The PRIMA System for Privilege Management, Authorization and Enforcement in Grid Environments

  • Authors:
  • M. Lorch;D. B. Adams;D. Kafura;M. S. R. Koneni;A. Rathi;S. Shah

  • Affiliations:
  • -;-;-;-;-;-

  • Venue:
  • GRID '03 Proceedings of the 4th International Workshop on Grid Computing
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

Many grid usage scenarios depend on small, dynamicworking groups for which the ability to establishtransient collaboration with little or no intervention fromresource administrators is a key requirement. The systemdeveloped, PRIMA, focuses on the issues of managementand enforcement of fine-grained privileges. Dynamicaccount creation and leasing as well as expressiveenforcement mechanisms facilitate highly dynamicauthorization policies and least privilege access toresources. PRIMA mechanisms enable the use of fine-grainedaccess rights, reduce administrative costs toresource providers, enable ad hoc and dynamiccollaboration scenarios, and can also be used to provideimproved security service to long-lived grid communitieswhile leveraging other work in the grid computing andsecurity domains.