Fine-grained and History-based Access Control with Trust Management for Autonomic Grid Services

  • Authors:
  • Hristo Koshutanski;Fabio Martinelli;Paolo Mori;Anna Vaccarelli

  • Affiliations:
  • CREATE-NET, Italy;Istituto di Informatica e Telematica, Italy;Istituto di Informatica e Telematica, Italy;Istituto di Informatica e Telematica, Italy

  • Venue:
  • ICAS '06 Proceedings of the International Conference on Autonomic and Autonomous Systems
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Grid technology provides an Internet-wide environment where a very large set of entities share their resources. The main feature of a Grid environment is that resource providers belong to distinct administrative domains each with its own security policies and enforcement mechanisms. Even more, service providers and entities, exploiting the Grid infrastructure, typically have incomplete information about each other mainly because each administrative domain manages its policies and resources with high degree of autonomy. Thus, controlling access to Grid resources has become a major security issue and a Grid infrastructure has to provide a proper set of mechanisms and tools that allow for a fine-grained and history-based access control management. This paper proposes a comprehensive access control and enforcement framework for Grid computational resources. The framework is based on a behavioral model that defines fine-grained and history-based monitoring and on a trust management model that provides access decisions and proper access rights management. The framework provides dynamic and context-aware access control enforcement by generating temporal credentials at run time while user's applications are exploiting Grid's resources.