Adoption of a SAML-XACML Profile for Authorization Interoperability across Grid Middleware in OSG and EGEE

The Authorization Interoperability activity was initiated in 2006 to foster interoperability between middleware and authorization infrastructures deployed in the Open Science Grid (OSG) and the Enabling Grids for E-sciencE (EGEE) projects. This activity delivered a common authorization protocol and...

Full description

Saved in:
Bibliographic Details
Published inJournal of physics. Conference series Vol. 331; no. 6; pp. 062011 - 6
Main Authors Garzoglio, G, Bester, J, Chadwick, K, Dykstra, D, Groep, D, Gu, J, Hesselroth, T, Koeroo, O, Levshina, T, Martin, S, Salle, M, Sharma, N, Sim, A, Timm, S, Verstegen, A
Format Journal Article
LanguageEnglish
Published Bristol IOP Publishing 01.01.2011
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:The Authorization Interoperability activity was initiated in 2006 to foster interoperability between middleware and authorization infrastructures deployed in the Open Science Grid (OSG) and the Enabling Grids for E-sciencE (EGEE) projects. This activity delivered a common authorization protocol and a set of libraries that implement that protocol. In addition, a set of the most common Grid gateways, or Policy Enforcement Points (Globus Toolkit v4 Gatekeeper, GridFTP, dCache, etc.) and site authorization services, or Policy Decision Points (LCAS/LCMAPS, SCAS, GUMS, etc.) have been integrated with these libraries. At this time, various software providers, including the Globus Toolkit v5, BeStMan, and the Site AuthoriZation service (SAZ), are integrating the authorization interoperability protocol with their products. In addition, as more and more software supports the same protocol, the community is converging on LCMAPS as a common module for identity attribute parsing and authorization call-out. This paper presents this effort, discusses the status of adoption of the common protocol and projects the community work on authorization in the near future.
Bibliography:ObjectType-Article-1
SourceType-Scholarly Journals-1
ObjectType-Feature-2
content type line 23
ISSN:1742-6596
1742-6588
1742-6596
DOI:10.1088/1742-6596/331/6/062011