Security Issues in On-Demand Grid and Cluster Computing

  • Authors:
  • Matthew Smith;Michael Engel;Thomas Friese;Bernd Freisleben;Gregory A. Koenig;William Yurcik

  • Affiliations:
  • University of Marburg, Germany;University of Marburg, Germany;University of Marburg, Germany;University of Marburg, Germany;University of Illinois, Urbana-Champaign, USA;University of Illinois, Urbana-Champaign, USA

  • Venue:
  • CCGRID '06 Proceedings of the Sixth IEEE International Symposium on Cluster Computing and the Grid
  • Year:
  • 2006

Quantified Score

Hi-index 0.01

Visualization

Abstract

In this paper, security issues in on-demand Grid and cluster computing are analyzed, a corresponding threat model is presented and the challenges with respect to authentication, authorization, delegation and single sign-on, secure communication, auditing, safety, and confidentiality are discussed. Three different levels of on-demand computing are identified, based on the number of resource providers, solution producers and users, and the trust relationships between them. It is argued that the threats associated with the first two levels can be handled by employing operating system virtualization technologies based on Xen, whereas the threats of the third level require the use of hardware security modules proposed in the context of the Trusted Computing Platform Alliance (TCPA). The presented security mechanisms increase the resilience of the service hosting environment against both malicious attacks and erroneous code. Thus, our proposal paves the way for large scale hosting of Grid or web services in commercial scenarios.