论文部分内容阅读
与传统网络环境相比,网格环境提出了更高更广泛的安全需求。该文提出了一种新的基于多种证书的网格安全系统CertGSI。该系统通过灵活使用标识证书、属性证书、代理证书等多种不同用途的数字证书,不但可以满足网格环境下各种安全需求,而且还能提供具有良好可扩展性的灵活认证、授权及访问控制机制。详细探讨了CertGSI的安全策略、框架结构、多种证书、身份认证和访问控制。
Compared with the traditional network environment, the grid environment proposed a higher and broader security needs. This paper presents a new certificate-based grid security system CertGSI. The system can flexibly use various digital certificates such as identification certificate, attribute certificate, and proxy certificate to meet various security requirements in a grid environment, and also provide flexible authentication, authorization and access with good scalability Control mechanism. Examines CertGSI’s security policies, framework structure, multiple certificates, authentication, and access control in detail.