A specification for security services on computational grids

被引:0
|
作者
Arcieri, F [1 ]
Fioravanti, F
Nardelli, E
Talamo, M
机构
[1] Univ Roma Tor Vergata, Lab Sperimentale Sicurezza & Certificaz, Serv Telemat Multimedia, NESTOR, Rome, Italy
[2] Univ Aquila, Dipartimento Informat, I-67100 Laquila, Italy
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In this paper we present a computational infrastructure, the Security Backbone, which is able to satisfy security requirements arising from resource sharing and services interoperability in Grid-like environments, without having to rely on a Public-Key Infrastructure (PKI). Motivation of our approach is rooted in the well-known difficulties encountered to show that interoperability of PKIs is effective or efficient in real-world environments. The proposed solution uses a security layer, lying between the communication and the application level, which provides confidentiality, integrity and authentication services in a fully transparent way from the application point of view, thus enabling the deployment of distributed network applications satisfying the highest security constraints, at a very low organizational and financial cost. Moreover, we have designed a service for scalable and flexible management of authorization policies governing access to resources shared by members of a Virtual Organization, by improving on the Community Authorization Service disI tributed with the Globus Toolkit(1).
引用
收藏
页码:119 / 135
页数:17
相关论文
共 50 条
  • [1] Security model of service oriented computational grids
    Jana, Debasish
    Chaudhuri, Amritava
    Bhaumik, Bijan Bihari
    [J]. 2006 ANNUAL IEEE INDIA CONFERENCE, 2006, : 516 - +
  • [2] Overview of security considerations for computational and data Grids
    Johnston, WE
    Jackson, KR
    Talwar, S
    [J]. 10TH IEEE INTERNATIONAL SYMPOSIUM ON HIGH PERFORMANCE DISTRIBUTED COMPUTING, PROCEEDINGS, 2001, : 439 - 440
  • [3] Performance analysis of information services in computational grids
    Purohit, Shakti
    Chaudhary, Sarjay
    [J]. 2006 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND COMMUNICATIONS, VOLS 1 AND 2, 2007, : 92 - +
  • [4] VIPSEC: Virtualized and Pluggable Security Services Architecture for Grids
    Naqvi, Syed
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2008, 2 (01) : 54 - 79
  • [5] XML-Based specification for web services document security
    Bhatti, R
    Bertino, E
    Ghafoor, A
    Joshi, JBD
    [J]. COMPUTER, 2004, 37 (04) : 41 - +
  • [6] Security specification and implementation for mobile e-health services
    Martí, R
    Delgado, J
    Perramon, X
    [J]. 2004 IEEE INTERNATIONAL CONFERNECE ON E-TECHNOLOGY, E-COMMERE AND E-SERVICE, PROCEEDINGS, 2004, : 241 - 248
  • [7] Security Policy Specification Templates for Critical Infrastructure Services in the Cloud
    Rudolph, Manuel
    Schwarz, Reinhard
    Jung, Christian
    [J]. 2014 9TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2014, : 61 - 66
  • [8] A Kerberos security architecture for web services based instrumentation grids
    Moralis, Athanasios
    Pouli, Vassiliki
    Papavassiliou, Symeon
    Maglaris, Vasilis
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2009, 25 (07): : 804 - 818
  • [9] Computational grids
    Fox, G
    Gannon, D
    [J]. COMPUTING IN SCIENCE & ENGINEERING, 2001, 3 (04) : 74 - 77
  • [10] Computational grids
    Foster, I
    Kesselman, C
    [J]. 1998 CERN SCHOOL OF COMPUTING, PROCEEDINGS, 1998, 98 (08): : 87 - 113