G-PASS: an instance-oriented security infrastructure for Grid travelers: Research Articles

Concurrency and Computation: Practice & Experience(2006)

引用 0|浏览1
暂无评分
摘要
Grid computing unifies distributed resources via its support for the creation and use of virtual organizations (VOs), where a VO represents a collection of distributed resources to be accessed through predefined resource sharing and coordination policies. We consider a special type of mobile processes, named Grid travelers, which can travel across boundaries of VOs for the detection of resource availability, to negotiate for the approval of access privileges and to conduct remote execution. A new security infrastructure named G-PASS is proposed to guarantee the validity and integrity of the travelers and the critical security knowledge they collect while traveling, especially while crossing some VOs. G-PASS borrows the idea of passport and custom, as well as the procedures for people's travel in real life, to provide role-based delegation mapping and access control. We demonstrate the power and feasibility of G-PASS with a simulated mobile agent environment and a distributed ray-tracing application running on multiple VOs. Various security overheads coming from migration decisions and actual agent or process migration are reported. G-PASS can be installed with Grid Security Infrastructure (GSI) as the base, which makes it compatible with the existing Grid middleware. Copyright © 2006 John Wiley & Sons, Ltd.
更多
查看译文
关键词
multiple VOs,Grid Security Infrastructure,Grid traveler,critical security knowledge,existing Grid middleware,new security infrastructure,various security,access control,access privilege,actual agent,Research Articles,instance-oriented security infrastructure
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要