ACCESS CONTROL MODEL FOR GRID VIRTUAL ORGANIZATIONS

Nasser B., Benzekri A., Laborde R., Grasset F., Barrère F.

2005

Abstract

The problems encountered in the scientific, industrial and engineering fields entail sophisticated processes across widely distributed communities. The Grid emerged as a platform that has a goal enabling coordinated resources sharing and problem resolving in dynamic multi-institutional Virtual Organizations (VO). Though the multi-institutional aspect is considered in the grid definition, there is no recipe that indicates how to fabricate a VO in such environment where mutual distrust is a constraint. Excluding a central management authority, the different partners should cooperate to put in place a multi-administrated environment. The role of each partner in the VO should be clear and unambiguous (permissions, interdictions, users and resources to manage…). Organizing a large scale environment is error prone where not well formalized models lead to unexpected security breaches. Within the access control models RBAC has proved to be flexible but is not adapted to model the multi-institutional aspect. In this context, we propose a formal access control model, OrBAC (Organization Based Access Control model), that encompass concepts required to express a security policy in complex distributed organizations. Its generality and formal foundation makes this model the best candidate to serve as a common framework for setting up Virtual Organizations.

Download


Paper Citation


in Harvard Style

B. N., A. B., R. L., F. G. and F. B. (2005). ACCESS CONTROL MODEL FOR GRID VIRTUAL ORGANIZATIONS . In Proceedings of the Seventh International Conference on Enterprise Information Systems - Volume 3: ICEIS, ISBN 972-8865-19-8, pages 152-158. DOI: 10.5220/0002535001520158

in Bibtex Style

@conference{iceis05,
author={Nasser B. and Benzekri A. and Laborde R. and Grasset F. and Barrère F.},
title={ACCESS CONTROL MODEL FOR GRID VIRTUAL ORGANIZATIONS},
booktitle={Proceedings of the Seventh International Conference on Enterprise Information Systems - Volume 3: ICEIS,},
year={2005},
pages={152-158},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0002535001520158},
isbn={972-8865-19-8},
}


in EndNote Style

TY - CONF
JO - Proceedings of the Seventh International Conference on Enterprise Information Systems - Volume 3: ICEIS,
TI - ACCESS CONTROL MODEL FOR GRID VIRTUAL ORGANIZATIONS
SN - 972-8865-19-8
AU - B. N.
AU - A. B.
AU - R. L.
AU - F. G.
AU - F. B.
PY - 2005
SP - 152
EP - 158
DO - 10.5220/0002535001520158