loading...
Access Control Policy Negotiation for Remote Hot-deployed Grid Services
Melbourne, Australia December 05-December 08
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/E-SCIENCE.2005.11First International Conference on e-S ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Wei Xue, Beihang University
Jinpeng Huai, Beihang University
Yunhao Liu, Hong Kong University of Science and Technology
Service grid is a widely distributed environment, where service deployers and containers may be located in different autonomous domains. In such cases, different from traditional scenarios such as J2EE applications, the access control policy should not be determined by a deployer or a container only. Existing grid application deployment solutions do not address this unique requirement. In this paper, we propose a general approach, namely CROWN.ST, an access control policy negotiation solution for remote hot-deployment of grid services in CROWN (China R&D Environment Over Wide-area Network). Based on an access control policy language derived from non-recursive stratified Datalog with constraints, we design the negotiation procedure and three types of meta-policies. We implement a CROWN.ST prototype and evaluate our design by comprehensive experiments.
Index Terms:
Grid Computing, Security, Trust, CROWN, Policy Negotiation, Implementation
Citation:
Wei Xue, Jinpeng Huai, Yunhao Liu, "Access Control Policy Negotiation for Remote Hot-deployed Grid Services," e-science, pp.378-386, First International Conference on e-Science and Grid Computing (e-Science'05), 2005
Usage of this product signifies your acceptance of the Terms of Use.