A Brokered Approach to Interoperable Security in OGSA-Based Grid Systems

نویسندگان

  • Demetrios Loutsios
  • Maree Pather
چکیده

The need for organisations to share data and collaborate on a large scale with geographically dispersed parties has increased dramatically in recent years. Grid Services allow for large scale collaboration between geographically-dispersed parties running diverse hardware and software platforms, over public networks such as the Internet. Grid Services are an evolution of Web Service technology and other open, platform-independent standards. Current research efforts have been undertaken to standardize grid implementations. With the efforts of the Global Grid Forum (GGF) and other interested parties, the Globus Toolkit has been developed. The focus of this paper is to define a holistic security strategy for implementing Globus-based Grids. The Globus Toolkit is an open source software initiative, providing a set of tools and a platform for grid developers to build onto. The Toolkit is currently the de facto standard for Grid Service implementations, and is in its fourth major revision GT4 (Globus Toolkit version 4). The Globus Toolkit consists of a number of core components for implementing grids; the component of interest to this research is the Globus Security Infrastructure (GSI). This research looks at a layered approach to securing grids, making use of a defence-in-depth approach. The focus is on the Globus Toolkit and GSI, local hardware and software configurations for remote sites, and communications (i.e. TCP/IP stack, RMI, RPC, etc). The STRIDE model will be used to provide a base for understanding hackers attack methodologies and threats faced by modern Grids.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

MAPFS-DAI, an extension of OGSA-DAI based on a parallel file system

Since current applications demand access to a huge volume of data, new and sophisticated I/O systems are required. Several mass storage systems have been developed from different institutions to access their own data repositories. These systems expose native interfaces not interoperable among them. In order to deal with this requirement, OGSA-DAI has emerged to provide a uniform access to data ...

متن کامل

MyGridFTP: A Zero-Deployment GridFTP Client Using the .NET Framework

Large-scale scientific and engineering applications are increasingly being hosted as Grid services using Globus middleware complying to the Open Grid Services Architecture (OGSA) framework. In order for users to fully embrace Grid applications, seamless access to Grid services is required. In working towards this aim we present the design and implementation of Grid clients that utilise the lang...

متن کامل

OGSA Security Authentication Services

Grid computing is concerned with the sharing and coordinated use of diverse resources in distributed "virtual organizations (VOs).” The dynamic and multi-institutional nature of these environments introduces challenging security issues that demand new technical approaches. This paper reflects the challenges and requirements we have identified thus far in an OGSA environment and we proposes a st...

متن کامل

OGSA/Globus Evaluation for Data Intensive Applications

It is widely accepted that future generations of Grid systems will be based on the Open Grid Service Architecture (OGSA) [1]. This architecture implies the existence of an extensive set of services, which can be combined in different ways to create various systems for distributed computing and data processing. The architecture defines standard methods for creation, naming, detection and offerin...

متن کامل

Performance Analysis of the OGSA-DAI Software

This paper describes the experiences of the OGSA-DAI team in profiling and benchmarking components of the OGSA-DAI database access middleware built using the Open Grid Services Infrastructure and the emerging Database Access and Integration Services Global Grid Forum recommendations. The profiling approach and the tools used are described. A number of areas of concern are then analysed in detai...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2006