ACM Home Page
Please provide us with feedback. Feedback
Digital Library logoTake a look at the new version of this page: [ beta version ]. Tell us what you think.
Web application security in a crossing boundaries grid system
Full text PdfPdf (415 KB)
Source Euro American Conference On Telematics And Information Systems archive
Proceedings of the 2007 Euro American conference on Telematics and information systems table of contents
Faro, Portugal
SESSION: Full papers table of contents
Article No.: 7  
Year of Publication: 2007
ISBN:978-1-59593-598-4
Author
Serena Pastore  INAF Padova, Padova, Italy
Sponsor
EATIS: Euro American Association on Telematics and Information Systems
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 1,   Downloads (12 Months): 26,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1352694.1352702
What is a DOI?

ABSTRACT

The grid problem is how to enable coordinated resources sharing and problem solving in dynamic, multi-institutional cross organizations called Virtual Organizations (VOs) that collect a large number of nodes grouped into grid sites. An overlay of policies governs access within a collaboration that is granted to users by a VO and by a site to VOs, nodes and users through site admission-control policies. Most resources consist of web applications and web services shared by a site that is part of a VO. The paper proposes an analysis of web application security by referring to XML-based applications accessed through a grid system. The different organizational domains involved transfer security from grid-wide to the VO level, and from the site and machine to the application level in order to allow local control to be retained.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
 
2
 
3
 
4
Volpato, A., Taffoni, G., Pastore, S., Vuerli, C., Baruffolo, A., Smareglia, R., Castelli, G., Pasian, F. Benacchio, L., Ambrosi, E., Ghiselli, A., "Astronomical database related applications in the Grid. it project", Proceedings of Astronomical Data Analysis Software & System (ADASS XIV), ASP Conference Series, Vol. XXX, 2005, P. L. Shopbell, M. C. Britton, and R. Ebert, eds., pp.13--15.
 
5
6
 
7
EGEE JRA3 team, EGEE Global Security Architecture for web and legacy services, EU Deliverable DJRA3.1, EGEE-JRA3-TEC-487004-DJRA3.1-v1-1, 2004
 
8
 
9
EGEE JRA1 team, EGEE Middleware architecture, EU deliverable DJRA1.4, EGEE-DJRA1.1-594698-v1.0, 2004.
 
10
 
11
IETF Internet X.509 PKI Proxy Certificate Profile, RFC 3820, at url: http://www.ietf.org/rfc/rfc3820.txt
 
12
 
13
Cornwall, L., Jensen, J., Kelsey, D. P., Frohner, A., Kouril, D., Bonnassieux, F., Nicoud, S., Lörentey, K., Hahkala, J., Silander, M., Cecchini, R., Ciaschini, V. Dell'Agnello, L., Spataro, F., O'Callaghan, D., Mulmo, O., Volpato, G. L., Groep, D. L., Steenbakkers, M., McNab, A., "Authentication and Authorization Mechanisms for Multi-Domain Grid Environments". Journal of Grid Computing 2(4): 301--311.
 
14
OASIS Web Services Security (WSS) TC, at url: http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=wss
 
15
OASIS Security Services The Security Assertion Markup Language (SAML) TC, http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=security