DocumentCode
2365637
Title
A Mediated RSA-Based End Entity Certificates Revocation Mechanism in Grid
Author
Pan, Jinpei ; Li, Mingchu ; Sun, Weifeng ; Hu, Jing
Author_Institution
Sch. of Software, Dalian Univ. of Technol., Dalian, China
fYear
2009
fDate
25-27 Aug. 2009
Firstpage
247
Lastpage
250
Abstract
The end entity certificates (EECs) revocation mechanism in grid security infrastructure (GSI) adopts certificate revocation list (CRL) currently. However, CRL is an inefficient mechanism with drawbacks of "time granularity problem" and unmanageable sizes. This paper presents a new EECs revocation mechanism MEECRM (mediated RSA-based end entity certificates revocation mechanism) combined with MyProxy - the online credential repository in Globus Tookit (GT). MEECRM can ensure instantaneous revocation of invalid EECs in grid environments and can be used in many large-scale grid projects because of inheriting from MyProxy. Analyses also prove that MEECRM is secure.
Keywords
cryptography; grid computing; message authentication; MyProxy; grid security infrastructure; mediated RSA-based end entity certificate revocation; time granularity problem; Bandwidth; Collaboration; Costs; Cryptography; Digital signatures; Information security; Large-scale systems; Portals; Protocols; Sun; certificate revocation; mediated RSA; security mediator;
fLanguage
English
Publisher
ieee
Conference_Titel
INC, IMS and IDC, 2009. NCM '09. Fifth International Joint Conference on
Conference_Location
Seoul
Print_ISBN
978-1-4244-5209-5
Electronic_ISBN
978-0-7695-3769-6
Type
conf
DOI
10.1109/NCM.2009.217
Filename
5331717
Link To Document