OSU Department of Biomedical Informatics

Grid Trust Service (GTS)

In a Grid environment, the number of certificate authorities and the number of user identities can grow to be very large. Moreover, in a dynamic multi-institutional environment, the status of identities may be updated frequently. Identities and credentials can be revoked, suspended, reinstated, or new identities can be created. In addition, the list of trusted authorities may change. In such settings, certificate authorities will frequently publish Certificate Revocation Lists (CRL), which specify “blacklisted” certificates that the authority once issued but no longer accredits. For the security and integrity of the Grid, it is critical to both authenticate and validate a given credential against an accurate list of trusted certificate authorities and their corresponding CRLs. The Grid Trust Service (GTS) is a federated infrastructure enabling the provisioning and management of a Grid trust fabric. The salient features of GTS are as follows:

  • A complete Grid-enabled federated solution for registering and managing certificate authority certificates and CRLs, facilitating the enforcement of the most recent trust agreements.
  • Definition and management of levels of assurance, such that certificate authorities may be grouped and discovered by the level of assurance that is acceptable to the consumer.
  • Due to the federated nature of GTS and its ability to create and manage arbitrary arrangements of authorities by level of assurance, it facilitates the curation of numerous independent trust overlays across the same physical Grid.
  • Client validation, allowing a client to submit a certificate and trust requirements in exchange for a validation decision, which allows for centralized certificate verification and validation.

For more information on the GTS please visit cagrid.org.

Project Researchers

David Ervin (Principal Investigator)
Shannon Hastings, M.S. (Principal Investigator)
Stephen Langella, M.S. (Principal Investigator)
Scott Oster, M.S. (Principal Investigator)

Project Publications

Publications

Scott Oster, Shannon L. Hastings, Stephen Langella, David W. Ervin, Ravi Madduri, Tahsin M. Kurc, Frank Siebenlist, Ian Foster, Krishnakant Shanbhag, Peter A. Covitz, Joel H. Saltz, "caGrid 1.0: A Grid Enterprise Architecture for Cancer Research", Proceedings of the 2007 AMIA Annual Symposium, 2007: pp. 573-577.

Presentations

Scott Oster, "caGrid 2.0 Planning", Washington, D.C., Presented: 2007-08-07

Scott Oster, "caGrid 1.1 Overview", Washington, D.C., Presented: 2007-08-07

Scott Oster, "caGrid Future Direction Planning", Washington, D.C., Presented: 2007-08-06

Scott Oster, Shannon L. Hastings, "caGrid 1.1 Demos and Training", Washington, D.C., Presented: 2007-08-06

Scott Oster, "Current caGrid 1.0 Feature Highlights", caBIG Architecture/VCDE Joint Face to Face meeting, Washington, D.C., Presented: 2007-08-06

Scott Oster, "Keynote Address: The Cancer Biomedical Informatics Grid: Connecting the Cancer Research Community", Challenges of Large Applications in Distributed Environments (CLADE) 2007, HPDC Workshop, Monterey, California, Presented: 2007-06-25

Shannon L. Hastings, David W. Ervin, Stephen Langella, Scott Oster, "caBIG Developer Bootcamp", caBIG Developer Bootcamp, Rockville, MD, Presented: 2007-04-17

Stephen Langella, Shannon L. Hastings, Scott Oster, David W. Ervin, "Advanced Topics in Developing caBIG Grid Services (HANDS ON)", caBIG Annual Meeting 2007, Washington, D.C., Presented: 2007-02-06

Stephen Langella, Scott Oster, Shannon L. Hastings, David W. Ervin, Tahsin M. Kurc, Joel H. Saltz, "caGrid 1.0 Security Infrastructure (poster)", caBIG Annual Meeting 2007, Washington, D.C., Presented: 2007-02-05

Scott Oster, Shannon L. Hastings, Stephen Langella, David W. Ervin, Tahsin M. Kurc, Joel H. Saltz, "caGrid 1.0 Overview (poster)", caBIG Annual Meeting 2007, Washington, D.C., Presented: 2007-02-05

Stephen Langella, Scott Oster, Shannon L. Hastings, "caGrid 1.0 Security Infrastructure and Policy", caBIG Annual Meeting 2007, Washington, D.C., Presented: 2007-02-05

Stephen Langella, "caGrid 1.0 Security Infrastructure", Grid World 2006, Washington DC, Presented: 2006-09-14

Stephen Langella, "Grid Trust Service (GTS) Overview and Design", Identity Management and Federation Working Group Meeting, Presented: 2006-05-02

[edit this page]