首页> 外文会议>E-Science Workshops, 2009 >Audited credential delegation: A sensible approach to grid authentication
【24h】

Audited credential delegation: A sensible approach to grid authentication

机译:审核的凭证委派:一种明智的网格身份验证方法

获取原文

摘要

If the authentication process in a computational grid environment is difficult for end-users, they will either be unable to use the system at all, or, in their attempts to circumvent the aspects of the authentication process which they find ¿difficult¿, they will probably increase the likelihood of a security compromise of the system. In this paper we examine a proposed authentication architecture, audited credential delegation (ACD), that uses the familiar username/password paradigm to improve the usability (and so the security) of the authentication process in these environments. We report on a usability trial of this architecture in which it is compared to the traditional PKI-based authentication used in many existing computational grid environments. We also discuss how this architecture suggests that computational grid resource providers (and potentially the Certificate Authorities accepted by these providers) need to rethink their ¿one digital certificate = one user¿ security model.
机译:如果最终用户难以在计算网格环境中进行身份验证过程,则他们要么根本无法使用该系统,要么尝试绕过他们发现“困难”的身份验证过程的各个方面。 ,,它们可能会增加系统安全性受损的可能性。在本文中,我们研究了一种提议的身份验证体系结构,即审核的凭据委派(ACD),该体系结构使用熟悉的用户名/密码范例来提高这些环境中身份验证过程的可用性(以及安全性)。我们报告了此体系结构的可用性试验,将其与许多现有计算网格环境中使用的基于传统PKI的身份验证进行了比较。我们还将讨论此体系结构如何表明计算网格资源提供程序(以及这些提供程序可能接受的证书颁发机构)需要重新考虑其“一个数字证书=一个用户”安全模型。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号