期刊文献+

Context-Aware Usage-Based Grid Authorization Framework

Context-Aware Usage-Based Grid Authorization Framework
下载PDF
导出
摘要 Due to inherent heterogeneity, multi-domain characteristic and highly dynamic nature, authorization is a critical concern in grid computing. This paper proposes a general authorization and access control architecture, grid usage control (GUCON), for grid computing. It's based on the next generation access control mechanism usage control (UCON) model. The GUCON Framework dynamic grants and adapts permission to the subject based on a set of contextual information collected from the system environments; while retaining the authorization by evaluating access requests based on subject attributes, object attributes and requests. In general, GUCON model provides very flexible approaches to adapt the dynamically security request. GUCON model is being implemented in our experiment prototype. Due to inherent heterogeneity, multi-domain characteristic and highly dynamic nature, authorization is a critical concern in grid computing. This paper proposes a general authorization and access control architecture, grid usage control (GUCON), for grid computing. It's based on the next generation access control mechanism usage control (UCON) model. The GUCON Framework dynamic grants and adapts permission to the subject based on a set of contextual information collected from the system environments; while retaining the authorization by evaluating access requests based on subject attributes, object attributes and requests. In general, GUCON model provides very flexible approaches to adapt the dynamically security request. GUCON model is being implemented in our experiment prototype.
出处 《Wuhan University Journal of Natural Sciences》 CAS 2006年第6期1736-1740,共5页 武汉大学学报(自然科学英文版)
基金 Supported by the National Natural Science Foun-dation of China (60403027)
关键词 CONTEXT-AWARE access control usage control (UCON) context-aware access control usage control (UCON)
  • 相关文献

参考文献10

  • 1M Thompson,W Johnston,S Mudumbai,et al.Certificate-Based Access Control for Widely Distributed Resources[].th Usenix Security Symp.1999
  • 2FOSTER I,KESSELMAN C,NICK J M,et al.Grid services for distributed system integration[].IEEE Computer.2002
  • 3Chadwick,D,Otenko,A. The Permis X. 509 Role Based Privilege Management Infrastructure[C] //Proceedings of SACMAT 2002 Conference . 2002
  • 4Keahey, K,Welch, V.,Lang, S.,Liu, B.,and Meder, S.Fine-Grain Authorization Policies in the GRID: Design and Implementation[].st International Workshop on Middleware for Grid Computing.2003
  • 5L. Ramakrishnan,et al."An Authorization Framework for a Grid Based Component Architecture"[].Proc of the rd International Workshop on Grid Computing.2002
  • 6Zhang,G,Parashar,M. Dynamic Context-Aware Access Control for Grid Applications[C] //4th International Workshop on Grid Computing (Grid 2003) . 2003
  • 7Sandhu R,Park J.Usage Control:A Vision for Next GenerationAccess Control[].Procof theth International Workshop on Mathematical MethodsModelsand Architectures for Computer Network Security.2003
  • 8Park,J,Sandhu,R. Towards Usage Control Models: Beyond Traditional Access Control[C] //Proceedings of the Seventh ACM Symposium on Access Control Models and Technologies . 2002
  • 9Park J,Sandhu R.The UCONABC Usage Control Model[].ACM Transactions on Information and Systems Security.2004
  • 10Foster I,Kessel man C,Tuecke S.The Anatomy of the Grid :Enabling Scalable Virtual Organization[].Int’’l Jour- nal of Supercomputer Applications and High-Performance Computing.2001

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部