Efficient integration of fine-grained access control and resource brokering in grid

被引:0
|
作者
P. Mazzoleni
B. Crispo
S. Sivasubramanian
E. Bertino
机构
[1] IBM—T.J. Watson,Department of Computer Science and CERIAS
[2] University of Trento,undefined
[3] Amazon.com,undefined
[4] Purdue University,undefined
来源
关键词
Access control; Computational grid network; Resource brokering; Grid security; Policy organization; XACML;
D O I
暂无
中图分类号
学科分类号
摘要
In this paper, we present a novel resource brokering service for grid systems which considers authorization policies of the grid nodes in the process of selecting the resources to be assigned to a request. We argue such an integration is needed to avoid scheduling requests onto resources the policies of which do not authorize their execution. Our service, implemented in Globus as a part of Monitoring and Discovery Service (MDS), is based on the concept of fine-grained access control (FGAC) which enables participating grid nodes to specify fine-grained policies concerning the conditions under which grid clients can access their resources. Since the process of evaluating authorization policies, in addition to checking the resource requirements, can be a potential bottleneck for a large scale grid, we also analyze the problem of the efficient evaluation of FGAC policies. In this context, we present GroupByRule, a novel method for policy organization and compare its performance with other strategies.
引用
收藏
相关论文
共 50 条
  • [1] Efficient integration of fine-grained access control and resource brokering in grid
    Mazzoleni, P.
    Crispo, B.
    Sivasubramanian, S.
    Bertino, E.
    [J]. JOURNAL OF SUPERCOMPUTING, 2009, 49 (01): : 108 - 126
  • [2] Efficient integration of fine-grained access control in large-scale grid services
    Mazzoleni, P
    Crispo, B
    Sivasubramanian, S
    Bertino, E
    [J]. 2005 IEEE INTERNATIONAL CONFERENCE ON SERVICES COMPUTING, VOL 1, PROCEEDINGS, 2005, : 77 - 84
  • [3] Fine-grained integration of access control policies
    Rao, Prathima
    Lin, Dan
    Bertino, Elisa
    Li, Ninghui
    Lobo, Jorge
    [J]. COMPUTERS & SECURITY, 2011, 30 (2-3) : 91 - 107
  • [4] A Fine-Grained Access Control Model for Smart Grid
    Wang, Chen
    Ai, Hong
    Wu, Lie
    Yang, Yun
    [J]. APPLIED SCIENCE, MATERIALS SCIENCE AND INFORMATION TECHNOLOGIES IN INDUSTRY, 2014, 513-517 : 772 - 776
  • [5] An Efficient and Fine-grained Access Control Scheme for Multidimensional Data Aggregation in Smart Grid
    Cao, Zhenhai
    Lang, Bo
    Wang, Jinmiao
    [J]. 2016 IEEE TRUSTCOM/BIGDATASE/ISPA, 2016, : 362 - 369
  • [6] Towards supporting fine-grained access control for Grid resources
    Bertino, E
    Mazzoleni, P
    Crispo, B
    Sivasubramanian, S
    Ferrari, E
    [J]. 10TH IEEE INTERNATIONAL WORKSHOP ON FUTURE TRENDS OF DISTRIBUTED COMPUTING SYSTEMS, PROCEEDINGS, 2004, : 59 - 65
  • [7] Enabling Fine-grained Access Control with Efficient Attribute Revocation and Policy Updating in Smart Grid
    Li, Hongwei
    Liu, Dongxiao
    Alharbi, Khalid
    Zhang, Shenmin
    Lin, Xiaodong
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2015, 9 (04): : 1404 - 1423
  • [8] A Data Aggregation Scheme with Fine-grained Access Control for the Smart Grid
    Wen, Mi
    Zhang, Xu
    Li, Hongwei
    Li, Jinguo
    [J]. 2017 IEEE 86TH VEHICULAR TECHNOLOGY CONFERENCE (VTC-FALL), 2017,
  • [9] A Fine-Grained Access Control Model with Secure Label on Data Resource
    Gao, Lijie
    Liu, Lianzhong
    Jin, Ze
    Han, Chunyan
    [J]. 2013 3RD INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT), 2013, : 14 - 18
  • [10] Fine-Grained Access Control for Microservices
    Nehme, Antonio
    Jesus, Vitor
    Mahbub, Khaled
    Abdallah, Ali
    [J]. FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2018, 2019, 11358 : 285 - 300