Dynamically authorized role-based access control for grid applications |
| |
Authors: | Yao Hanbing Hu Heping Lu Zhengding Li Ruixuan |
| |
Institution: | College of Computer Science and Technology , Huazhong University of Science and Technology , Wuhan , China |
| |
Abstract: | Grid computing is concerned with the sharing and coordinated use of diverse resources in distributed “virtual organizations”. The heterogeneous, dynamic and multi-domain nature of these environments makes challenging security issues that demand new technical approaches. Despite the recent advances in access control approaches applicable to Grid computing, there remain issues that impede the development of effective access control models for Grid applications. Among them there are the lack of context-based models for access control, and reliance on identity or capability-based access control schemes. An access control scheme that resolve these issues is presented, and a dynamically authorized role-based access control (D-RBAC) model extending the RBAC with context constraints is proposed. The D-RABC mechanisms dynamically grant permissions to users based on a set of contextual information collected from the system and user's environments, while retaining the advantages of RBAC model. The implementation architecture of D-RBAC for the Grid aplication is also described. |
| |
Keywords: | Grid security RBAC context-based access control |
|
|