
    Bratko, I
    Cestnik, B
    Kononenko, I
    AI COMMUNICATIONS, 1996, 9 (01) : 27 - 32
  • [48] AKSER: Attribute-based keyword search with efficient revocation in cloud computing
    Cui, Jie
    Zhou, Han
    Zhong, Hong
    Xu, Yan
    INFORMATION SCIENCES, 2018, 423 : 343 - 352
  • [49] Attribute-based fuzzy identity access control in multicloud computing environments
    Li, Wenmin
    Wen, Qiaoyan
    Li, Xuelei
    He, Debiao
    SOFT COMPUTING, 2018, 22 (12) : 4071 - 4082
  • [50] Dependable and Robust Attribute-Based F,ncryption in Mobile Cloud Computing
    Nasiraee, Hassan
    Ashouri-Talouki, Maede
    26TH IRANIAN CONFERENCE ON ELECTRICAL ENGINEERING (ICEE 2018), 2018, : 1536 - 1541