首页> 外文会议>International conference on security management >Federated Identity and Access Management and Trusted Computing-based Federated GRID Model for Federated GRID Resources
【24h】

Federated Identity and Access Management and Trusted Computing-based Federated GRID Model for Federated GRID Resources

机译:联合GRID资源的联合身份和访问管理以及基于可信计算的联合GRID模型

获取原文

摘要

The prominent FId model allows the IDP end-users to log-in once via a service SSo to access multiple resources using SAML or XACML at the RP's. The GridShib, Shibboleth plus PERMS, Globus Toolkit, and PERMS are the examples of web-portal based GRID. The problems in the existing web portal-based GRID are that: (1) The protected resource access decisions are performed on attributes like name, email, or role, but not on the attributes of the attested machines', and (2) The RP blindly trusts the IDP machine's health. In this paper the conceptual federated GRID model is proposed by taking advantage of the TC, and FId&AM systems. The contributions in this paper are: (1) the Ima and rma protocols for the federated GRIDs, (2) the resources access decision on the basis of attested machine's platform mutual integrity attribute, and (3) the machine-platform trust formation via the machine's platform integrity mutual attestation.
机译:杰出的FId模型允许IDP最终用户通过服务SSo登录一次,以在RP处使用SAML或XACML访问多个资源。 GridShib,Shibboleth加上PERMS,Globus Toolkit和PERMS是基于Web门户的GRID的示例。现有基于Web门户的GRID中的问题在于:(1)受保护的资源访问决策是针对名称,电子邮件或角色之类的属性执行的,而不是针对被证明机器的属性执行的;以及(2)RP盲目地相信IDP机器的健康状况。本文利用TC和FId&AM系统,提出了概念性的联邦GRID模型。本文的贡献是:(1)联合GRID的Ima和rma协议,(2)基于被证明机器的平台相互完整性属性的资源访问决定,以及(3)通过机器的平台完整性相互认证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号