...
首页> 外文期刊>Future generation computer systems >On usage control for GRID systems
【24h】

On usage control for GRID systems

机译:关于GRID系统的使用控制

获取原文
获取原文并翻译 | 示例

摘要

This paper introduces a formal model, an architecture and a prototype implementation for usage control on GRID systems. The usage control model (UCON) is a new access control paradigm proposed by Park and Sandhu that encompasses and extends several existing models (e.g. MAC, DAC, Bell-Lapadula, RBAC, etc.). Its main novelty is based on continuity of the access monitoring and mutability of attributes of subjects and objects.rnWe identified this model as a perfect candidate for managing access/usage control in GRID systems due to their peculiarities, where continuity of control is a central issue. Here we adapt the original UCON model to develop a full model for usage control in GRID systems. We use as policy specification language a process description language and show how this is suitable to model the usage policy models of the original UCON model. We also describe a possible architecture to implement the usage control model. Moreover, we describe a prototype implementation for usage control of GRID computational services, and we show how our language can be used to define a security policy that regulates the usage of network communications to protect the local computational service from the applications that are executed on behalf of remote GRID users.
机译:本文介绍了GRID系统上使用控制的正式模型,体系结构和原型实现。使用控制模型(UCON)是Park和Sandhu提出的一种新的访问控制范例,它包含并扩展了几种现有模型(例如MAC,DAC,Bell-Lapadula,RBAC等)。它的主要新颖之处是基于访问监视的连续性和主体和对象属性的可变性。rn我们认为该模型是GRID系统中管理访问/使用控制的理想人选,因为它们的特殊性,其中控制连续性是一个中心问题。在这里,我们改编了原始的UCON模型,以开发用于GRID系统中使用控制的完整模型。我们使用一种过程描述语言作为策略规范语言,并说明它如何适合于对原始UCON模型的使用策略模型进行建模。我们还描述了实现使用控制模型的可能架构。此外,我们描述了GRID计算服务使用控制的原型实现,并且展示了如何使用我们的语言来定义安全策略,该安全策略调节网络通信的使用以保护本地计算服务免受代表其执行的应用程序的侵害远程GRID用户。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号