The
MyProxy is
an online credential repository that provides secure and convenient storage for grid security credentials.
MyProxy is mature, open source software for the Globus Toolkit that has been used by the grid community for over four years, in projects such as NEESgrid, TeraGrid, EU DataGrid, and the NASA Information Power Grid. MyProxy is included in the NSF Middleware Initiative GRIDS Center software distribution and is included in the Globus Toolkit 4.0 release.
MyProxy allows users to easily obtain a proxy credential from the repository, without requiring users to manage private key and certificate files. Grid portals use MyProxy to obtain proxy credentials, so users can access secure grid resources via the portal interface. Job management software, such as Condor-G, uses MyProxy to renew credentials for long-running jobs. MyProxy can also be integrated with CA software, such as the Globus Simple CA, to ease credential distribution.
A well-managed MyProxy repository can provide better security for user private keys when compared to the typical solution of storing keys on end-user desktop systems. MyProxy can enforce policies on the passphrases used to protect user keys and can provide the ability to monitor key usage to detect or track misuse. MyProxy can also be integrated with local site authentication systems, such as Kerberos and one-time passwords, to bridge between local site security and grid security.