MSO and multiple communities

Wil O'Mullane womullan at skysrv.pha.jhu.edu
Wed Jul 7 05:02:14 PDT 2004


I agree.
> 
> I don't think that IVOA is requiring this.
> 
> The current position seems to be that you need to prove an individual identity
> in order to prove a group membership in order to prove authorization.
> 
> Services will also need individual identities for logging.
> 
> In Wil's MyDB system, data are owned by individuals, so authorization has to
> be at the individual level.  This is because it's a read-write system.  In a
> read-only archive, authorization at group level is still OK in most cases.  In
> the cases where it isn't, the operator of the archive will want the
> finer-grained authorization to achive their own ends.
> 
> Guy Rixon 				        gtr at ast.cam.ac.uk
> Institute of Astronomy   	                Tel: +44-1223-337542
> Madingley Road, Cambridge, UK, CB3 0HA		Fax: +44-1223-337523



More information about the grid mailing list