Third IEEE International Conference on e-Science and Grid Computing (e-Science 2007)
Trust Issues in Shibboleth-Enabled Federated Grid Authentication and Authorization Infrastructures Supporting Multiple Grid Middleware
Bangalore, India
December 10-December 13
ISBN: 0-7695-3064-8
In Germany's D-Grid project numerous Grid communities are working together to develop a common overarching Grid. One major aim of D-Grid is thus to integrate the existing Grid deployments and make them interoperable. The major challenge in this endeavor lies in the heterogeneity of the current implementations: Three Grid middleware and different VO management approaches have to be orchestrated to achieve the intended interoperability. This paper presents some of the findings of the IVOM project regarding VO management technologies. Furthermore, options are discussed for making Shibboleth federations and VO management systems interoperable so that attributes from both sources can be used for authentication and authorization in Grids. Finally two approaches, one using a so called "trust proxy" and one without trust proxying, are presented and support by current Grid middleware is discussed.
Citation:
Christian Grimm, Ralf Groeper, Siegfried Makedanz, Hans Pfeiffenberger, Peter Gietz, Martin Haase, Michael Schiffers, Wolfgang Ziegler, "Trust Issues in Shibboleth-Enabled Federated Grid Authentication and Authorization Infrastructures Supporting Multiple Grid Middleware," e-science, pp.569-576, Third IEEE International Conference on e-Science and Grid Computing (e-Science 2007), 2007