首页> 外文OA文献 >Trusted Grid computing with security binding and trust integration
【2h】

Trusted Grid computing with security binding and trust integration

机译:具有安全绑定和信任集成的可信网格计算

摘要

Trusted Grid computing demands robust resource allocation with security assurance at all resource sites. Large-scale Grid applications are being hindered by lack of security assurance from remote resource sites. We developed a security-binding scheme through site reputation assessment and trust integration across Grid sites. We do not treat the trust factor deterministically. Instead, we apply fuzzy theory to handle the fuzziness or uncertainties behind all trust attributes. The binding is achieved by periodic exchange of site security information and matchmaking to satisfy user job demands. PKI-based trust model supports Grids in multi-site authentication and single sign-on operations. However, cross certificates are inadequate to assess local security conditions at Grid sites. We propose a new fuzzy-logic trust model for distributed trust aggregation through fuzzification and integration of security attributes. We introduce the trust index of a Grid site, which is determined by site reputation from its track record and self-defense capability attributed to the risk conditions and hardware and software defenses deployed at a Grid site. A Secure Grid Outsourcing (SeGO) system is designed for secure scheduling a large number of autonomous and indivisible jobs to Grid sites. Significant performance gains are observed after trust aggregation, which is evaluated by running scalable NAS and PSA workloads over simulated Grids. Our security-binding scheme scales well with increasing user jobs and Grid sites. The new scheme can guide the security upgrade of Grid sites and predict the Grid performance of large workloads under risky conditions. © Springer 2005.
机译:可信网格计算要求在所有资源站点上进行可靠的资源分配和安全性保证。缺乏远程资源站点的安全性保证,阻碍了大型Grid应用程序的使用。我们通过站点信誉评估和跨Grid站点的信任集成,开发了一种安全绑定方案。我们不会确定地对待信任因素。相反,我们使用模糊理论来处理所有信任属性背后的模糊性或不确定性。通过定期交换站点安全信息和进行匹配以实现用户工作需求来实现绑定。基于PKI的信任模型在多站点身份验证和单点登录操作中支持Grid。但是,交叉证书不足以评估Grid站点上的本地安全状况。我们通过模糊化和集成安全属性,为分布式信任聚合提出了一种新的模糊逻辑信任模型。我们介绍了Grid站点的信任指数,它由站点信誉根据其信誉记录和自防御能力确定,该能力归因于Grid站点的风险状况以及硬件和软件防御。安全网格外包(SeGO)系统旨在安全地将大量自主和不可分割的作业调度到网格站点。信任聚合后可观察到显着的性能提升,这可以通过在模拟网格上运行可扩展的NAS和PSA工作负载来评估。我们的安全绑定方案可以随着用户工作和网格站点的增加而很好地扩展。新方案可以指导Grid站点的安全升级,并预测在危险条件下大型工作负载的Grid性能。 ©Springer 2005。

著录项

  • 作者

    Song S; Kwok YK; Hwang K;

  • 作者单位
  • 年度 2005
  • 总页数
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号