|
| This Article | ||
| ||
| Share | ||
| Bibliographic References | ||
| Add to: | ||
| | ||
| Search | ||
| ||
| ASCII Text | x | ||
| Anil L. Pereira, Vineela Muppavarapu, Soon M. Chung, "Role-Based Access Control for Grid Database Services Using the Community Authorization Service," IEEE Transactions on Dependable and Secure Computing, vol. 3, no. 2, pp. 156-166, April-June, 2006. | |||
| BibTex | x | ||
| @article{ 10.1109/TDSC.2006.26, author = {Anil L. Pereira and Vineela Muppavarapu and Soon M. Chung}, title = {Role-Based Access Control for Grid Database Services Using the Community Authorization Service}, journal ={IEEE Transactions on Dependable and Secure Computing}, volume = {3}, number = {2}, issn = {1545-5971}, year = {2006}, pages = {156-166}, doi = {http://doi.ieeecomputersociety.org/10.1109/TDSC.2006.26}, publisher = {IEEE Computer Society}, address = {Los Alamitos, CA, USA}, } | |||
| RefWorks Procite/RefMan/Endnote | x | ||
| TY - JOUR JO - IEEE Transactions on Dependable and Secure Computing TI - Role-Based Access Control for Grid Database Services Using the Community Authorization Service IS - 2 SN - 1545-5971 SP156 EP166 EPD - 156-166 A1 - Anil L. Pereira, A1 - Vineela Muppavarapu, A1 - Soon M. Chung, PY - 2006 KW - Open Grid Services Architecture-Data Access and Integration (OGSA-DAI) KW - Grid database services KW - fine-grain authorization KW - Community Authorization Service (CAS) KW - role-based access control (RBAC). VL - 3 JA - IEEE Transactions on Dependable and Secure Computing ER - | |||
[1] R. Alfieri et al., “Managing Dynamic User Communities in a Grid of Autonomous Resources,” Proc. Int'l Conf. Computing in High Energy and Nuclear Physics, 2003.
[2] A. Anjomshoaa et al., “The Design and Implementation of Grid Database Services in OGSA-DAI,” Proc. UK e-Science All Hands Meeting, 2003.
[3] A.E. Arenas et al., “Toward Web Services Profiles for Trust and Security in Virtual Organizations,” Proc. Sixth IFIP Working Conf. Virtual Enterprises, pp. 26-28, 2005.
[4] W.H. Bell, D. Bosio, W. Hoschek, P. Kunszt, G. McCance, and M. Silander, “Project Spitfire— Towards Grid Web Service Databases,” informational document, Global Grid Forum, 2002.
[5] R. Butler, V. Welch, D. Engert, I. Foster, S. Tuecke, J. Volmer, and C. Kesselman, “A National-Scale Authentication Infrastructure,” Computer, vol. 33, no. 12, pp. 60-66, Dec. 2000.
[6] L.M. Camarinha-Matos and H. Afsarmanesh, “A Roadmap for Strategic Research on Virtual Organizations,” Proc. Fourth IFIP Working Conf. Virtual Enterprises, pp. 33-46, 2003.
[7] S. Cannon, S. Chan, D. Olson, C. Tull, V. Welch, and L. Pearlman, “Using CAS to Manage Role-Based VO Sub-Groups,” Proc. Int'l Conf. Computing in High Energy and Nuclear Physics, 2003.
[8] S. Carmody, “Shibboleth Overview and Requirements,” Shibbololeth Working Group Document, http://shibboleth.internet2. edu/docsdraft-internet2-shibboleth-requirements-01.html , 2001.
[9] D. Ferraiolo and R. Kuhn, “Role-Based Access Control,” Proc. 15th Nat'l Computer Security Conf., 1992.
[10] D.F. Ferraiolo, J.F. Barkley, and D.R. Kuhn, “A Role-Based Access Control Model and Reference Implementation within a Corporate Intranet,” ACM Trans. Information and System Security, vol. 2, no. 1, pp. 34-64, 1999.
[11] I. Foster and C. Kesselman, “The Globus Toolkit,” The Grid: Blueprint for a New Computing Infrastructure, I. Foster, C. Kesselman, eds., pp. 259-278, Morgan Kaufmann, 1999.
[12] I. Foster and C. Kesselman, “Security, Accounting, and Assurance,” The Grid: Blueprint for a New Computing Infrastructure, I. Foster and C. Kesselman, eds. pp. 395-420, Morgan Kaufmann, 1999.
[13] I. Foster, C. Kesselman, and S. Tuecke, “The Anatomy of the Grid: Enabling Scalable Virtual Organizations,” Int'l J. Supercomputer Applications and High-Performance Computing, vol. 15, no. 3, pp. 200-222, 2001.
[14] I. Foster, C. Kesselman, J.M. Nick, and S. Tuecke, “Grid Services for Distributed System Integration,” Computer, vol. 35, no. 6, pp. 37-46, June 2002.
[15] I. Foster, C. Kesselman, J., M. Nick, and S. Tuecke, “The Physiology of the Grid: An Open Grid Services Architecture for Distributed Systems Integration,” Open Grid Service Infrastructure Working Group, Global Grid Forum, 2002.
[16] I. Foster and R.L. Grossman, “Data Integration in a Bandwidth-Rich World,” Comm. ACM, vol. 46, no. 11, pp. 50-57, 2003.
[17] M. Humphrey, M.R. Thompson, and K.R. Jackson, “Security for Grids,” Proc. IEEE, vol. 93, no. 3, pp. 644-652, 2005.
[18] M. Jackson, M. Antonioletti, N.C. Hong, A. Hume, A. Krause, T. Sugden, and M. Westhead, “Performance Analysis of the OGSA-DAI Software,” Proc. UK e-Science All Hands Meeting, 2004.
[19] J.B.D. Joshi, R. Bhatti, E. Bertino, and A. Ghafoor, “Access-Control Language for Multidomain Environments,” IEEE Internet Computing, vol. 8, no. 6, pp. 40-50, Nov.-Dec. 2004.
[20] S. Malaika, A. Eisenberg, and J. Melton, “Standards for Databases on the Grid,” ACM SIGMOD Record, vol. 32, no. 3, pp. 92-100, 2003.
[21] T. Mayfield, J.E. Roskos, S.R. Welke, and J.M. Boone, “Integrity in Automated Information Systems,” technical report, Nat'l Computer Security Center, 1991.
[22] N. Nagaratnam, P. Janson, J. Dayka, A. Nadalin, F. Siebenlist, V. Welch, I. Foster, and S. Tuecke, “The Security Architecture for Open Grid Services,” Open Grid Service Architecture Security Working Group, Global Grid Forum, 2002.
[23] Assertions and Protocols for the OASIS Security Assertion Markup Language (SAML) Version 1.1, Organization for the Advancement of Structured Information Standards (OASIS), http://www. oasis-open.org/committeestc_home.php?wg_abbrev=security , 2003.
[24] Extensible Access Control Markup Language (XACML) Version 1.0, Organization for the Advancement of Structured Information Standards (OASIS), http://www.oasis-open.org/committeesxacml , 2003.
[25] Web Services Security: SOAP Message Security Version 1.0, Organization for the Advancement of Structured Information Standards (OASIS), http://www.oasis-open.org/committeestc_home. php?wg_abbrev=wss, 2004.
[26] S. Otenko and D. Chadwick, “A Comparison of the Akenti and PERMIS Authorization Infrastructures,” http://sec.isi.salford. ac.uk/downloadAkentiPERMISDeskComparison2-1.pdf , 2003.
[27] L. Pearlman, V. Welch, I. Foster, C. Kesselman, and S. Tuecke, “A Community Authorization Service for Group Collaboration,” Proc. Third IEEE Int'l Workshop Policies for Distributed Systems and Networks, 2002.
[28] L. Pearlman, C. Kesselman, V. Welch, I. Foster, and S. Tuecke, “The Community Authorization Service: Status and Future,” Proc. Int'l Conf. Computing in High Energy and Nuclear Physics, 2003.
[29] C. Ramaswamy and R.S. Sandhu, “Role-Based Access Control Features in Commercial Database Management Systems,” Proc. 21st Nat'l Information Systems Security Conf., 1998.
[30] R.S. Sandhu, E.J. Coyne, H.L. Feinstein, and C.E. Youman, “Role-Based Access Control Models,” Computer, vol. 29, no. 2, pp. 38-47, Feb. 1996.
[31] J. Smith et al., “Distributed Query Processing on the Grid,” Int'l J. High Performance Computing Applications, vol. 17, no. 4, pp. 353-367, 2003.
[32] H. Stockinger, “Distributed Database Management Systems and the Data Grid,” Proc. 18th IEEE Symp. Mass Storage Systems and the Ninth NASA Goddard Conf. Mass Storage Systems and Technologies, 2001.
[33] Globus Toolkit Version 4 Grid Security Infrastructure: A Standards Perspective, The Globus Security Team, http://www.globus.org/toolkit/docs/4.0/security GT4-GSI-Overview.pdf, 2005.
[34] M.R. Thompson, A. Essiari, K. Keahey, V. Welch, S. Lang, and B. Liu, “Fine-Grained Authorization for Job and Resource Management Using Akenti and the Globus Toolkit,” Proc. Int'l Conf. Computing in High Energy and Nuclear Physics, 2003.
[35] S. Tuecke, K. Czajkowski, I. Foster, J. Frey, S. Graham, C. Kesselman, and P. Vanderbilt, Grid Service Specification, Draft 4, Open Grid Service Infrastructure Working Group, Global Grid Forum, 2002.
[36] G. Wasson and M. Humphrey, “Policy and Enforcement in Virtual Organizations,” Proc. Fourth Int'l Workshop Grid Computing, pp. 125-132, 2003.
[37] G. Wasson and M. Humphrey, “Towards Explicit Policy Management for Virtual Organizations,” Proc. Fourth IEEE Int'l Workshop Policies for Distributed Systems and Networks, pp. 173-182, 2003.
[38] V. Welch, F. Siebenlist, I. Foster, J. Bresnahan, K. Czajkowski, J. Gawor, C. Kesselman, S. Meder, L. Pearlman, and S. Tuecke, “Security for Grid Services,” Proc. 12th Int'l Symp. High- Performance Distributed Computing, pp. 48-57, 2003.
[39] V. Welch, T. Barton, K. Keahey, and F. Siebenlist, “Attributes, Anonymity, and Access: Shibboleth and Globus Integration to Facilitate Grid Collaboration,” Proc. Fourth Ann. Public Key Infrastructure R&D Workshop, 2005.
[40] G. Zhang and M. Parasher, “Dynamic Context-Aware Access Control for Grid Applications,” Proc. Fourth Int'l Workshop Grid Computing, pp. 101-108, 2003.

