首页> 外文会议>IEEE International Workshop on Policies for Distributed Systems and Networks >Using SAML and XACML for Complex Resource Provisioning in Grid Based Applications
【24h】

Using SAML and XACML for Complex Resource Provisioning in Grid Based Applications

机译:在基于网格的应用中使用SAML和XACML进行复杂资源配置

获取原文

摘要

This paper presents ongoing research and current results on the development of flexible access control infrastructure for complex resource provisioning (CRP) in Grid-based applications. The paper proposes a general CRP model and specifies major requirements to the Authorisation (AuthZ) service infrastructure to support multidomain CRP, focusing on two main issues -- policy expression for complex resource models and AuthZ session support. The paper provides suggestions about using XACML and its special profiles to describe access control policies to complex resources and briefly describes proposed XML based AuthZ ticket format to support extended AuthZ session context. Additionally, the paper discusses what specific functionality can be added to the gLite Java Authorisation Framework (gJAF), to handle dynamic security context including AuthZ session support. The paper is based on experiences gained from major Grid based and Grid oriented projects such as EGEE, Phosphorus and GigaPort Research on Network.
机译:本文展示了持续的研究和目前对基于网格应用中的复杂资源供应(CRP)的灵活访问控制基础设施的发展。本文提出了一般的CRP模型,并指定了授权(Authz)服务基础架构来支持多麦草CRP的主要要求,专注于复杂资源模型和Authz会话支持的两个主要问题 - 策略表达式。本文提供了有关使用XACML及其特殊配置文件来描述复杂资源的访问控制策略的建议,并简要介绍了所提出的基于XML的Authz票证格式,以支持扩展Authz会话上下文。此外,本文讨论了可以将特定功能添加到Glite Java授权框架(GJAF)中,以处理包括Authz会话支持的动态安全上下文。本文基于主要基于网格和基于网格的项目获得的经验,如eGee,磷和Gigaport对网络的研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号