DocumentCode
3517564
Title
Attribute-Based Authorization for Grid Computing
Author
Khider, Husam ; Osman, Taha ; Sherkat, Nasser
Author_Institution
Nottingham Trent Univ., Nottingham, UK
fYear
2010
fDate
27-29 Jan. 2010
Firstpage
71
Lastpage
74
Abstract
The development of adequate security solutions and in particular of authorization techniques for grid computing systems is a challenging task. Traditional security trends tried to overcome this problem by using a low-level access control policy which maps a user´s identity to a local account. This approach is not scalable and is hard to manage in a distributed environment. Current trends started adopting approaches that pass attributes for authorization instead of passing user´s credentials. The problem still hasn´t been solved completely primarily because it uses PKI (public key infrastructure) user certificate for authorization, and the main problem with this approach is the inflexibility of the PKI infrastructure when it comes to open distributed systems (Grid). Additionally implementations of attribute-based authorization have largely adopted the XML based SAML (security assertion markup language) and XACML (extensible access control markup language) standards for authentication and authorization. The author investigates an approach that uses XACML for authorizations and utilizes a proxy for the attribute authority to allow for the distribution of attribute requests to numerous attribute authorities to whom the user is subscribed.
Keywords
XML; grid computing; public key cryptography; PKI user certificate; XML-based SAML; attribute-based authorization; authorization techniques; extensible access control markup language; grid computing; low-level access control policy; open distributed systems; public key infrastructure; security assertion markup language; Access control; Authentication; Authorization; Computational modeling; Grid computing; Intelligent systems; Markup languages; Public key; Security; XML; AAProxy; IdP; PKI; SAML; SP; SSO; SUNXACML; VO; XACML;
fLanguage
English
Publisher
ieee
Conference_Titel
Intelligent Systems, Modelling and Simulation (ISMS), 2010 International Conference on
Conference_Location
Liverpool
Print_ISBN
978-1-4244-5984-1
Type
conf
DOI
10.1109/ISMS.2010.24
Filename
5416120
Link To Document