期刊文献+

基于任务的计算网格访问控制模型研究 被引量:5

Research on Task-based Access Control Model of Computing Grid
下载PDF
导出
摘要 网格的安全性因其广泛的资源共享和动态、多域的异构环境而显得极为复杂.网格安全基础设施(GSI)可以解决身份鉴别、保密性和完整性问题,却难以有效解决访问控制问题,传统的访问控制模型也不能很好的满足网格的安全需求.本文在华中科技大学计算网格平台基础上,研究并提出了一种基于任务的计算网格访问控制模型,该模型通过定义授权步和任务状态及系统条件约束,能动态地控制主体访问资源的权限,具有较好的通用性、灵活性和可扩展性,并已在计算网格实验平台中得到了实现. Grid security is complicated on account of pervasive resource sharing and dynamic, multi-domains heterogeneous computing enverioment. The grid security infrastracture (GSI) is emerged for identify authentification, data confidentiality and integrity, but can not solute problems about access control well. Traditional model of access control can not satify security re- querments of grid either. This paper describes a task-based access control model for computing grid, basing on the HUST grid. The model defines authorization steps, task status and system conditions, and pemissions can be dynamically controled. This model is enforced in computing grid experimental platform, and proved to be universal, flexible and extendable.
出处 《小型微型计算机系统》 CSCD 北大核心 2008年第1期85-88,共4页 Journal of Chinese Computer Systems
基金 国家自然科学基金项目(60403027 60273076)资助
关键词 计算网格 访问控制 CG-TBAC 授权步 computing grid access control CG-TBAC authorization step
  • 相关文献

参考文献6

  • 1Foster I, Kesselman C, Tsudik G, et al. A security architecture for computational grids [C]. ACM Conference on Computers and Security, 1998: 83-91.
  • 2Qiang W, Jin H, Shi X. RB-GACA: A RBAC based grid access control architecture[J]. International Journal of Grid and Utility Computing (IJGUC), 2005, 1(1), 61-70.
  • 3Bu Guan-ying, Xu Zhi-wei. Access control in semantic grid[J]. Future Generation Computer Systems, 2004, 20: 113-122.
  • 4Yao H, Hu H, Huang B, et al. Dynamic role and context-based access control for grid applications[C]. In: Proceedings of the Sixth International Conference on Parallel and Distributed Computing, Applications and Technologies (PDCAT'05), 2005, 404-406.
  • 5Martinelli F, Mori P, Vaccarelli A. Towards continuous usage control on grid computational services[C]. In: Proceedings of the Joint International Conference on Autonomic and Autonomous Systems and International Conference on Networking and Services (ICAS/ICNS 2005), 82-89.
  • 6Thomas R K, Sandhu R. Task-based authorization controls (TBAC): a family of models for active and enterprise-oriented authorization management[C]. In: Proceedings of the 11th IFIP WG11.3 on Database Security, Vancouver, Canada, 1997, 166-181.

同被引文献29

  • 1许访,沈昌祥.基于任务的强制访问控制模型[J].计算机应用研究,2004,21(11):70-71. 被引量:7
  • 2陈梅.人本管理思想在护理管理中的应用[J].天津护理,2005,13(1):39-40. 被引量:55
  • 3蒋伟进,王璞.基于MAS的复杂系统分布式求解策略与推理研究[J].计算机研究与发展,2006,43(9):1615-1623. 被引量:15
  • 4李锐,叶莲花,凌文辁.授权认知理论及其对管理的启示[J].现代管理科学,2006(10):21-22. 被引量:7
  • 53G TS 33. 102,3G Security ,Security Architecture[ S].
  • 6Thomas R K, Sandhu R S. Conceptual Foundations for a Model of a task - based Authorization [ C ]//Proc of the 7th IEEE Computer Security. Franconia : IEEE, 1994 : 66 -79.
  • 7YD/T1031-1999,800MHzCDMA数字蜂窝移动通信网移动应用部分技术要求[S].
  • 8THOMAS R K, SANDHU R S. Task-based authorization controls(TBAC): a family of models for active and enterprise-oriented authorization management[C]//Procee-dings of the IFIP WG 11.3 Workshop on Database Security. Vancouver: IFIP WG, 1997 : 166-181.
  • 9张培君.现代护理管理学[M].北京:清华大学出版社,2003:96-96.
  • 10SUBRAMONIAM K, MAHESWARAN M, TOULOUSE M. Towards a misty economic model for resource allocation I grid computing system [ C]//Proc of IEEE Canadian Conference on Electrical & Computer Engineering. Manitoba: [ s. n. ], 2002:278-290.

引证文献5

二级引证文献24

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部