首页> 外文会议> >Using SAML and XACML for Complex Resource Provisioning in Grid Based Applications
【24h】

Using SAML and XACML for Complex Resource Provisioning in Grid Based Applications

机译:使用SAML和XACML在基于网格的应用程序中进行复杂的资源配置

获取原文

摘要

This paper presents ongoing research and current results on the development of flexible access control infrastructure for complex resource provisioning (CRP) in Grid-based applications. The paper proposes a general CRP model and specifies major requirements to the Authorisation (AuthZ) service infrastructure to support multidomain CRP, focusing on two main issues -- policy expression for complex resource models and AuthZ session support. The paper provides suggestions about using XACML and its special profiles to describe access control policies to complex resources and briefly describes proposed XML based AuthZ ticket format to support extended AuthZ session context. Additionally, the paper discusses what specific functionality can be added to the gLite Java Authorisation Framework (gJAF), to handle dynamic security context including AuthZ session support. The paper is based on experiences gained from major Grid based and Grid oriented projects such as EGEE, Phosphorus and GigaPort Research on Network.
机译:本文介绍了针对基于网格的应用程序中复杂资源供应(CRP)的灵活访问控制基础结构开发的正在进行的研究和当前成果。本文提出了一个通用的CRP模型,并指定了对支持多域CRP的授权(AuthZ)服务基础结构的主要要求,重点是两个主要问题-复杂资源模型的策略表达和AuthZ会话支持。本文提供了有关使用XACML及其特殊配置文件来描述对复杂资源的访问控制策略的建议,并简要描述了建议的基于XML的AuthZ票证格式,以支持扩展的AuthZ会话上下文。此外,本文讨论了可以向gLite Java授权框架(gJAF)添加哪些特定功能,以处理包括AuthZ会话支持在内的动态安全上下文。本文基于从大型基于网格和面向网格的项目(例如EEEE,Phosphorus和GigaPort网络研究)中获得的经验。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号