An efficient delegation protocol with delegation traceability in the X.509 proxy certificate environment for computational grids

  • Authors:
  • Younho Lee;Heeyoul Kim;Yongsu Park;Hyunsoo Yoon

  • Affiliations:
  • CS Division, EECS Department, Korea Advanced Institute Science and Technology, 373-1, Guseong-dong, Yuseong-gu, Daejeon, Republic of Korea;CS Division, EECS Department, Korea Advanced Institute Science and Technology, 373-1, Guseong-dong, Yuseong-gu, Daejeon, Republic of Korea;College of Information and Communications, Hanyang University, Seoul 133-791, Republic of Korea;CS Division, EECS Department, Korea Advanced Institute Science and Technology, 373-1, Guseong-dong, Yuseong-gu, Daejeon, Republic of Korea

  • Venue:
  • Information Sciences: an International Journal
  • Year:
  • 2008

Quantified Score

Hi-index 0.07

Visualization

Abstract

The X.509 proxy certificate is widely used to delegate an entity's right to another entity in the computational grid environment. However, this proxy certificate has two drawbacks: the potential security threat caused by non-traceability of a delegation chain and the inefficiency caused by an interactive communication between the right grantor and the right grantee on the delegation protocol. To address these problems, a new delegation protocol is presented. The proposed protocol employs an ID-based key generation technique to support delegation traceability and non-interactive delegation. Since access-right delegation occurs frequently in the computational grid environment, the proposed protocol can enhance security by providing delegation traceability and can enhance efficiency by reducing the inter-domain communication cost.