DocumentCode
409643
Title
Scoping security issues for interactive grids
Author
Dwoskin, Jeffrey ; Basu, Sujoy ; Talwar, Vanish ; Kumar, Raj ; Kitso, Fred ; Lee, Ruby
Author_Institution
Dept. of Electr. Eng., Princeton Univ., NJ, USA
Volume
1
fYear
2003
fDate
9-12 Nov. 2003
Firstpage
367
Abstract
Grid computing allows flexible resource sharing among geographically distributed computing resources in multiple administrative domains. Virtualization of resources allows jobs to be run on remote resources participating in a grid. While this computing paradigm has been used primarily for batch jobs, we study interactive grid applications rich in graphics and multimedia such as scientific visualization and digital content creation. A host of security issues need to be addressed for such interactive grids to gain acceptance, particularly in industry. The purpose of this paper is to study these security issues. The grid security infrastructure (GSI), a component of the Globus Toolkit (I. Foster et al., 1997), creates grid credentials for every user and resource. We describe how this may be extended to securely set up an interactive session on a remote host, and the additional security issues associated with interactive session management. We propose controlled shell and controlled desktop mechanisms that restrict the user to execute only authorized commands and applications, and controlled user and super-user accounts that customize the shell and desktop using policy files. We also propose a new approach to scoping the security needs of grid systems by defining three generic scenarios: mutual trust, partial trust and mutual distrust. New security issues arise when the user may not be trusted, or the user and the host computer´s owner are mutually suspicious.
Keywords
data visualisation; grid computing; interactive systems; multimedia computing; security of data; Globus Toolkit; controlled desktop mechanism; controlled shell mechanism; digital content creation; geographically distributed computing resources; graphics; grid computing; grid security infrastructure; interactive grid; interactive session management; multimedia; multiple administrative domain; resource sharing; scientific visualization; security issues; Application virtualization; Authentication; Computer security; Data security; Distributed computing; Grid computing; Multimedia computing; Resource management; Resource virtualization; Visualization;
fLanguage
English
Publisher
ieee
Conference_Titel
Signals, Systems and Computers, 2004. Conference Record of the Thirty-Seventh Asilomar Conference on
Print_ISBN
0-7803-8104-1
Type
conf
DOI
10.1109/ACSSC.2003.1291937
Filename
1291937
Link To Document