Dynamically Authorized Role-Based Access Control for Grid Applications

Grid computing is concerned with the sharing and coordinated use of diverse resources in distributed "virtual organizations". The heterogeneous, dynamic and multi-domain nature of these environments makes challenging security issues that demand new technical approaches. Despite the recent advances i...

Full description

Saved in:
Bibliographic Details
Published inGeo-spatial information science Vol. 9; no. 3; pp. 223 - 228
Main Authors Hanbing, Yao, Heping, Hu, Zhengding, Lu, Ruixuan, Li
Format Journal Article
LanguageEnglish
Published Taylor & Francis Group 2006
College of Computer Science and Technology, Huazhong University of Science and Technology, Guanshan, Wuhan 430074, China
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:Grid computing is concerned with the sharing and coordinated use of diverse resources in distributed "virtual organizations". The heterogeneous, dynamic and multi-domain nature of these environments makes challenging security issues that demand new technical approaches. Despite the recent advances in access control approaches applicable to Grid computing, there remain issues that impede the development of effective access control models for Grid applications. Among them there are the lack of context-based models for access control, and reliance on identity or capability-based access control schemes. An access control scheme that resolve these issues is presented, and a dynamically authorized role-based access control (D-RBAC) model extending the RBAC with context constraints is proposed. The D-RABC mechanisms dynamically grant permissions to users based on a set of contextual information collected from the system and user's environments, while retaining the advantages of RBAC model. The implementation architecture of D-RBAC for the Grid application is also described.
Bibliography:Grid security; RBAC; context-based; access control
42-1610/P
RBAC
Grid security
access control
context-based
P208
ISSN:1009-5020
1993-5153
DOI:10.1007/BF02826772