Authentication and authorization infrastructure for Grids-issues, technologies, trends and experiences

Authentication and authorization infrastructure for Grids-issues, technologies, trends and experiences
复制标题

网格的身份验证和授权基础设施 - 问题、技术、趋势和经验

DOI:
10.1007/s11227-009-0267-8
复制
发表时间:
2009
期刊:
The Journal of Supercomputing
影响因子:
--
通讯作者:
Jie W
Jie W
中科院分区:
--
文献类型:
--
作者:
Jie W

文献摘要

相似文献

网格的认证和授权是一个具有挑战性的安全问题。本文讨论了建立网格认证与授权基础设施的关键问题,并对主要的网格认证与授权技术进行了综述。与此相关的是,最近的发展,网格认证和授权基础设施建议采用Shibboleth技术,它提供了在可用性,保密性,可扩展性和可扩展性方面的优势。当与高级授权技术相结合时,基于Shibboleth的身份验证和授权基础设施提供了基于角色的细粒度授权。我们分享了我们在构建基于Shibboleth的身份验证和授权基础设施方面的经验,并相信这种基础设施为许多应用领域的安全性提供了一个有前途的解决方案。
Authentication and authorization for Grids is a challenging security issue. In this paper, key issues for the establishment of Grid authentication and authorization infrastructures are discussed, and an overview of major Grid authentication and authorization technologies is presented. Related to this, recent developments in Grid authentication and authorization infrastructures suggest adoption of the Shibboleth technology which offers advantages in terms of usability, confidentiality, scalability and manageability. When combined with advanced authorization technologies, Shibboleth-based authentication and authorization infrastructures provide role-based, fine-grained authorization. We share our experience in constructing a Shibboleth-based authentication and authorization infrastructure and believe that such infrastructure provides a promising solution for the security of many application domains.