首页> 外文期刊>Future generation computer systems >Managing authentication and authorization in distributed science gateway middleware
【24h】

Managing authentication and authorization in distributed science gateway middleware

机译:管理分布式科学网关中间件的身份验证和授权

获取原文
获取原文并翻译 | 示例

摘要

Establishing users' identities and determining their permissions before they access research infrastructure resources are key features of science gateways. With many science gateways now relying on general purpose gateway platform services, the challenges of managing identity-derived features have expanded to include network-based authentication and authorization scenarios that connect science gateway tenants, science gateway platform middleware, and third party identity provider services, including campus identity management systems. This paper examines both architectural and implementation considerations for integrating these services. We provide a summary case study that further shows how end-to-end authentication and authorization can be provided between gateways, campus authentication systems, science gateway middleware, and campus computing resources. We conclude with observations on lifecycle management of third party components in science gateway platform services, which is an important consideration for both selection of new technologies and transitioning from older systems.
机译:在访问研究基础架构资源之前,建立用户的身份并确定其权限是科学网关的主要特征。通过许多科学网关依靠通用网关平台服务,管理身份衍生功能的挑战已扩展到包括基于网络的身份验证和授权方案,即连接科学网关租户,科学网关平台中间件和第三方身份提供商服务,包括校园身份管理系统。本文审查了整合这些服务的架构和实施考虑因素。我们提供了一个摘要案例研究,进一步展示了网关,校园认证系统,科学网关中间件和校园计算资源之间提供最终的身份认证和授权。我们与科学网关平台服务中第三方组件的生命周期管理的观察结果进行了结论,这是对旧系统选择新技术的重要考虑因素。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号