Sinnott, R.O. and Chadwick, David W. and Koetsier, J. and Otenko, O. and Watt, J. and Nguyen, T.A. (2006) Supporting Decentralized, Security focused Dynamic Virtual Organizations across the Grid. In: e-Science and Grid Computing, 2006. e-Science '06. Second IEEE International Conference on. IEEE Computer Society, Washington DC p. 22. ISBN 0-7695-2734-5.
The ability to dynamically create and subsequently manage secure virtual organisations (VO) is one of the key challenges facing the Grid community. Existing approaches for establishing and managing VOs typically suffer from lack of fine grained security since they largely focus on public key infrastructures with statically defined access control lists, or they are based upon a centralised site for storage of VO specific security information. What is really needed is a federated model of security where sites are able to manage their own security information for their own institutional members, delegating where necessary to trusted local or remote entities, as well as defining and enforcing authorisation policies for their own resources. In this paper we present tools that support such capabilities and highlight how they have been applied to dynamically create and manage security focused VOs in the education domain. We believe that this federated VO security model for fine grained access to Grid services and resources should be the future model upon which security focused Grids are based.
|Item Type:||Conference or workshop item (Paper)|
|Uncontrolled keywords:||virtual organization, grid, decentralization|
|Subjects:||Q Science > QA Mathematics (inc Computing science) > QA 76 Software, computer programming,|
|Divisions:||Faculties > Science Technology and Medical Studies > School of Computing > Security Group|
|Depositing User:||Mark Wheadon|
|Date Deposited:||24 Nov 2008 18:03|
|Last Modified:||06 Sep 2011 01:30|
|Resource URI:||http://kar.kent.ac.uk/id/eprint/14386 (The current URI for this page, for reference purposes)|
- Depositors only (login required):