On usage control for GRID services

Maurizio Colombo, Fabio Martinelli, Paolo Mori, Aliaksandr Lazouski

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

1 Scopus citations

Abstract

In recent years, usage control has been proposed as a novel authorization solution for open, heterogeneous, distributed computer environments. Grid is a such environment providing services for seamless sharing and usage of heterogeneous computational resources. Researches have shown that usage control is a viable solution for authorization in Grid. Unfortunately, the implementation of continues usage control for Grid services is not widely presented. In this paper, we present a usage control model and focus on continuous control over Grid services. If a security policy is violated during a service execution, the service should be blocked or terminated. Our approach presents different levels of granularity and enforces coarse and finegrained usage control on generic and computational Grid services. Furthermore, we present an implementation of our prototype based on POLPA policy language and its reasoning authorization engine integrated into Grid services runtime component of Globus Toolkit. Our prototype is facilitated through implementation of service interfaces compliant with OGSA standard and can be easily plugged-in to existing Globus authorization infrastructure.

Original languageBritish English
Title of host publicationProceedings of the 2009 International Joint Conference on Computational Sciences and Optimization, CSO 2009
Pages47-51
Number of pages5
DOIs
StatePublished - 2009
Event2009 International Joint Conference on Computational Sciences and Optimization, CSO 2009 - Sanya, Hainan, China
Duration: 24 Apr 200926 Apr 2009

Publication series

NameProceedings of the 2009 International Joint Conference on Computational Sciences and Optimization, CSO 2009
Volume1

Conference

Conference2009 International Joint Conference on Computational Sciences and Optimization, CSO 2009
Country/TerritoryChina
CitySanya, Hainan
Period24/04/0926/04/09

Fingerprint

Dive into the research topics of 'On usage control for GRID services'. Together they form a unique fingerprint.

Cite this