首页 | 本学科首页   官方微博 | 高级检索  
     检索      

Task-and-role-based access-control model for computational grid
作者姓名:LONG  Tao  HONG  Fan  WU  Chi  SUN  Ling-fi
作者单位:College of
基金项目:Funded by the Natural Science Foundation of China under Grant Nos. 60503040 and 60403027.
摘    要:Access control in a grid environment is a challenging issue because the heterogeneous nature and independent administration of geographically dispersed resources in grid require access control to use fine-grained policies. We established a task-and-role-based access-control model for computational grid (CG-TRBAC model), integrating the concepts of role-based access control (RBAC) and task-based access control (TBAC). In this model, condition restrictions are defined and concepts specifically tailored to Workflow Management System are simplified or omitted so that role assignment and security administration fit computational grid better than traditional models; permissions are mutable with the task status and system variables, and can be dynamically controlled. The CG-TRBAC model is proved flexible and extendible. It can implement different control policies. It embodies the security principle of least privilege and executes active dynamic authorization. A task attribute can be extended to satisfy different requirements in a real grid system.

关 键 词:计算机  设计方案  计算方法  数据库
文章编号:1671-8224(2007)04-0249-07
收稿时间:2006-12-30
修稿时间:2007-04-15

Task-and-role-based access-control model for computational grid
LONG Tao HONG Fan WU Chi SUN Ling-fi.Task-and-role-based access-control model for computational grid[J].Journal of Chongqing University,2007,6(4):249-255.
Authors:LONG Tao  HONG Fan  WU Chi  SUN Ling-li
Abstract:Access control in a grid environment is a challenging issue because the heterogeneous nature and independent administration of geographically dispersed resources in grid require access control to use fine-grained policies. We established a task-and-role-based access-control model for computational grid (CG-TRBAC model), integrating the concepts of role-based access control (RBAC) and task-based access control (TBAC). In this model, condition restrictions are defined and concepts specifically tailored to Workflow Management System are simplified or omitted so that role assignment and security administration fit computational grid better than traditional models; permissions are mutable with the task status and system variables, and can be dynamically controlled. The CG-TRBAC model is proved flexible and extendible. It can implement different control policies. It embodies the security principle of least privilege and executes active dynamic authorization. A task attribute can be extended to satisfy different requirements in a real grid system.
Keywords:computational grid  task-and-role-based access control  grid security  role assignment
本文献已被 CNKI 维普 万方数据 等数据库收录!
点击此处可从《重庆大学学报(英文版)》浏览原始摘要信息
点击此处可从《重庆大学学报(英文版)》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号