{"title":"A Keystone-Based Virtual Organization Management System","authors":"Craig A. Lee, N. Desai, Andrew Brethorst","doi":"10.1109/CloudCom.2014.31","DOIUrl":null,"url":null,"abstract":"As distributed, on-line communities are increasingly supported by the global, interconnected computing infrastructure, methods must be developed to securely manage their interactions. The virtual organization (VO) concept provides a security and discovery context whereby collaboration across multiple administrative domains can be enabled while enforcing joint security policies. In the era of cloud computing, VOs can be used to manage \"community clouds\", i.e., Cloud federations. In this paper, we describe a method for re-purposing the Open Stack Keystone service to act as a VO Management System (VOMS) called Key VOMS. With minor changes, it can be used to manage access to services that are registered for use by members of any given VO. These services can be arbitrary infrastructure-level or application-level services. This is illustrated by using Key VOMS to manage access to a set of RSS feed topics. While very flexible, the use of an external, third-party, such as Key VOMS, raises fundamental semantic interoperability and trust delegation issues that must be addressed in future work.","PeriodicalId":249306,"journal":{"name":"2014 IEEE 6th International Conference on Cloud Computing Technology and Science","volume":"34 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-12-15","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"11","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2014 IEEE 6th International Conference on Cloud Computing Technology and Science","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CloudCom.2014.31","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 11
Abstract
As distributed, on-line communities are increasingly supported by the global, interconnected computing infrastructure, methods must be developed to securely manage their interactions. The virtual organization (VO) concept provides a security and discovery context whereby collaboration across multiple administrative domains can be enabled while enforcing joint security policies. In the era of cloud computing, VOs can be used to manage "community clouds", i.e., Cloud federations. In this paper, we describe a method for re-purposing the Open Stack Keystone service to act as a VO Management System (VOMS) called Key VOMS. With minor changes, it can be used to manage access to services that are registered for use by members of any given VO. These services can be arbitrary infrastructure-level or application-level services. This is illustrated by using Key VOMS to manage access to a set of RSS feed topics. While very flexible, the use of an external, third-party, such as Key VOMS, raises fundamental semantic interoperability and trust delegation issues that must be addressed in future work.