{"title":"基于动态防火墙的支持网格的虚拟组织","authors":"Mark L. Green, S. Gallo, Russ Miller","doi":"10.1109/GRID.2004.35","DOIUrl":null,"url":null,"abstract":"The development of heterogeneous grid infrastructure is in its infancy and the potential impact of unauthorized network connections and/or potential system corruption is a serious concern. This project addresses the need for the integration of a dynamic firewall into a grid-enabled application environment. By its very nature, a grid-computing environment consists of a dynamic collection of applications, resources, and services that require access to network ports. The focus of this paper is on developing a dynamic iptables-based firewall that is capable of automatically identifying valid grid user/application network port connection requests and satisfying these requests based on a Globus proxy. The dynamic firewall (Dyna-Fire) service has been integrated into the Western New York's ACDC-Grid.","PeriodicalId":335281,"journal":{"name":"Fifth IEEE/ACM International Workshop on Grid Computing","volume":"21 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2004-11-08","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"17","resultStr":"{\"title\":\"Grid-enabled virtual organization based dynamic firewall\",\"authors\":\"Mark L. Green, S. Gallo, Russ Miller\",\"doi\":\"10.1109/GRID.2004.35\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The development of heterogeneous grid infrastructure is in its infancy and the potential impact of unauthorized network connections and/or potential system corruption is a serious concern. This project addresses the need for the integration of a dynamic firewall into a grid-enabled application environment. By its very nature, a grid-computing environment consists of a dynamic collection of applications, resources, and services that require access to network ports. The focus of this paper is on developing a dynamic iptables-based firewall that is capable of automatically identifying valid grid user/application network port connection requests and satisfying these requests based on a Globus proxy. The dynamic firewall (Dyna-Fire) service has been integrated into the Western New York's ACDC-Grid.\",\"PeriodicalId\":335281,\"journal\":{\"name\":\"Fifth IEEE/ACM International Workshop on Grid Computing\",\"volume\":\"21 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2004-11-08\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"17\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Fifth IEEE/ACM International Workshop on Grid Computing\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/GRID.2004.35\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Fifth IEEE/ACM International Workshop on Grid Computing","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/GRID.2004.35","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Grid-enabled virtual organization based dynamic firewall
The development of heterogeneous grid infrastructure is in its infancy and the potential impact of unauthorized network connections and/or potential system corruption is a serious concern. This project addresses the need for the integration of a dynamic firewall into a grid-enabled application environment. By its very nature, a grid-computing environment consists of a dynamic collection of applications, resources, and services that require access to network ports. The focus of this paper is on developing a dynamic iptables-based firewall that is capable of automatically identifying valid grid user/application network port connection requests and satisfying these requests based on a Globus proxy. The dynamic firewall (Dyna-Fire) service has been integrated into the Western New York's ACDC-Grid.