Federated Role-based Access Control in Exertion-oriented Programming

Satish Vellanki, Michael Sobolewski · 2009

Abstract — Federated computing environments expose lots of resources in order to serve their clients, which include system services, domain-specific services, and distributed file systems. A flexible and coordinated mechanism to control access to these resources is proposed which allows participants to form themselves into collaborative groups and secure access is granted to group members. Then, the participants can make resources available to a named group and manage locally the members in the group with required permissions across multiple domains. We explain how the proposed approach focused on user’s local namespace is used in exertion-oriented programming and in particular in a SORCER federated file system where members of a group or delegated services can securely fetch any file replica that is available to a named group from any byte store service. Index Terms—Federated computing, distributed systems, control access, group services. T I.

Read the paper · More papers on PaperTik