Grid Account Management: A Case Study GGF 9 PGM-RG Chicago, IL October 5-8, 2003 Doru Marcusiu Assistant Director Grid and Security.

Slides:



Advertisements
Similar presentations
A AAAA Model to Support Science Gateways with Community Accounts GGF-14 Science Gateways Workshop June 28, 2005 Von Welch, James Barlow, James Basney,
Advertisements

Illinois Justice Network Portal Implementation Board Meeting February 11, 2004.
OSG/TeraGrid Interopations: The Authz Perspective Von Welch (NCSA) Presenting work by Christopher A. Baumbauer (Purdue U.) Greg Cross (U. Chicago) Stuart.
Policy Based Dynamic Negotiation for Grid Services Authorization Infolunch, L3S Research Center Hannover, 29 th Jun Ionut Constandache Daniel Olmedilla.
High Performance Computing Course Notes Grid Computing.
GENI: Global Environment for Networking Innovations Larry Landweber Senior Advisor NSF:CISE Joint Techs Madison, WI July 17, 2006.
The Community Authorisation Service – CAS Dr Steven Newhouse Technical Director London e-Science Centre Department of Computing, Imperial College London.
1 Software & Grid Middleware for Tier 2 Centers Rob Gardner Indiana University DOE/NSF Review of U.S. ATLAS and CMS Computing Projects Brookhaven National.
PDC Enabling Science Grid Security Research Olle Mulmo.
CoreGRID Workpackage 5 Virtual Institute on Grid Information and Monitoring Services Authorizing Grid Resource Access and Consumption Erik Elmroth, Michał.
Understanding Active Directory
ADAPT An Approach to Digital Archiving and Preservation Technology Principal Investigator: Joseph JaJa Lead Programmers: Mike Smorul and Mike McGann Graduate.
Chapter 12 USING TECHNOLOGY TO ENHANCE BUSINESS PROCESSES.
Distributed Account Management Middleware Glenn Bresnahan (PI), Boston University Steve Quinn (CoPI), NCSA Aaron Fuegi, Boston University Chris Pond, NCSA.
EInfrastructures (Internet and Grids) - 15 April 2004 Sharing ICT Resources – Discussion of Best Practices in the U.S. Mary E. Spada Program Manager, Strategic.
Globus Computing Infrustructure Software Globus Toolkit 11-2.
Deploying Dynamics Applications Thomas Hansen – Director, appSolutions a|s
Network, Operations and Security Area Tony Rimovsky NOS Area Director
WP6: Grid Authorization Service Review meeting in Berlin, March 8 th 2004 Marcin Adamski Michał Chmielewski Sergiusz Fonrobert Jarek Nabrzyski Tomasz Nowocień.
Barracuda Load Balancer Server Availability and Scalability.
The EPIKH Project (Exchange Programme to advance e-Infrastructure Know-How) Grid Engine Riccardo Rotondo
SOS EGEE ‘06 GGF Security Auditing Service: Draft Architecture Brian Tierney Dan Gunter Lawrence Berkeley National Laboratory Marty Humphrey University.
The National Grid Service User Accounting System Katie Weeks Science and Technology Facilities Council.
Ocean Observatories Initiative Common Execution Infrastructure (CEI) Overview Michael Meisinger September 29, 2009.
Presented by Xiaoyu Qin Virtualized Access Control & Firewall Virtualization.
Frascati, October 5th, Accounting in DataGrid Preliminary Proposal and basis for discussion Stefano Barale Frascati, October.
HPDC 2007 / Grid Infrastructure Monitoring System Based on Nagios Grid Infrastructure Monitoring System Based on Nagios E. Imamagic, D. Dobrenic SRCE HPDC.
San Diego Supercomputer Center National Partnership for Advanced Computational Infrastructure San Diego Supercomputer Center National Partnership for Advanced.
Copyright © Clifford Neuman and Dongho Kim - UNIVERSITY OF SOUTHERN CALIFORNIA - INFORMATION SCIENCES INSTITUTE Advanced Operating Systems Lecture.
The Grid System Design Liu Xiangrui Beijing Institute of Technology.
Interoperability Grids, Clouds and Collaboratories Ruth Pordes Executive Director Open Science Grid, Fermilab.
Communicating Security Assertions over the GridFTP Control Channel Rajkumar Kettimuthu 1,2, Liu Wantao 3,4, Frank Siebenlist 1,2 and Ian Foster 1,2,3 1.
Client Server Network Model:
NA-MIC National Alliance for Medical Image Computing UCSD: Engineering Core 2 Portal and Grid Infrastructure.
GRID Overview Internet2 Member Meeting Spring 2003 Sandra Redman Information Technology and Systems Center and Information Technology Research Center National.
ECI – electronic Commerce Infrastructure “ An application to the Shares Market ” Demetris Zeinalipour ( Melinos Kyriacou
Ruth Pordes November 2004TeraGrid GIG Site Review1 TeraGrid and Open Science Grid Ruth Pordes, Fermilab representing the Open Science.
CASTOR evolution Presentation to HEPiX 2003, Vancouver 20/10/2003 Jean-Damien Durand, CERN-IT.
National Computational Science National Center for Supercomputing Applications National Computational Science GSI Online Credential Retrieval Requirements.
Presented by: Tony Rimovsky TeraGrid Account Management Tony Rimovsky, Area Director for Network Operations and Security
Authorisation, Authentication and Security Guy Warner NeSC Training Team Induction to Grid Computing and the EGEE Project, Vilnius,
Authorization GGF-6 Grid Authorization Concepts Proposed work item of Authorization WG Chicago, IL - Oct 15 th 2002 Leon Gommans Advanced Internet.
7. Grid Computing Systems and Resource Management
© 2004 IBM Corporation ICSOC2004 Panel Discussion: Grid Systems: What is needed from web service standards? Jeffrey Frey IBM.
Office of Science U.S. Department of Energy Grid Security at NERSC/LBL Presented by Steve Chan Network, Security and Servers
Security Solutions Rachana Ananthakrishnan University of Chicago.
Securing the Grid & other Middleware Challenges Ian Foster Mathematics and Computer Science Division Argonne National Laboratory and Department of Computer.
Network, Operations and Security Area Tony Rimovsky NOS Area Director
GRID ANATOMY Advanced Computing Concepts – Dr. Emmanuel Pilli.
Globus: A Report. Introduction What is Globus? Need for Globus. Goal of Globus Approach used by Globus: –Develop High level tools and basic technologies.
MAPS Middleware Action Plan & Strategy Project Middleware Action Plan & Strategy Project (MAPS) Patricia McMillan, Project Manager.
The National Grid Service User Accounting System Katie Weeks Science and Technology Facilities Council.
1 Introduction to Active Directory Directory Services Uniquely identify users and resources on a network Provide a single point of network management.
Ocean Observatories Initiative Integrating Marine Observatories into a System-of-Systems: Messaging in the US Ocean Observatories Initiative M. Arrott,
Grid Deployment Technical Working Groups: Middleware selection AAA,security Resource scheduling Operations User Support GDB Grid Deployment Resource planning,
DGAS A.Guarise April 19th, Athens
SuperComputing 2003 “The Great Academia / Industry Grid Debate” ?
Ian Bird GDB Meeting CERN 9 September 2003
Grid Resource Allocation Agreement Protocol Working Group
Cloud Management Mechanisms
Overview of SDN Controller Design
Grid Computing B.Ramamurthy 9/22/2018 B.Ramamurthy.
Choosing the Discovery Model Martin Forsberg
Concept of VLAN (Virtual LAN) and Benefits
Grid Engine Riccardo Rotondo
The Anatomy and The Physiology of the Grid
Introduction to Active Directory Directory Services
Global Grid Forum (GGF) Orientation
gLite The EGEE Middleware Distribution
Presentation transcript:

Grid Account Management: A Case Study GGF 9 PGM-RG Chicago, IL October 5-8, 2003 Doru Marcusiu Assistant Director Grid and Security Technologies, NCSA A partnership to prototype an advanced computational infrastructure for the 21st century

2 Questions to be addressed What is Grid account management? What is Grid accounting? Are there any existing solutions? What does the future hold?

A partnership to prototype an advanced computational infrastructure for the 21st century 3 What is Grid Account Management? The coordination, tracking, and managing of allocations, conventional user accounts, and grid related files on Grid resources

A partnership to prototype an advanced computational infrastructure for the 21st century 4 How does Grid Account Mgmt. differ from conventional Account Mgmt? X509 certificate management Grid map file management Possible distributed, cross domain resources Possible multiple account management systems

A partnership to prototype an advanced computational infrastructure for the 21st century 5 What are the implementation goals for Grid Account Management? Scalability Non Intrusive Dynamic Secure Extensible Automation

A partnership to prototype an advanced computational infrastructure for the 21st century 6 What is Grid Accounting? The collection, consolidation, and reporting of resource usage on Grid resources

A partnership to prototype an advanced computational infrastructure for the 21st century 7 How does Grid Accounting differ from conventional Accounting? Multiple accounting systems Tracking usage by Distinguished Name Distributed, cross domain resources

A partnership to prototype an advanced computational infrastructure for the 21st century 8 What are the implementation goals for Grid Accounting? Scalability Non Intrusive Dynamic Secure Extensible Automation

A partnership to prototype an advanced computational infrastructure for the 21st century 9 Do Account Management solutions exist? Yes, for single organization Grids No, for virtual organization Grids

A partnership to prototype an advanced computational infrastructure for the 21st century 10 Single Organization vs. Virtual Grids Single Organization Grids –Grids whose resources are allocated as a single virtual resource Virtual Organization Grids –Grids whose resources are allocated individually

A partnership to prototype an advanced computational infrastructure for the 21st century 11 Example: Single Organization Grid Transaction system model Handles request and notification transactions Uses central, authoritative data base Provides management of X509 certificate distinguished name Provides API to existing account management systems

A partnership to prototype an advanced computational infrastructure for the 21st century 12 Transaction System Model: Transactions Well defined, extensible transaction types Transaction file interpreter Account management request initiation Account management action acknowledged Transaction receipt acknowledgement

A partnership to prototype an advanced computational infrastructure for the 21st century 13 Transaction System Model: Central Data Base Unique Distinguished names for X509 certificates Mapping of DNs to user accounts on multiple systems Provides means for account usage consolidated reporting for Grid resources

A partnership to prototype an advanced computational infrastructure for the 21st century 14 Transaction System Model: X509 certificates Manages distinguished names for X509 user certificates Provides mapping of DNs to user accounts on multiple systems

A partnership to prototype an advanced computational infrastructure for the 21st century 15 Transaction System Model: API Non intrusive to local account management system Uses transaction file interpreter Extensible to support new transaction types

A partnership to prototype an advanced computational infrastructure for the 21st century 16 What are the Virtual Organization Grid Acct Mgmt issues? Must respect existing site account management systems and policies Must work without a central authoritative source of information Must use standard, extensible information exchange mechanism Must support management of x509 certificate Distinguished Names

A partnership to prototype an advanced computational infrastructure for the 21st century 17 What does the future hold? Maybe virtual organization, cross domain resources will never be considered a single virtual resource Maybe only solutions for single organization Grids such as TeraGrid are needed Maybe a dynamic, economic model representing a pay as you go scenario is needed

A partnership to prototype an advanced computational infrastructure for the 21st century 18 What should current best practices be? Focus effort on supporting a single organization Grid Implement and integrate additional functionality for supporting Grids Keep informed about possible development of standards