Scalable Security Architecture
Scientific resources and stakeholders are widely distributed, both
geographically and organizationally. To access resources and collaborate
effectively, scientists need a flexible and secure way to specify
access control for their resources and to identify users and their
attributes. The goals of this project are to define
and demonstrate a security architecture that will 1) strongly enforce
policy for resource use in widely distributed computing environments
and 2) provide flexible interfaces that allow the security architecture
to be used on various platforms and components. The security architectures
can be used for
- Authentication
- Authorization
- Access control
- Confidentiality
- Infrastructure protection
- Distributed enterprise
The objectives of this project are
- Ensure assured, multiple stakeholder representation
- Use trusted third-party certification of user attributes
- Use distributed management of all information needed for access
decisions
- Integrate with existing security protocols
- Develop action and object-level access capability
- Allow easy integration with applications
- Develop capabilities to support emerging approaches.
This project is a collaboration among Lawrence Berkeley National
Laboratory, Los Alamos National Laboratory, and Sandia National Laboratories.
For more info, see:
|