• DocumentCode
    1811348
  • Title

    Shibboleth Access for Resources on the National Grid Service (SARoNGS)

  • Author

    Wang, Xiao Dong ; Jones, Mike ; Jensen, Jens ; Richards, Andrew ; Wallom, David ; Ma, Tiejun ; Frank, Robert ; Spence, David ; Young, Steven ; Devereux, Claire ; Geddes, Neil

  • Author_Institution
    STFC Daresbury Lab., Warrington, UK
  • Volume
    2
  • fYear
    2009
  • fDate
    18-20 Aug. 2009
  • Firstpage
    338
  • Lastpage
    341
  • Abstract
    The national grid service (NGS) provides access to compute and data resources for UK academics. Currently users are required to have an X.509 certificate from the UK e-science certification authority (CA) or one of its international peers to access the NGS. The CA must satisfy the requirements for internationally agreed assurance levels and some users find the processes of obtaining and managing certificates difficult. Shibboleth, an implementation of federation identity based authentication, has been widely deployed in academic environments in the UK. The SARoNGS project, was proposed to integrate the Shibboleth and X.509 based infrastructures, to deliver a production level service for accessing the NGS in a user friendly way. This paper describes an architecture by which users are authenticated by the UK access management federation to acquire low assurance credentials to access Grid resources on the NGS. Users can login to NGS resources via NGS portal, using their local institution´s authentication system.
  • Keywords
    authorisation; certification; educational administrative data processing; grid computing; NGS portal; SARoNGS project; Shibboleth access implementation; UK academic; UK access management federation; UK e-science certification authority; X.509 certificate requirement; data resource; federation identity based authentication; local institutions authentication system; national grid service; production level service; user friendly feature; Algorithm design and analysis; Authentication; Computer networks; Information filtering; Information filters; Information security; Intrusion detection; Logic; Protection; Public key; access control; authentication; authorization; security; shibboleth;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information Assurance and Security, 2009. IAS '09. Fifth International Conference on
  • Conference_Location
    Xi´an
  • Print_ISBN
    978-0-7695-3744-3
  • Type

    conf

  • DOI
    10.1109/IAS.2009.163
  • Filename
    5283562