Securing Interoperable Grid Services in ARC Grid Middleware
نویسندگان
چکیده
Grid middleware provides a way to integrate computational and storage resouces for supporting large-scale applications that span across multiple domains. Implicitly, Grid middlware eliminates the interoperability obstacle between different resources. However, with the emerging of a bunch of Grid middlewares, to provide interoperability between Gridmiddlewares themselves is an important challenge in productionGrid infrasturtures. Web Service technologies (specifically, Simple Object Access Protocol) have been adopted in most of the Grid middlewares as the XML messaging protocol for the interoperability in the application layer. For other layers, standard protocols are also adopted for interoperability, e.g., HTTP is utilized as service transport protocol. On the other hand, security is a key issue that needs to be taken into account on each layer, for instance,WS-Security (Web Service Security) is considered as an augment on SOAP protocol for applying security to Web Services; GSI (Globus Security Infrastructure) is considered as an protocol for applying security to transport layer. We present the design consideration and implementation about how to provide flexible support for security protocols in the Advanced Resource Connector(ARC) Grid middleware, and this way clients or/and services developed in ARCmiddleware can easily interoperate with service/client developed in other middlewares, such as gLite and Globus Toolkit. Also, a flexible authorization framework is presented that can secure the Grid services with configurable authorization modules, as well as a variety of authorization policies.
منابع مشابه
Functionalities in Grid Computing with Active Services
In this paper we discuss architectural aspects of middleware for grid computing based on an infrastructure of distributed clusters and/or distributed services, an access portal for a demonstration project in progress, and also some security issues. We observe, in recent works, activities in the direction of open service architectures for grid services and for web services. We also see advantage...
متن کاملSecurity and Trust Management for Virtual Organisations: GridTrust Approach
The GridTrust Security Framework (GSF) offers security and trust management for the next generation Grids (NGG). It follows a vertical approach for Grid security from requirements level right down to application and middleware levels. New access control models for collaborative computing, such as the usage control model (UCON), are implemented for securing the Grid systems. The GSF is composed ...
متن کاملMyGridFTP: A Zero-Deployment GridFTP Client Using the .NET Framework
Large-scale scientific and engineering applications are increasingly being hosted as Grid services using Globus middleware complying to the Open Grid Services Architecture (OGSA) framework. In order for users to fully embrace Grid applications, seamless access to Grid services is required. In working towards this aim we present the design and implementation of Grid clients that utilise the lang...
متن کاملMiddleware and Management for Grid Computing
In this paper we discuss architectural aspects of middleware for grid computing based on an infrastructure of distributed clusters and/or distributed services, an access portal for a demonstration project in progress. We observe, in recent works, activities in the direction of open service architectures for grid services and for web services. We also see advantages in adding facilities offered ...
متن کاملLcg and Arc Middleware Interoperability
LCG and ARC are two of the major production-ready Grid middleware solutions being used by hundreds of HEP researchers every day. Even though the middlewares are based on same technology, there are substantial architectural and implementational divergences. An ordinary user faces difficulties trying to cross the boundaries of the two systems. LCG clients so far have not been capable accessing AR...
متن کامل