摘要
安全问题是网格系统中一个极具挑战性的问题。为了解决面向e-L earn ing的学习评价网格(LAG rid)中的安全问题,该文提出了一种面向服务的网格安全体系。该体系基于对称密钥基础设施,实现了单次登录方式的系统用户认证和基于角色的访问控制,以及一种安全令牌发行服务,并在此基础上进一步实现了网格节点认证和基于W eb服务安全规范的消息加密和签名。这种安全体系已被成功用于构建LAG rid系统,实现了一种安全、透明的基于W eb的用户环境,支持广域资源共享和跨组织的大规模协同工作。
Security is a challenging issue in grid systems. A service-oriented security architecture was developed to provide security in learning assessment grid (LAGrid), an e-Learning oriented grid system. A symmetric key infrastructure was used in for single sign on enabled authentication and role-based authorization. A security token service was designed to give message-level encryption and signature mechanisms. The service-oriented security architecture has been successfully implemented in LAGrid system which supports wide-area resource sharing and large-scale cross-organizational collaborative work. In addition, the system provides a secure, transparent and web-based user environment.
出处
《清华大学学报(自然科学版)》
EI
CAS
CSCD
北大核心
2005年第10期1425-1428,共4页
Journal of Tsinghua University(Science and Technology)
基金
国家自然科学基金资助项目(90412009)
关键词
网格
安全体系
网格安全
面向服务的计算
面向服务的架构
grid
security architecture
grid security
service-oriented computing (SOC)
service-oriented architecture (SOA)