Back to Search Start Over

Extending XACML authorisation model to support policy obligations handling in distributed application

Authors :
Yuri Demchenko
O Koeroo
Hakon Sagehaug
Cees de Laat
System and Network Engineering (IVI, FNWI)
Source :
MGC, Proceedings of the 6th International Workshop on Middleware for Grid Computing (MGC'08)
Publication Year :
2008
Publisher :
ACM, 2008.

Abstract

The paper summarises the recent developments and discussions in the Grid and networking security community to build interoperable and scalable authorisation infrastructure for distributed applications. The paper provides a short overview of the XACML policy format and policy obligations definition in the XACML specification. The paper analyses the basic use cases for obligations in computer Grids and on-demand network resource provisioning abstracted to the general complex resource provisioning (CRP) model to identify major requirements and functionalities in obligations handling that further is proposed as a Reference Model for Obligations Handling (OHRM). The paper refers to ongoing implementations of the policy obligations interoperability and handling framework in such project as EU funded projects EGEE and Phosphorus and the proposed XACML policy and attributes profiles for Grid and network resource provisioning.

Details

Database :
OpenAIRE
Journal :
Proceedings of the 6th international workshop on Middleware for grid computing
Accession number :
edsair.doi.dedup.....d621daef14408f59bc5110e132c19538