XXIII HTASC Meeting – CERN March 2003 LIP and the Traveling Physicist Jorge Gomes LIP - Computer Centre.

Slides:



Advertisements
Similar presentations
PowerPoint presentation of first 25 pages of instructional manual Edith Fabiyi Essentials of Internet Access.
Advertisements

... Objective Internet Working ISP TOT, TT&T, CAT,SAMART Dial up ADSL Leased Line Satellite.
Southampton Open Wireless Network The Topology Talk.
Case Study: Pat Lee’s Home PC Network Chapter 1a Panko’s Business Data Networks and Telecommunications, 6th edition Copyright 2007 Prentice-Hall May only.
Nada Abdulla Ahmed.  SmoothWall Express is an open source firewall distribution based on the GNU/Linux operating system. Designed for ease of use, SmoothWall.
The travelling physicist problem at the KFKI campus József Kadlecsik KFKI Research Institute for Particle and Nuclear Physics
Linux+ Guide to Linux Certification, Second Edition Chapter 14 Network Configuration.
Wi-Fi Structures.
Case Study: Pat Lee’s Home PC Network Chapter 1a Updated January 2007 Panko’s Business Data Networks and Telecommunications, 6th edition Copyright 2007.
1 Enabling Secure Internet Access with ISA Server.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Application Layer Functionality and Protocols Network Fundamentals – Chapter 3.
Getting Connected to NGS while on the Road… Donna V. Shaw, NGS Convocation.
1 Linux Networking and Security Chapter 3. 2 Configuring Client Services Configure DNS name resolution Configure dial-up network access using PPP Understand.
1 Networks, advantages & types of What is a network? Two or more computers that are interconnected so they can exchange data, information & resources.
CS426Fall 2010/Lecture 361 Computer Security CS 426 Lecture 36 Perimeter Defense and Firewalls.
Networking Technologies
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 IT Essentials PC Hardware and Software 4.1 Instructional Resource Chapter.
Configuring Routing and Remote Access(RRAS) and Wireless Networking
Chapter 7: Using Windows Servers to Share Information.
Computing services for the Traveling Physicist Alberto Pace CERN – Information Technology Division.
A+ Guide to Software: Managing, Maintaining, and Troubleshooting, 5e
Networked Information Systems 1 Advantages of and classified by their size & architecture or design.
CERN’s Computer Security Challenge
0Gold 11 0Gold 11 LapLink Gold 11 Firewall Service How Connections are Created A Detailed Overview for the IT Manager.
1 Chapter Overview Using the New Connection Wizard to configure network and Internet connections Using the New Connection Wizard to configure outbound.
1 Version 3.0 Module 11 TCP Application and Transport.
Module 5: Designing a Terminal Services Infrastructure.
Linux+ Guide to Linux Certification Chapter Fifteen Linux Networking.
Supercomputing Communications Data NCAR Scientific Computing Division NETS 12/10/ Network Engineering & Telecommunications Section Update Jim Van.
Linux+ Guide to Linux Certification, Second Edition Chapter 14 Network Configuration.
The Internet Just the Facts. Protocols TCP/IP are the TRANSPORT protocols of the Internet Services use TCP/IP to connect to other computers on Internet.
Hands-On Microsoft Windows Server Introduction to Remote Access Routing and Remote Access Services (RRAS) –Enable routing and remote access through.
2  Supervisor : MENG Sreymom  SNA 2012_Group4  Group Member  CHAN SaratYUN Sinot  PRING SithaPOV Sopheap  CHUT MattaTHAN Vibol  LON SichoeumBEN.
Hands-On Microsoft Windows Server Implementing Microsoft Internet Information Services Microsoft Internet Information Services (IIS) –Software included.
Shai Tirosh Windows Server Regional Director artNET Experts.
Module 8: Managing Terminal Services. Overview Use and manage Terminal Services RemoteApp programs Use and manage Terminal Services Gateway Optimize and.
Networking Classification A network is two or more computers that are connected 1 There size 2 Their Servers.
Networking in Linux. ♦ Introduction A computer network is defined as a number of systems that are connected to each other and exchange information across.
Security and Firewalls Ref: Keeping Your Site Comfortably Secure: An Introduction to Firewalls John P. Wack and Lisa J. Carnahan NIST Special Publication.
Computer Security Risks for Control Systems at CERN Denise Heagerty, CERN Computer Security Officer, 12 Feb 2003.
CERN - European Organization for Nuclear Research Beyond ACB – VPN’s FOCUS June 13 th, 2002 Frédéric Hemmer & Denise Heagerty- IT Division.
1CEA – DAPNIA - Saclay05/19/2003 CEA Saclay site report Amsterdam.
NETWORKING FUNDAMENTALS. Network+ Guide to Networks, 4e2.
ITGS Network Architecture. ITGS Network architecture –The way computers are logically organized on a network, and the role each takes. Client/server network.
WEEK 11 – TOPOLOGIES, TCP/IP, SHARING & SECURITY IT1001- Personal Computer Hardware System & Operations.
Communications & Networks National 4 & 5 Computing Science.
Remote Access Usages. Remote Desktop Remote desktop technology makes it possible to view another computer's desktop on your computer. This means you can.
Protocols Monil Adhikari. Agenda Introduction Port Numbers Non Secure Protocols FTP HTTP Telnet POP3, SMTP Secure Protocols HTTPS.
Networks. Local area network (LAN( Wide-area network (WAN( Networks Topology.
IS 4506 Windows NTFS and IIS Security Features.  Overview Windows NTFS Server security Internet Information Server security features Securing communication.
Introduction to Networking. What is a Network? Discuss in groups.
SSH. 2 SSH – Secure Shell SSH is a cryptographic protocol – Implemented in software originally for remote login applications – One most popular software.
 client  client/server network  communication hardware  extranet  firewall  hacker  Internet  intranet  local area network (LAN)  Network 
Chapter 7: Using Network Clients The Complete Guide To Linux System Administration.
Application Layer instructors at St. Clair College in Windsor, Ontario for their slides. Special thanks to instructors at St. Clair College in Windsor,
WARCS (Wide Area Remote Control for SPring-8)‏ A. Yamashita and Y.Furukawa SPring-8, Japan Control System Cyber-Security Workshop (CS)2/HEP Oct
Getting Connected to NGS while on the Road…
Unit Communication Hardware
Chapter 7: Using Windows Servers
Connecting Desktops and Laptops to Networks
Introduction to Operating Systems
Introduction to Computers
Welcome To : Group 1 VC Presentation
Network Services.
Unit 27: Network Operating Systems
Chapter 27: System Security
NAT Configuration For ZyXEL ADSL Wireless Router
Getting Connected to NGS while on the Road…
How To Configure Hotspot in Virtual Mikrotik on VMware
Presentation transcript:

XXIII HTASC Meeting – CERN March 2003 LIP and the Traveling Physicist Jorge Gomes LIP - Computer Centre

XXIII HTASC Meeting – CERN March 2003 About LIP

XXIII HTASC Meeting – CERN March 2003 The LIP context –LIP is the Portuguese HEP laboratory. Lisbon, Coimbra and Faro > 100 persons –LIP does not host IT resources for groups or experiments with large external contributions. –Most LIP users are internal users. –One exception is Grid: LIP is involved in CrossGrid and DataGrid LIP supports the ATLAS, CMS and crossgrid VOs LIP hosts the CrossGrid central systems –Currently Grid systems are separated from the remaining systems.

XXIII HTASC Meeting – CERN March 2003 Resource usage –LIP hosts regularly external researchers Foreigner Portuguese –External researchers use both LIP and external computational resources –LIP researchers travel frequently to: Other research institutes Conferences –Travelling is no longer only to HEP institutes: Astrophysics, nuclear medicine …

XXIII HTASC Meeting – CERN March 2003 Access restrictions to LIP resources –LIP internal resources are closed to the Internet with the following exceptions: SSH Inbound access is open for some central systems Web servers Central web server ( Webmail server Mail Secure IMAP is allowed Tunnelling SSH is the only supported tunnelling mechanism Other forms of tunnelling are being considered Some exceptions are allowed for trusted hosts/networks

XXIII HTASC Meeting – CERN March 2003 Local access to LIP resources –Guests are allowed to use local resources: Portable computers can: Obtain IP addresses from DHCP. Connect to the internet (using NAT). Send through the LIP mail server. Print through the central LPD/Samba servers. Use the VRVS reflector. Use the wireless LAN upon authorization. Some public workstations with windows are available. For external users that will stay at LIP for some time local accounts are provided.

XXIII HTASC Meeting – CERN March 2003 Information access policies –The information publish in the web servers is divided: Strictly local Available only from internal web servers. For LIP users Accessible from the Internet with a password. General information Open to the Internet. –We are working to change the look of the web server: General public page Intranet page

XXIII HTASC Meeting – CERN March 2003 Remote access –LIP provides remote access through: A pool of analog modems ISDN router Internet (SSH to some central systems) –Remote access using modem or ISDN: Has more rights than the Internet access More systems are accessible through SSH Mail server is open for sending Telnet to some systems is still allowed But much less rights than the local access

XXIII HTASC Meeting – CERN March 2003 The user opinion

XXIII HTASC Meeting – CERN March 2003 Remote access –Users want access to resources from: Universities and other institutes Conferences Home (through ADSL and Cable) Hotels Airports –Using: Their portables (everybody has one) Local workstations and terminals

XXIII HTASC Meeting – CERN March 2003 Arriving to a site with a portable –Users complaint: Network configuration Different site policies (such as portable registration). Some sites still don’t have DHCP. Physical network Lack of network sockets for portables. Wireless networking coverage is often bad. Why doesn’t CERN have WLAN at the Foyer ??? Power Sometimes the power plugs don’t fit in. Most conference rooms lack power outlets.

XXIII HTASC Meeting – CERN March 2003 Arriving to a site with a portable –Users complaint: Mail usage Home SMTP servers are closed because of SPAM. Access to the home mail server can be difficult without web mail. Obtaining the name of the local SMTP gateway can be a problem and requires reconfiguration of the mail agent. Different print environments In some sites special packages must be installed. Installation of drivers in Windows, Linux and Mac.

XXIII HTASC Meeting – CERN March 2003 Arriving to a site without a portable –Users complaint: Workstations Need of a local account to use an existing workstation (even public). Different accounts at each site. Lack of public workstations for guests. SSH and SCP is not installed everywhere. Affects login, file copy and X applications. X servers to available in some public PCs Network Most sites don’t accept telnet This is a problem with the old X terminals

XXIII HTASC Meeting – CERN March 2003 Generally –Users complaint: X being slow across sites. SSH compression doesn’t work when privilege separation is enabled. Access to the home directory without AFS is difficult. Differences in the commands available at the several sites. Problems with powerpoint compatibility across sites. Difficulties in transferring files namely when using portables. Access to systems behind firewalls. Certificates and CAs not recognized everywhere (affects webmail).

XXIII HTASC Meeting – CERN March 2003 Recommendations –WEBMAIL is essential when travelling. –Things that should be available at all institutes: Wireless LAN Power outlets DHCP SSH and SCP PS printers available through LPD Public workstations for guests Web page with information for travellers on how to use the local resources