Cooperative Secondary Authorization Recycling

As distributed applications such as Grid and enterprise systems scale up and become increasingly complex, their authorization infrastructures—based predominantly on the request-response paradigm—are facing challenges in terms of fragility and poor scalability. We propose an approach where each application server caches previously received authorizations at its secondary decision point and shares them with other application servers to mask authorization server failures and network delays. This talk presents the design of our cooperative secondary authorization recycling system and its evaluation using simulation and prototype implementation. The results demonstrate that our approach improves the availability of authorization infrastructures while preserving their performance characteristics. Specifically, by sharing authorizations, the cache hit rate—an indirect metric of availability—can reach 70%, even when only 10% of authorizations are cached. Depending on the deployment scenario, the performance in terms of the average time for authorizing an application request can be reduced by up to 30%.

Tags
Data and Resources
To access the resources you must log in

This item has no data

Identity

Description: The Identity category includes attributes that support the identification of the resource.

Field Value
PID https://www.doi.org/10.5281/zenodo.3264339
PID https://www.doi.org/10.5281/zenodo.3264320
PID https://www.doi.org/10.5281/zenodo.3264275
PID https://www.doi.org/10.5281/zenodo.3264274
PID https://www.doi.org/10.5281/zenodo.3264248
PID https://www.doi.org/10.5281/zenodo.3264249
PID https://www.doi.org/10.5281/zenodo.3264291
PID https://www.doi.org/10.5281/zenodo.3264338
PID https://www.doi.org/10.1145/1272366.1272375
PID https://www.doi.org/10.1109/tpds.2008.80
PID https://www.doi.org/10.5281/zenodo.3264321
PID https://www.doi.org/10.5281/zenodo.3264290
URL https://www.infona.pl/resource/bwmeta1.element.ieee-art-000004527241
URL http://dx.doi.org/10.5281/zenodo.3264275
URL http://dx.doi.org/10.5281/zenodo.3264274
URL https://figshare.com/articles/Cooperative_Secondary_Authorization_Recycling/8428487
URL http://dx.doi.org/10.1145/1272366.1272375
URL https://dl.acm.org/citation.cfm?id=1272375
URL http://dx.doi.org/10.5281/zenodo.3264291
URL http://dx.doi.org/10.5281/zenodo.3264290
URL https://zenodo.org/record/3264249
URL https://zenodo.org/record/3264321
URL https://academic.microsoft.com/#/detail/2067583486
URL https://core.ac.uk/display/24015559
URL http://yadda.icm.edu.pl/yadda/element/bwmeta1.element.ieee-000004527241
URL https://dblp.uni-trier.de/db/journals/tpds/tpds20.html#WeiRB09
URL http://lersse-dl.ece.ubc.ca/record/161/files/161.pdf?version=1
URL http://dx.doi.org/10.5281/zenodo.3264339
URL http://www.ece.ubc.ca/~qiangw/publications/hpdc07-paper.pdf
URL http://dx.doi.org/10.5281/zenodo.3264338
URL https://doi.acm.org/10.1145/1272366.1272375
URL http://dx.doi.org/10.5281/zenodo.3264248
URL https://ieeexplore.ieee.org/document/4527241/
URL http://dx.doi.org/10.5281/zenodo.3264321
URL http://dx.doi.org/10.5281/zenodo.3264320
URL http://dx.doi.org/10.1109/tpds.2008.80
URL http://xplorestaging.ieee.org/ielx5/71/4740398/04527241.pdf?arnumber=4527241
URL https://www.researchgate.net/profile/Matei_Ripeanu/publication/220293419_Cooperative_Secondary_Authorization_Recycling/links/02e7e520bb18cd1a6c000000.pdf?origin=publication_detail
URL http://doi.ieeecomputersociety.org/10.1109/TPDS.2008.80
URL http://ieeexplore.ieee.org/document/4527241/
URL https://dblp.uni-trier.de/db/conf/hpdc/hpdc2007.html#WeiRB07
URL https://academic.microsoft.com/#/detail/2135273046
URL https://dl.acm.org/citation.cfm?id=1495993
URL https://zenodo.org/record/3264339
URL http://dl.acm.org/ft_gateway.cfm?id=1272375&ftid=434589&dwn=1
URL https://figshare.com/articles/Cooperative_Secondary_Authorization_Recycling/8428535
URL https://zenodo.org/record/3264275
URL https://doi.org/10.1109/TPDS.2008.80
URL http://lersse-dl.ece.ubc.ca/record/136/files/136.pdf
URL https://zenodo.org/record/3264291
URL http://dx.doi.org/10.5281/zenodo.3264249
Access Modality

Description: The Access Modality category includes attributes that report the modality of exploitation of the resource.

Field Value
Access Right Open Access
Attribution

Description: Authorships and contributors

Field Value
Author Wei, Qiang
Author Ripeanu, Matei
Author Beznosov, Konstantin
Publishing

Description: Attributes about the publishing venue (e.g. journal) and deposit location (e.g. repository)

Field Value
Collected From ZENODO; Datacite; UnpayWall; figshare; Crossref; FigShare; Microsoft Academic Graph
Hosted By Zenodo; ZENODO; figshare; IEEE Transactions on Parallel and Distributed Systems; FigShare
Publication Date 2006-09-01
Publisher Zenodo
Additional Info
Field Value
Language UNKNOWN
Resource Type Other literature type; Conference object; Report; Article
system:type publication
Management Info
Field Value
Source https://science-innovation-policy.openaire.eu/search/publication?articleId=dedup_wf_001::064d8260ef49ecc9288d619d72fd0e63
Author jsonws_user
Last Updated 27 December 2020, 00:37 (CET)
Created 27 December 2020, 00:37 (CET)