Implementation Issues of Authorization Mechanisms in Grid Computing Systems

Huaji Shi,Xibin Zhao
DOI: https://doi.org/10.1109/SOSE.2006.17
2006-01-01
Abstract:This paper analyzes the requirement of authorization service for grid computing systems and proposes the use of threshold closure as a basic mechanism for implementing authorization service in grid computing systems. While pointing out the desirable features of threshold closure for complex authorization policies, the paper also discusses the practical limitations of threshold closure in such an environment, and then puts forward a new authorization service for virtual organization. In addition, an access control protocol which is based on PKI is designed in the paper. By segregating the policy and mechanism aspects of threshold closure, the new service can use existing security infrastructure in grid computing system while keep the ability to express complex authorization policy effectively
What problem does this paper attempt to address?