首页> 外文会议>International Workshops on Enabling Technologies >A Credentials Management System for secure trade in a Grid Services Marketplace
【24h】

A Credentials Management System for secure trade in a Grid Services Marketplace

机译:网格服务市场安全贸易的凭证管理系统

获取原文

摘要

In these years, the Grid middlewares are having a rapid evolution, a successful application and a widespread deployment, thus attracting many commercial interests. The opportunity to evolve the current implementations of Grids, presently used mainly in e-science environments, towards a services market place represents, today, one of the most important challenges in the field of Grids' research. The management of business interactions among a large number of actors with different wishes and behaviors requires the development of a comprehensive set of mechanisms and policies for securing the Grids. In this scenario, however, the rigid policies adopted by the Virtual Organizations for the trusted management of grids resources, both in terms of authentication and in terms of authorization policies, result too restrictive and make impossible the exploitation of the grids resources by those users outside their organizations. This paper focuses on the management of the authorizations within these environments, proposing two techniques to assure trust relationships and secure trade of services overcoming the limits imposed by the Virtual Organizations. The first one, inspired to the international credit cards system, has been designed to avoid that a user has to own a certificate for each Grid/VO providing a specific service. The second technique, based on the concept of identity loan, provides a scalable method to associate dynamically a local user account on the grid resources to each remote consumers.
机译:在这些年来,网格中间摆力迅速进化,成功的应用程序和广泛的部署,从而吸引了许多商业利益。提供了发展目前的电网的当前实施的机会,目前主要用于电子科学环境,朝向服务市场代表,今天是网格研究领域中最重要的挑战之一。具有不同愿望和行为的大量行动者之间的商业互动管理需要开发一套全面的机制和政策,用于保护网格。但是,在这种情况下,虚拟组织采用的刚性策略,用于在身份验证和授权策略方面,在身份验证和授权策略方面,导致过度限制性,并且不可能通过外面的这些用户利用网格资源的利用他们的组织。本文重点介绍这些环境中的授权管理,提出了两种技术,以确保信任关系和安全贸易克服虚拟组织限制。第一个启发到国际信用卡系统的第一,旨在避免用户拥有提供特定服务的每个网格/ VO的证书。基于身份贷款概念的第二种技术提供了一种可扩展的方法,可以将网格资源上的当地用户帐户动态相关联到每个远程消费者。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号