首页|期刊导航|数据与计算发展前沿|面向高能物理计算平台的无认证文件共享设计与实现

面向高能物理计算平台的无认证文件共享设计与实现OA

Design and Implementation of Authentication-Free File Sharing for the High-Energy Physics Computing Platforms

中文摘要英文摘要

[目的]针对计算平台与交互式分析工作台的文件共享需求,设计无认证文件共享机制,以便捷的公共链接方式,实现文件即时安全分享.[方法]基于INK全域认证体系,使用Linux UGO权限模型与元数据管理构建权限控制逻辑,采用XRootD框架屏蔽底层异构分布式存储差异,通过多维度安全机制保障数据传输与访问安全,最终形成精准管控的无认证文件共享方案.[结果]已成功部署于INK交互式分析工作台,支持安全、快速生成公共链接完成数据分享;采用XRootD框架的文件下载速度较单服务器普通下载仅下降3.2%,在分布式存储场景下具备优异的数据访问性能.[结论]全域认证、异构存储适配及精细化权限管控能力,为跨平台分布式环境下的文件共享提供了完整且高效的解决方案.

[Objective]To meet the file sharing needs in the computational platform and interactive analy-sis workbench,this paper designs an authentication-free mechanism for instant,secure sharing via public links.[Methods]Leveraging the INK global authentication framework,permission control logic is implemented using the Linux UGO permission model in conjunction with meta-data management.The XRootD framework is employed to abstract underlying differences in heterogeneous distributed storage systems.Multi-dimensional security mechanisms are integrat-ed to safeguard data transmission and access,culminating in a precisely controlled authentica-tion-free file-sharing paradigm.[Results]The mechanism has been successfully deployed on INK workbench,allowing secure,fast public link generation for sharing.XRootD downloads are only 3.2%slower than ordinary downloads from a single-server,with strong performance in distributed storage.[Conclusions]Global authentication,heterogeneous storage adaptation,and fine-grained con-trols deliver a complete,efficient solution for cross-platform distributed file sharing.

欧歌;刘子凯;毕玉江;石京燕

中国科学院高能物理研究所,北京 100049中国科学院高能物理研究所,北京 100049||郑州大学,河南 郑州 450001中国科学院高能物理研究所,北京 100049中国科学院高能物理研究所,北京 100049

文件共享计算平台交互式分析安全策略

file sharingcomputing platforminteractive analysissecurity strategy

《数据与计算发展前沿》 2026 (3)

40-50,11

国家重点研发计划(2023YFC2206404)

10.11871/jfdc.issn.2096-742X.2026.03.004

评论