Task-and-role-based access-control model for computational grid

来源 :Journal of Chongqing University(English Edition) | 被引量 : 0次 | 上传用户:LISA19861011
下载到本地 , 更方便阅读
声明 : 本文档内容版权归属内容提供方 , 如果您对本文有版权争议 , 可与客服联系进行内容授权或下架
论文部分内容阅读
Access control in a grid environment is a challenging issue because the heterogeneous nature and independent administration of geographically dispersed resources in grid require access control to use fine-grained policies. We established a task-and-role-based access-control model for computational grid (CG-TRBAC model), integrating the concepts of role-based access control (RBAC) and task-based access control (TBAC). In this model, condition restrictions are defined and concepts specifically tailored to Workflow Management System are simplified or omitted so that role assignment and security administration fit computational grid better than traditional models; permissions are mutable with the task status and system variables, and can be dynamically controlled. The CG-TRBAC model is proved flexible and extendible. It can implement different control policies. It embodies the security principle of least privilege and executes active dynamic authorization. A task attribute can be extended to satisfy different requirements in a real grid system. Access control in a grid environment is a challenging issue because of heterogeneous nature and independent administration of geographically dispersed resources in grid require access control to use fine-grained policies. We established a task-and-role-based access-control model for computational grid (CG-TRBAC model), integrating the concepts of role-based access control (RBAC) and task-based access control (TBAC). In this model, condition restrictions are defined and concepts specifically tailored to Workflow Management System are simplified or omitted so that role assignment and security administration fit computational grid better than traditional models; permissions are mutable with the task status and system variables, and can be dynamically controlled. The CG-TRBAC model is was flexible and extendible. It can implement different control policies. It embodies the security principle of least privilege and executes active dynamic authorization. A task attribute can be extended Different requirements in a real grid system.
其他文献
Background:Pediculosis capitis and scabies are common parasitic skin diseases,especially in resource-poorcommun-ities,but data on epidemiology and morbidity are
为了满足设想的任务要求,需要导弹具有比目前系统更高的性能。初步分析表明,倾斜转弯控制(以下简称BTT控制)能提高导弹的性能。本文概述了倾斜转弯控制的优点,评述了目前正在
7月15日至17日,中共中央政治局委员、中央书记处书记、中宣部部长刘奇葆在黑龙江调研时强调,要深入学习宣传贯彻习近平总书记系列重要讲话精神,把培育和践行社会主义核心价值
导弹寿命的大部分时间是在贮存状态下渡过的,研究贮存期导弹的可靠性,战备状态概率及检修周期,不仅对导弹的维护与使用十分重要,对导弹的研制与设计也密切相关。现代导弹设
美帝汉尼威尔公司研究了将近15年的,采用静电陀螺的常平架静电飞机导航系统Ceans,即将在美帝霍夫曼空军基地的波音KC-135运输机上进行飞行试验。静电陀螺在没有通常引起陀螺
日刊《战车》1974年第4,5,6期连载江畑谦介这篇文章。因原文过于冗长,不宜全文刊登,所以略作删减和编写。 Journal “chariot” in 1974, 4, 5, 6 Serial Jiang Yijian medi
目的分析铜陵市疟疾基本消灭后的疟疾疫情,以便进一步调整疟疾防治策略。方法对铜陵市1997~2003年疟疾防治监测报表等资料用流行病学统计方法进行汇总、核实、统计分析。结果7
在常规战争中,对雷达制导历来就有很大的兴趣,因为雷达制导能以适当的精度导引射程较大的武器。它与工作在可见光和红外波段的相应的武器系统相比,在恶劣的气象条件下有其独
仅2003年美国就已报道西尼罗河病毒(WNV)感染者达8000多例。人们对于此病原体对公共卫生的影响的重要性认识更为深刻,尤其是内布拉斯加和科罗拉多州的人。虽然WNV感染多数表