Shibboleth-based Access to and Usage of Grid Resources

  • Authors:
  • R. Sinnott;J. Jiang;J. Watt;O. Ajayi

  • Affiliations:
  • National e-Science Centre, University of Glasgow, United Kingdom. r.sinnott@nesc.gla.ac.uk;National e-Science Centre, University of Glasgow, United Kingdom. j.jiang@nesc.gla.ac.uk;National e-Science Centre, University of Glasgow, United Kingdom. j.watt@nesc.gla.ac.uk;National e-Science Centre, University of Glasgow, United Kingdom. o.ajayi@nesc.gla.ac.uk

  • Venue:
  • GRID '06 Proceedings of the 7th IEEE/ACM International Conference on Grid Computing
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Security underpins Grids and e-Research. Without a robust, reliable and simple Grid security infrastructure combined with commonly accepted security practices, large portions of the research community and wider industry will not engage. The predominant way in which security is currently addressed in the Grid community is through Public Key Infrastructures (PKI) based upon X.509 certificates to support authentication. Whilst PKIs address user identity issues, authentication does not provide fine grained control over what users are allowed to do on remote resources (authorization). In this paper we outline how we have successfully combined Shibboleth and advanced authorization technologies to provide simplified (from the user perspective) but fine grained security for access to and usage of Grid resources. We demonstrate this approach through different security focused e-Science projects being conducted at the National e-Science Centre (NeSC) at the University of Glasgow. We believe that this model will be more widely applicable and encourage the further uptake of e-Science by non-IT specialists in the research communities.