Interoperable grid pkis among untrusted domains: an architectural proposal

V Casola, J Luna, O Manso, N Mazzocca… - Advances in Grid and …, 2007 - Springer
Advances in Grid and Pervasive Computing: Second International Conference, GPC …, 2007Springer
In the last years several Grid Virtual Organizations-VOs-have been proliferating, each one
usually installing its own Certification Authority and thus giving birth to a large set of different
and possibly untrusted security domains. Nevertheless, despite the fact that the adoption of
Grid Certification Authorities (CAs) has partially solved the problem of identification and
authentication between the involved parties, and that Public Key Infrastructure (PKI)
technologies are mature enough, we cannot make the same assumptions when untrusted …
Abstract
In the last years several Grid Virtual Organizations -VOs- have been proliferating, each one usually installing its own Certification Authority and thus giving birth to a large set of different and possibly untrusted security domains. Nevertheless, despite the fact that the adoption of Grid Certification Authorities (CAs) has partially solved the problem of identification and authentication between the involved parties, and that Public Key Infrastructure (PKI) technologies are mature enough, we cannot make the same assumptions when untrusted domains are involved. In this paper we propose an architecture to face the problem of secure interoperability among untrusted Grid-domains. Our approach is based on building a dynamic federation of CAs, formed thorough the quantitative and automatic evaluation of their Certificate Policies. In this paper we describe the proposed architecture and its integration into Globus Toolkit 4.
Springer
以上显示的是最相近的搜索结果。 查看全部搜索结果