#format wiki #language en <> == A final Requirements Document == This page offers a guide to what work ESP-GRID has done on requirements for access control for grids. RequirementsDoc * These are the final requirements for Authentication, Authorisation and Accounting on a generic grid as proposed by the ESP-GRID project. They are based heavily upon [[RequirementsBibliography#MullenGAAAR|Shawn Mullen et al's]] (2004) document on "Grid Authentication, Authorization and Accounting Requirements". * Other "requirements" documents (including that of Mullen et al.) make an assumption that PKI is being used throughout (client to site/machine, and machine to machine). We wished to take a step back and write down the requirements (for access management and security) without the assumption that 'client to machine' PKI is already employed. For more detail and justifications of changes made to the original [[RequirementsBibliography#MullenGAAAR|Mullen et al.]] document, please see RequirementsDocFull. This contains many annotations explaining the difference between the documents. == Requirements gathering for secure access and use of a generic grid == To inform the above work, the project reviewed publications and other work concerning grid UseCases. The 'generic grid', to which this work alludes, is a production grid, with production applications and a set of users with a wide variety of skills and interests. This work attempts to avoid any limitations with current technologies and to think clearly about requirements before considering technology. === Bibliography === RequirementsBibliography * sources and references to articles and papers used in this Requirements gathering exercise === Focus Group === FocusGroup * Notes and documents surrounding the focus group meeting. This meeting was held at the start of this activity, on 8th April 2005. === Use Cases === UseCases * use cases for a generic grid * this work contains some of the ESP-GRID project output, plus many references to other good work. See also the draft [[attachment:FocusGroup/GridUseCases0_65.pdf|Grid use cases]] document (PDF) produced as a stimulus for the Focus Group Meeting. See also [[attachment:AllHandsPapers2006/AllHands06TypesUsersFinal.pdf|Types of grid users and the Customer-Service Provider relationship: a future picture of grid use]] (PDF) - a paper for the UK e-Science All Hands Meeting (2006). === Justification/Requirements for Shibboleth === See the following submitted paper (also to the UK e-Science All Hands Meeting) that ties together the type of grid use for most types of user (i.e. non-computer-technical) to the ease with which Shibboleth could provide access to grid resources. * [[attachment:AllHandsPapers2006/AllHands06CaseShibFinal.pdf|A case for Shibboleth and grid security: are we paranoid about identity?]] (PDF)