TY - JOUR
T1 - Addressing the pilot security problem with gLExec
AU - Sfiligoi, I.
AU - Koeroo, O.
AU - Venekamp, G.
AU - Yocum, D.
AU - Groep, D.
AU - Petravick, D.
PY - 2008/7/1
Y1 - 2008/7/1
N2 - The Grid security mechanisms were designed under the assumption that users would submit their jobs directly to the Grid gatekeepers. However, many groups are starting to use pilot-based infrastructures, where users submit jobs to a centralized queue and are successively transferred to the Grid resources by the pilot infrastructure. While this approach greatly improves the user experience, it does introduce several security and policy issues, the more serious being the lack of system level protection between the users and the inability for Grid sites to apply fine grained authorization policies. One possible solution to the problem is provided by gLExec, a X.509 aware suexec derivative. By using gLExec, the pilot workflow becomes as secure as any traditional one.
AB - The Grid security mechanisms were designed under the assumption that users would submit their jobs directly to the Grid gatekeepers. However, many groups are starting to use pilot-based infrastructures, where users submit jobs to a centralized queue and are successively transferred to the Grid resources by the pilot infrastructure. While this approach greatly improves the user experience, it does introduce several security and policy issues, the more serious being the lack of system level protection between the users and the inability for Grid sites to apply fine grained authorization policies. One possible solution to the problem is provided by gLExec, a X.509 aware suexec derivative. By using gLExec, the pilot workflow becomes as secure as any traditional one.
UR - http://www.scopus.com/inward/record.url?scp=50849122033&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=50849122033&partnerID=8YFLogxK
U2 - 10.1088/1742-6596/119/5/052029
DO - 10.1088/1742-6596/119/5/052029
M3 - Article
AN - SCOPUS:50849122033
SN - 1742-6588
VL - 119
JO - Journal of Physics: Conference Series
JF - Journal of Physics: Conference Series
IS - 5
M1 - 052029
ER -