Placeholder for the Security Architecture Document.

Section Heading Source/Responsible Contacted Submitted Completed
2.1 Definition of Security Architecture Mostly from EGEE MJRA1.4. I need input from all on this! Yes / Done Yes / Done No
2.2 Trust, Authentication and Authorization: A Terminology (Definitions of the most important concepts) Mostly from EGEE MJRA1.4. John. Yes / Done Yes / Done No
2.3 Virtual Organization, Sites and Common Grid Services (Definitions, brief description of the major grid services and how security applies to them) Directly from EGEE MJRA1.4. John. Will need checking by UNICORE and ARC. (Bernd,Weizhong) Yes / Done Yes / Done No
3 Authentication Directly from EGEE MJRA1.4 . John. Input from David G. Yes / Done Yes / Done No
3.1 Identity Credential Formats Directly from MJRA1.4. John. Input from Bernd for UNICORE Yes / Done Yes / Done No
3.2 Bootstrapping Authentication Directly from EGEE MJRA1.4. John. Yes / Done Yes / Done No
3.3 Enforcing Validity Constraints Directly from EGEE MJRA1.4. John. Need input from Bernd,Weizhong. Yes / Done Yes / Done No
3.4 EMI Common Authentication Libraries New text from CANl PT. Zdenek Yes / Done Yes / Done No
3.4.1 C CANl New text from CANl Yes / Done Yes / Done No
3.4.2 C++ CANl New text from CANl Yes / Done Yes / Done No
3.4.3 Java CANl New text from CANl Yes / Done Yes / Done No
3.5 Revocation Directly from EGEE MJRA1.4 (updating by Oscar). Yes / Done Yes / Done No
3.6 Certificate Renewal Directly from from EGEE MJRA1.4. John. Yes / Done Yes / Done No
3.7 Delegation Text from EGEE MJRA1.4 updated by Paul Millar. Input from NIKHEF Yes / Done Yes / Done No
3.8 Renewal of Proxy Certificates. Text needs updating by Daniel K. Yes / Done Yes / Done No
3.9 Anonymity, Privacy, Pseudonymity Text from EGEE MRA1.4 to be updated by Henri M. Yes / Done Yes / Done No
4 Federated Identities Henri to check. Yes / Done Yes / Done No
4.1 STS New text from Henri Yes / Done Yes / Done No
5 Authorization   Yes / Done Yes / Done No
5.1 Introduction From MJRA1.4. John Yes / Done Yes / Done No
5.2 VOMS and UVOS Andrea for VOMS. Bernd for UVOS. Yes / Done Yes / Done No
5.2.1 UVOS Krzysztof for UVOS. Yes / Done Yes / Done No
5.2.2 VOMS Andrea for VOMS. Yes / Done Yes / Done No
5.3 Policy definition and management New text on XACML and SAML profiles. Updated by Simon. Yes / Done Yes / Done No
5.4 Argus AuthZ service Text from MJRA1.4. Updated by Simon. Yes / Done Yes / Done No
5.5 Identity Switching on the Worker Nodes Text from MJRA1.4. Need updating by Oscar/Mischa. Yes / Done Yes / Done No
6 Data Management   Yes / Done Yes / Done No
6.1 Unencrypted Data Storage. From MJRA1.4. John Yes / Done Yes / Done No
6.1.1 DPM/LFC Directly from MJRA1.4 Yes / Done Yes / Done No
6.1.2 dCache. Asked Patrick for some text. Yes / Done Yes / Done No
6.1.3 StoRM Asked for some text. Yes / Done Yes / Done No
6.1.4 FTS Directly from MJRA1.4 Yes / Done Yes / Done No
6.2 Encrypted Data Storage. This is the Hydra section. John. Yes / Done Yes / Done No
7 Logging, Tracing and Auditing Updating of text from Mischa/Oscar/David G. Yes / Done Yes / Done No
8 Security Management and Threats Handling New text from Mischa/Oscar/David G. Yes / Done Yes / Done No
8.1 Software Security Management New text from Mischa/Oscar/David G. Yes / Done Yes / Done No
8.2 Bug fixing, Emergency Releases, etc. Text added Needs work later. Yes / Done Yes / Done No
8.3 Grid Services Security Assessment. Elisa Heyman Yes / Done Yes / Done Yes / Done
9 International Collaborations        
9.1 OGF, IGTF, IGE Need to ask this from Morris Yes / Done Yes / Done No
10 Assessment, Strengths, ideas for improvement This comes from everyone. Free form... Yes / Done No No

Topic attachments
I Attachment History Action Size Date Who Comment
Unknown file formatodt EMI_Security_Architecture_v0.1.odt r49 r48 r47 r46 r45 manage 1395.1 K 2013-03-07 - 13:49 JohnWhite  
Unknown file formatodt EMI_Security_Architecture_v0.2.odt r2 r1 manage 1395.4 K 2013-03-07 - 16:21 JohnWhite  
Unknown file formatodt EMI_Security_Architecture_v0.3.odt r1 manage 1395.0 K 2013-03-26 - 13:25 JohnWhite  
Unknown file formatodt EMI_Security_Architecture_v0.4.odt r4 r3 r2 r1 manage 1407.9 K 2013-04-03 - 15:36 JohnWhite  
PDFpdf SecArch_v3.pdf r2 r1 manage 158.2 K 2012-11-02 - 15:50 JohnWhite  
Edit | Attach | Watch | Print version | History: r40 < r39 < r38 < r37 < r36 | Backlinks | Raw View | WYSIWYG | More topic actions
Topic revision: r40 - 2013-04-03 - JohnWhite
 
    • Cern Search Icon Cern Search
    • TWiki Search Icon TWiki Search
    • Google Search Icon Google Search

    EMI All webs login

This site is powered by the TWiki collaboration platform Powered by PerlCopyright & 2008-2020 by the contributing authors. All material on this collaboration platform is the property of the contributing authors.
Ideas, requests, problems regarding TWiki? Send feedback