Architectures for Secure Delegation Within Grids

The purpose of a grid is to enable large scale distributed computing over wide area networks, where entities (for example, users) can gain seamless access to computing resources across heterogeneous and geographically dispersed environments. There are a number of difficult issues that arise within t...

Full description

Bibliographic Details
Main Authors: Broadfoot, P, Lowe, G
Format: Report
Published: Oxford University Computing Laboratory 2003
_version_ 1797086289125703680
author Broadfoot, P
Lowe, G
author_facet Broadfoot, P
Lowe, G
author_sort Broadfoot, P
collection OXFORD
description The purpose of a grid is to enable large scale distributed computing over wide area networks, where entities (for example, users) can gain seamless access to computing resources across heterogeneous and geographically dispersed environments. There are a number of difficult issues that arise within the design and deployment of such a grid architecture; security has been a particularly difficult issue. In this paper, we will focus on the security implications arising through the introduction of delegation, an essential requirement to enable the sort of distributed collaboration and resource sharing for which the grid is designed. The precise impact of proposed delegation mechanisms upon security remains unclear within many grid projects. What security guarantees are required from the delegation architecture, and how does one determine whether a particular architecture provides those guarantees? In this paper, we aim to address these issues more precisely. We begin by identifying a number of security aspects of delegation. We then consider two existing architectures for secure delegation and evaluate what security requirements they meet. Finally, we discuss their applicability in practice within a grid environment, focusing mainly upon our observations within the European Union DataGrid project.
first_indexed 2024-03-07T02:19:55Z
format Report
id oxford-uuid:a38da70e-e8c2-42b2-9cbc-7545b8e5acb9
institution University of Oxford
last_indexed 2024-03-07T02:19:55Z
publishDate 2003
publisher Oxford University Computing Laboratory
record_format dspace
spelling oxford-uuid:a38da70e-e8c2-42b2-9cbc-7545b8e5acb92022-03-27T02:27:55ZArchitectures for Secure Delegation Within GridsReporthttp://purl.org/coar/resource_type/c_93fcuuid:a38da70e-e8c2-42b2-9cbc-7545b8e5acb9Department of Computer ScienceOxford University Computing Laboratory2003Broadfoot, PLowe, GThe purpose of a grid is to enable large scale distributed computing over wide area networks, where entities (for example, users) can gain seamless access to computing resources across heterogeneous and geographically dispersed environments. There are a number of difficult issues that arise within the design and deployment of such a grid architecture; security has been a particularly difficult issue. In this paper, we will focus on the security implications arising through the introduction of delegation, an essential requirement to enable the sort of distributed collaboration and resource sharing for which the grid is designed. The precise impact of proposed delegation mechanisms upon security remains unclear within many grid projects. What security guarantees are required from the delegation architecture, and how does one determine whether a particular architecture provides those guarantees? In this paper, we aim to address these issues more precisely. We begin by identifying a number of security aspects of delegation. We then consider two existing architectures for secure delegation and evaluate what security requirements they meet. Finally, we discuss their applicability in practice within a grid environment, focusing mainly upon our observations within the European Union DataGrid project.
spellingShingle Broadfoot, P
Lowe, G
Architectures for Secure Delegation Within Grids
title Architectures for Secure Delegation Within Grids
title_full Architectures for Secure Delegation Within Grids
title_fullStr Architectures for Secure Delegation Within Grids
title_full_unstemmed Architectures for Secure Delegation Within Grids
title_short Architectures for Secure Delegation Within Grids
title_sort architectures for secure delegation within grids
work_keys_str_mv AT broadfootp architecturesforsecuredelegationwithingrids
AT loweg architecturesforsecuredelegationwithingrids