loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Second IEEE International Conference on e-Science and Grid Computing (e-Science'06)
Domain Based Access Control Model for Distributed Collaborative Applications
Amsterdam, Netherlands
December 04-December 06
ISBN: 0-7695-2734-5
Yuri Demchenko, University of Amsterdam, the Netherlands
Cees de Laat, University of Amsterdam, the Netherlands
Leon Gommans, University of Amsterdam, the Netherlands
Rene van Buuren, Telematica Institute, the Netherlands
This paper describes the design and development of a flexible domain-based access control infrastructure for distributed Collaborative Environments. The paper proposes extensions to classical RBAC models to address typical problems and tasks in the distributed hierarchical resource organisation that came from the practical experience in developing industry oriented virtual laboratories infrastructure, particular: hierarchical resources policy administration, user roles management, dynamic security context and authorisation session management. The paper provides implementation details on the use of XACML for finegrained access control policy definition for domain based resources and roles organisation. The paper analyses the required functionality and suggests extensions to the major service-oriented access generic framework such as Acegi, Globus Toolkit Authorisation framework, and GAAA Authorisation framework in order to support complex resource organisation and collaboration scenarios in dynamic virtualised environments. The paper is based on experiences gained from the industry funded project Collaboratory.nl and other major Grid-based and Grid-oriented projects in collaborative applications and complex resource provisioning.
Citation:
Yuri Demchenko, Cees de Laat, Leon Gommans, Rene van Buuren, "Domain Based Access Control Model for Distributed Collaborative Applications," e-science, pp.24, Second IEEE International Conference on e-Science and Grid Computing (e-Science'06), 2006
Usage of this product signifies your acceptance of the Terms of Use.