Access rights management with delegation certificates

Simon N. Kimani

AbstractA grid, which is essentially a large distributed system, is a software and hardware infrastructure that is an answer to the demand for high end computation capability. Grids are characterized by presence of a large pool of resources that span several domains and organizations. These resources need to be managed to ensure confidentiality, integrity and availability.

Due to the enormous size of these grids and certain security requirements unique to grids, existing security solutions are inadequate. This thesis makes an analysis of security requirements in a grid and specifies a polity that would meet the confidentiality security objective if enforced. We make an investigation of SPKI and KeyNote trust-management engine to come up with implementation proposals. These implementation proposals are compared to determine which of the two would be suitable for implementing the stated security policy. The SPKI implementation proposal that is recommended would be the basis of a prototype implementation.
TypeMaster's thesis [Academic thesis]
Year2002
PublisherInformatics and Mathematical Modelling, Technical University of Denmark, DTU
AddressRichard Petersens Plads, Building 321, DK-2800 Kgs. Lyngby
SeriesIMM-EKS-2002-40
Electronic version(s)[pdf]
BibTeX data [bibtex]
IMM Group(s)Computer Science & Engineering