A Credential Store for Multi-tenant Science Gateways
Loading...
Can’t use the file because of accessibility barriers? Contact us with the title of the item, permanent link, and specifics of your accommodation need.
Date
2014-03-18
Journal Title
Journal ISSN
Volume Title
Publisher
Permanent Link
Abstract
Science Gateways bridge multiple computational grids and clouds, acting as overlay cyberinfrastructure. Gateways have three logical tiers: a user interfacing tier, a resource tier and a bridging middleware tier. Different groups may operate these tiers. This introduces three security challenges. First, the gateway middleware must manage multiple types of credentials associated with different resource providers. Second, the separation of the user interface and middleware layers means that security credentials must be securely delegated from the user interface to the middleware. Third, the same middleware may serve multiple gateways, so the middleware must correctly isolate user credentials associated with different gateways. We examine each of these three scenarios, concentrating on the requirements and implementation of the middleware layer. We propose and investigate the use of a Credential Store to solve the three security challenges.
Description
Keywords
science gateways, security, OA4MP, Apache Airvata, credential store
Citation
Journal
DOI
Link(s) to data and video for this item
Relation
Rights
This document is released under the Creative Commons Attribution 3.0 Unported license (http://creativecommons.org/licenses/by/3.0/).
http://creativecommons.org/licenses/by/3.0/
http://creativecommons.org/licenses/by/3.0/
Type
Conference paper