A negotiation-based trust establishment service for CROWN grid. (9th November 2009)
- Record Type:
- Journal Article
- Title:
- A negotiation-based trust establishment service for CROWN grid. (9th November 2009)
- Main Title:
- A negotiation-based trust establishment service for CROWN grid
- Authors:
- Li, Jianxin
Huai, Jinpeng
Lin, Li - Abstract:
- In order to build trust relationship between service requesters and service providers in an open grid computing environment, we design a novel negotiation-based trust establishment service, which supports distributed credential chain construction and privacy preservation to enhance the grid security infrastructure. In this service, we develop a novel credential chain aware negotiation strategy for trust establishment on the fly by gradually disclosing credentials according to various access control policies. This strategy can protect sensitive credentials, partial credential chains and sensitive information in an access control policies based on two concepts: soft protection and hard protection. What's more, a credential federation mechanism is designed for this service when the negotiators use heterogeneous security infrastructures, for example, Kerberos and PKI. Our approach has been successfully implemented as useful components and fundamental security services in the CROWN grid, and techniques such as trust tickets and policy caching that can greatly increase service efficiency are used. Comprehensive experiments have been conducted, which demonstrate our approach is feasible.
- Is Part Of:
- International journal of autonomous and adaptive communications systems. Volume 2:Number 4(2009)
- Journal:
- International journal of autonomous and adaptive communications systems
- Issue:
- Volume 2:Number 4(2009)
- Issue Display:
- Volume 2, Issue 4 (2009)
- Year:
- 2009
- Volume:
- 2
- Issue:
- 4
- Issue Sort Value:
- 2009-0002-0004-0000
- Page Start:
- 362
- Page End:
- 381
- Publication Date:
- 2009-11-09
- Subjects:
- credential federation -- grid computing -- privacy protection -- trust management -- trust negotiation -- security policy -- grid security
Adaptive computing systems -- Periodicals
Wireless communication systems -- Periodicals
Computer networks -- Periodicals
004.6 - Journal URLs:
- http://inderscience.metapress.com/content/121122 ↗
http://www.inderscience.com/ ↗ - Languages:
- English
- ISSNs:
- 1754-8632
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - BLDSS-3PM
British Library STI - ELD Digital store - Ingest File:
- 8105.xml