A Shibboleth-protected privilege management infrastructure for e-science education

Watt, J., Ajayi, O., Jiang, J., Koetsier, J. and Sinnott, R.O. (2006) A Shibboleth-protected privilege management infrastructure for e-science education. In: Sixth IEEE International Symposium on Cluster Computing and the Grid, 2006. CCGRID 06., Singapore, 16-19 May 2006, (doi: 10.1109/CCGRID.2006.11)

[img]
Preview
Text
01630841.pdf

565kB

Abstract

Simplifying access to and usage of large scale compute resources via the grid is of critical importance to encourage the uptake of e-research. Security is one aspect that needs to be made as simple as possible for end users. The ESP-Grid and DyVOSE projects at the National e-Science Centre (NeSC) at the University of Glasgow are investigating security technologies which will make the end-user experience of using the grid easier and more secure. In this paper, we outline how simplified (from the user experience) authentication and authorization of users are achieved through single usernames and passwords at users' home institutions. This infrastructure, which will be applied in the second year of the grid computing module part of the advanced MSc in Computing Science at the University of Glasgow, combines grid portal technology, the Internet2 Shibboleth Federated Access Control infrastructure, and the PERMS role-based access control technology. Through this infrastructure inter-institutional teaching can be supported where secure access to federated resources is made possible between sites. A key aspect of the work we describe here is the ability to support dynamic delegation of authority whereby local/remote administrators are able to dynamically assign meaningful privileges to remote/local users respectively in a trusted manner thus allowing for the dynamic establishment of virtual organizations with fine grained security at their heart.

Item Type:Conference Proceedings
Status:Published
Refereed:Yes
Glasgow Author(s) Enlighten ID:Watt, Dr John and Sinnott, Professor Richard
Authors: Watt, J., Ajayi, O., Jiang, J., Koetsier, J., and Sinnott, R.O.
Subjects:Q Science > QA Mathematics > QA75 Electronic computers. Computer science
College/School:College of Science and Engineering > School of Computing Science
University Services > IT Services > E-Science
Publisher:Institute of Electrical and Electronics Engineers
Copyright Holders:Copyright © 2005 Institute of Electrical and Electronics Engineers
First Published:first published in Sixth IEEE International Symposium on Cluster Computing and the Grid, 2006. CCGRID 06.
Publisher Policy:Reproduced in accordance with the copyright policy of the publisher

University Staff: Request a correction | Enlighten Editors: Update this record