Countering security threats in service-oriented on-demand grid computing using sandboxing and trusted computing techniques

被引:17
作者
Smith, Matthew [1 ]
Friese, Thomas [1 ]
Engel, Michael [1 ]
Freisleben, Bernd [1 ]
机构
[1] Univ Marburg, Dept Math & Comp Sci, D-35032 Marburg, Germany
关键词
grid security; on-demand computing; service-orientation; sandboxing; virtualization; trusted computing;
D O I
10.1016/j.jpdc.2006.04.009
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In this paper, an analysis of security threats within service-oriented on-demand Grid computing environments is presented. The analysis is based on identifying three levels of trust relationships and three types of Grid applications in on-demand computing; the trust relationships involve interactions among resource providers, middleware producers, solution producers, and users. The paper presents solutions for addressing the threats inherent to these three increasingly demanding levels. The solutions involve applying sandbox-based approaches using virtual machine technology and jailing mechanisms to ensure trust for the first two levels of on-demand Grid computing, as well as Trusted Computing Platform Alliance (TCPA) technology for the third level of on-demand Grid computing. A brief taxonomy of the presented solutions is introduced. (C) 2006 Elsevier Inc. All rights reserved.
引用
收藏
页码:1189 / 1204
页数:16
相关论文
共 35 条
[11]  
FRIESE T, 2004, P 2 INT C SERV OR CO, P75
[12]  
*GLOB PROJ, 2004, GLOB TOOLK 4 0 GT VE
[13]  
*GLOB PROJ, 2004, GLOB TOOLK 4
[14]  
*IBM, 2003, E BUS DEM RAC WHIT
[15]  
*IBM WATS RES GLOB, TCPA RES
[16]  
*ITSS, 2004, MULT UN COMPR CAMP S
[17]  
KEAHEY K, 2004, 5 INT WORKSH GRID CO
[18]  
KREBS B, 2004, HACKERS STRIKE ADV C
[19]  
MYERS M, RFC2560 OCSP
[20]  
Novotny J, 2001, 10TH IEEE INTERNATIONAL SYMPOSIUM ON HIGH PERFORMANCE DISTRIBUTED COMPUTING, PROCEEDINGS, P104, DOI 10.1109/HPDC.2001.945181