作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (22): 184-186. doi: 10.3969/j.issn.1000-3428.2007.22.063

• 安全技术 • 上一篇    下一篇

基于资源状态和角色访问控制的网格授权方法

徐丽萍,孙显姣,卢炎生   

  1. (华中科技大学计算机科学与技术学院,武汉 430074)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-11-20 发布日期:2007-11-20

Grid Authorization Method Based on Resource State and Role Access Control

XU Li-ping, SUN Xian-jiao, LU Yan-sheng   

  1. (School of Computer Science and Technology, Huazhong University of Science & Technology, Wuhan 430074)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-11-20 Published:2007-11-20

摘要: 提出了一种基于资源状态和角色访问控制的授权方案,该方案利用授权服务器信息扩展网格信息服务,将资源站点本地角色作为访问目标资源,加入到授权服务器策略库中,支持对虚拟组织(VO)外用户的授权,并实现了基于资源当前负载状态的细粒度授权。实验表明,在大规模VO中,该方案能够优化授权速度,缓解授权服务器访问的瓶颈问题。

关键词: 资源状态, 授权, 社团授权服务, 虚拟组织

Abstract: This paper proposes an advanced scheme based on the resource states and role-based access control. The scheme extends the grid information service with the authorization server’s information, and defines the host local roles as the target resources in the policy database. It supports the authorization of the user outside virtual organization, and provides fine-grained authorization based on the resource’s states. The test shows that the scheme optimizes the authorization in the virtual organization with a large number of users and resources, and mitigates the bottleneck of the authorization server.

Key words: resource state, authorization, community authorization service, virtual organization(VO)

中图分类号: