Enhancing the AliEn Web Service Authentication

被引:2
|
作者
Zhu, Jianlin [1 ]
Saiz, Pablo [2 ]
Carminati, Federico [2 ]
Betev, Latchezar [2 ]
Zhou, Daicui [1 ]
Lorenzo, Patricia Mendez [2 ]
Grigoras, Alina Gabriela [2 ]
Grigoras, Costin [2 ]
Furano, Fabrizio [2 ]
Schreiner, Steffen [2 ,3 ]
Datskova, Olga Vladimirovna [2 ]
Banerjee, Subho Sankar [4 ]
Zhang, Guoping [1 ]
机构
[1] Cent China Normal Univ, Coll Phys Sci & Technol, Wuhan 430079, Peoples R China
[2] CERN, CH-1211 Geneva 23, Switzerland
[3] CASED, Darmstadt, Germany
[4] LNM Inst Informat Technol, Jaipur, Rajasthan, India
关键词
D O I
10.1088/1742-6596/331/6/062048
中图分类号
O57 [原子核物理学、高能物理学];
学科分类号
070202 ;
摘要
Web Services are an XML based technology that allow applications to communicate with each other across disparate systems. Web Services are becoming the de facto standard that enable inter operability between heterogeneous processes and systems. AliEn2 is a grid environment based on web services. The AliEn2 services can be divided in three categories: Central services, deployed once per organization; Site services, deployed on each of the participating centers; Job Agents running on the worker nodes automatically. A security model to protect these services is essential for the whole system. Current implementations of web server, such as Apache, are not suitable to be used within the grid environment. Apache with the mod_ssl and OpenSSL only supports the X.509 certificates. But in the grid environment, the common credential is the proxy certificate for the purpose of providing restricted proxy and delegation. An Authentication framework was taken for AliEn2 web services to add the ability to accept X.509 certificates and proxy certificates from client-side to Apache Web Server. The authentication framework could also allow the generation of access control policies to limit access to the AliEn2 web services.
引用
收藏
页数:6
相关论文
共 50 条
  • [31] ESA: A new approach toward enhancing QOS of semantic web service composition
    Daoji, Qiao
    ISTM/2007: 7TH INTERNATIONAL SYMPOSIUM ON TEST AND MEASUREMENT, VOLS 1-7, CONFERENCE PROCEEDINGS, 2007, : 6017 - 6020
  • [32] Enhancing Entity Annotation using Web Service and Ontology Hierarchy in Biomedical Domains
    Shang, Yue
    An, Yuan
    Hu, Xiaohua Tony
    Zhang, Mi
    Lin, Xia
    2013 IEEE INTERNATIONAL CONFERENCE ON BIOINFORMATICS AND BIOMEDICINE (BIBM), 2013,
  • [33] An Extended UsernameToken-based Approach for REST-style Web Service Security Authentication
    Peng, Dunlu
    Li, Chen
    Huo, Huan
    2009 2ND IEEE INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY, VOL 2, 2009, : 582 - 586
  • [34] Authentication and Authorization in Web Services
    Challita, Khalil
    Farhat, Hikmat
    Zalaket, Joseph
    NETWORKED DIGITAL TECHNOLOGIES, 2011, 136 : 13 - 23
  • [35] Authentication for distributed web caches
    Giles, J
    Sailer, R
    Verma, D
    Chari, S
    COMPUTER SECURITY - ESORICS 2002, PROCEEDINGS, 2002, 2502 : 126 - 145
  • [36] Trust Authentication Protocol on the Web
    GUO Ya-jun~ 1
    2. Department of Computer Science
    WuhanUniversityJournalofNaturalSciences, 2006, (01) : 253 - 255
  • [37] BetterAuth: Web Authentication Revisited
    Johns, Martin
    Lekies, Sebastian
    Braun, Bastian
    Flesch, Benjamin
    28TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2012), 2012, : 169 - 178
  • [38] A semantics for web services authentication
    Bhargavan, K
    Fournet, C
    Gordon, AD
    ACM SIGPLAN NOTICES, 2004, 39 (01) : 198 - 209
  • [39] A semantics for web services authentication
    Bhargavan, K
    Fournet, C
    Gordon, AD
    THEORETICAL COMPUTER SCIENCE, 2005, 340 (01) : 102 - 153
  • [40] Authentication Melee: A Usability Analysis of Seven Web Authentication Systems
    Ruoti, Scott
    Roberts, Brent
    Seamons, Kent
    PROCEEDINGS OF THE 24TH INTERNATIONAL CONFERENCE ON WORLD WIDE WEB (WWW 2015), 2015, : 916 - 926