From Prototype to Production Grid

Slides:



Advertisements
Similar presentations
EGEE-II INFSO-RI Enabling Grids for E-sciencE EGEE and gLite are registered trademarks MyProxy and EGEE Ludek Matyska and Daniel.
Advertisements

The Enterprise Guide to Video Conferencing Created using iThoughts [...] [...]
FP7-INFRA Enabling Grids for E-sciencE EGEE Induction Grid training for users, Institute of Physics Belgrade, Serbia Sep. 19, 2008.
Grid Security. Typical Grid Scenario Users Resources.
The Community Authorisation Service – CAS Dr Steven Newhouse Technical Director London e-Science Centre Department of Computing, Imperial College London.
16.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft® Windows® Server 2003 Active Directory Infrastructure.
4/22/2002 Implementing Production Grids William E. Johnston The NASA IPG Engineering Team ( and.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 9: Planning and Managing Certificate Services.
Slides for Grid Computing: Techniques and Applications by Barry Wilkinson, Chapman & Hall/CRC press, © Chapter 1, pp For educational use only.
1-2.1 Grid computing infrastructure software Brief introduction to Globus © 2010 B. Wilkinson/Clayton Ferner. Spring 2010 Grid computing course. Modification.
Computing and Data Infrastructure for Large-Scale Science Deploying Production Grids: NASA’s IPG and DOE’s Science Grid William E. Johnston
Task 3.5 Tests and Integration ( Wp3 kick-off meeting, Poznan, 29 th -30 th January 2002 Santiago González de la.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 8 Introduction to Printers in a Windows Server 2008 Network.
Globus Computing Infrustructure Software Globus Toolkit 11-2.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 7 Configuring File Services in Windows Server 2008.
Web-based Portal for Discovery, Retrieval and Visualization of Earth Science Datasets in Grid Environment Zhenping (Jane) Liu.
(ITI310) SESSIONS : Active Directory By Eng. BASSEM ALSAID.
Session 6 Windows Platform Dina Alkhoudari. Learning Objectives What is Active Directory Logical components of active directory Physical components of.
High Performance Louisiana State University - LONI HPC Enablement Workshop – LaTech University,
Dynamic Firewalls and Service Deployment Models for Grid Environments Gian Luca Volpato, Christian Grimm RRZN – Leibniz Universität Hannover Cracow Grid.
OSG Site Provide one or more of the following capabilities: – access to local computational resources using a batch queue – interactive access to local.
INFSO-RI Enabling Grids for E-sciencE SA1: Cookbook (DSA1.7) Ian Bird CERN 18 January 2006.
GILDA testbed GILDA Certification Authority GILDA Certification Authority User Support and Training Services in IGI IGI Site Administrators IGI Users IGI.
National Computational Science National Center for Supercomputing Applications National Computational Science NCSA-IPG Collaboration Projects Overview.
Module 9: Designing Public Key Infrastructure in Windows Server 2008.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
Open Science Grid OSG CE Quick Install Guide Siddhartha E.S University of Florida.
11 WORKING WITH PRINTERS Chapter 10. Chapter 10: WORKING WITH PRINTERS2 THE WINDOWS SERVER 2003 PRINTER MODEL  Locally attached printers Printers that.
US LHC OSG Technology Roadmap May 4-5th, 2005 Welcome. Thank you to Deirdre for the arrangements.
Introduction to Grids By: Fetahi Z. Wuhib [CSD2004-Team19]
6/23/2005 R. GARDNER OSG Baseline Services 1 OSG Baseline Services In my talk I’d like to discuss two questions:  What capabilities are we aiming for.
Creating and Managing Digital Certificates Chapter Eleven.
VO Box Issues Summary of concerns expressed following publication of Jeff’s slides Ian Bird GDB, Bologna, 12 Oct 2005 (not necessarily the opinion of)
OSG Site Admin Workshop - Mar 2008Using gLExec to improve security1 OSG Site Administrators Workshop Using gLExec to improve security of Grid jobs by Alain.
Configuring, Managing and Maintaining Windows Server® 2008 Servers Course 6419A.
Condor Services for the Global Grid: Interoperability between OGSA and Condor Clovis Chapman 1, Paul Wilson 2, Todd Tannenbaum 3, Matthew Farrellee 3,
Open Science Grid Build a Grid Session Siddhartha E.S University of Florida.
MGRID Architecture Andy Adamson Center for Information Technology Integration University of Michigan, USA.
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
RI EGI-TF 2010, Tutorial Managing an EGEE/EGI Virtual Organisation (VO) with EDGES bridged Desktop Resources Tutorial Robert Lovas, MTA SZTAKI.
Bob Jones EGEE Technical Director
Accessing the VI-SEEM infrastructure
The EDG Testbed Deployment Details
Classic Storage Element
Vincenzo Spinoso EGI.eu/INFN
CONNECTING TO THE INTERNET
How to connect your DG to EDGeS? Zoltán Farkas, MTA SZTAKI
Grid Security.
Example: Rapid Atmospheric Modeling System, ColoState U
Chapter 5 : Designing Windows Server-Level Security Processes
Accounting at the T1/T2 Sites of the Italian Grid
Enable computational and experimental  scientists to do “more” computational chemistry by providing capability  computing resources and services at their.
Introduction to Data Management in EGI
MCSA VCE
THE STEPS TO MANAGE THE GRID
Viet Tran Institute of Informatics Slovakia
Cristina del Cano Novales STFC - RAL
Dumps PDF Check Point Certified Security Administrator – GAiA dumps.html Dumps Checkpoint.
Dumps PDF Check Point Certified Security Administrator – GAiA dumps.html Dumps Checkpoint.
Unit 27: Network Operating Systems
Patrick Dreher Research Scientist & Associate Director
Getting Started.
Getting Started.
Implementing Production Grids
NTC 328 Great Wisdom/tutorialrank.com. NTC 328 All Assignments For more course tutorials visit NTC 328 Assignment Week 1 Practice.
The Anatomy and The Physiology of the Grid
The Anatomy and The Physiology of the Grid
gLite The EGEE Middleware Distribution
Grid Computing Software Interface
The DZero/PPDG D0/PPDG mission is to enable fully distributed computing for the experiment, by enhancing SAM as the distributed data handling system of.
Presentation transcript:

From Prototype to Production Grid B. Ramamurthy 1/14/2019 B.Ramamurthy

Introduction In the last lectures we looked at the design of a prototype test bed for the grid based on the paper http://www-library.lbl.gov/docs/LBNL/511/92/PDF/LBNL-51192.pdf This lecture we will look into the details of transition from the test bed to a production grid. 1/14/2019 B.Ramamurthy

First steps Issue host certificates for all the computing and data resources and establish procedures for installing them. Issue user certificates. You may revoke the certificates to make sure of the operations and reissue them. Using certificates issued by your CA validate correct operation of GSI, GSS libraries, GSISSH and GSIFTP and/or GRIDFTP at all sites. Read: Certification Systems:X.509,CA, PGP at http://mcg.org.br/cert.htm Another URL to look at to get an overall picture: http://www-library.lbl.gov/docs/LBNL/511/92/PDF/LBNL-51192.pdf 1/14/2019 B.Ramamurthy

Defining and Understanding the Extent of the Grid Boundaries are primarily defined by: Interoperability of the grid software What CAs you must trust: This is explicitly configured in each Globus environment on per CA basis. How you scope the searching of the GIS or control the information that is published in them. It depends on the model you choose to structure your directory services. 1/14/2019 B.Ramamurthy

Model of the GIIS GIIS (Resource Information Servers) and directory servers are needed. Use a X.500 style hierarchical name component space directory structure. VO roots can be attached to the hierarchy extending the scope. Index server directory structure: Use Globus MDS for information directory hierarchy. 1/14/2019 B.Ramamurthy

Local Authorization A Globus mapfile is an ACL that maps from Grid identities to local user identification numbers (UIDs) on the systems where jobs are to be run. A Globus Gatekeeper replaces the usual login authorization mechanism for Grid-based access and uses mapfile to authorize access to resources after authentication. 1/14/2019 B.Ramamurthy

Site Security Issue Any distributed application requires use of many IP communication ports. If the server is behind firewall these ports may not be accessible. Typical application may require several 10s of ports. Globus can be configured to use mid-700 range ports and make sure the sysadmin knows about the block usage. Proxies can help manage intra-service component communication. 1/14/2019 B.Ramamurthy

High Performance Communication Issue If high data rate distributed applications are anticipated, enlist the help of WAN networking people to refine network bandwidth end-to-end using large packet size data streams. Network monitors and Loggers can help in monitoring and identifying low rate problems. 1/14/2019 B.Ramamurthy

Batch Schedulers Job initiation and resource management are very important functions closer to the application level. Parallel Batch Scheduler (PBS) , Condor-G are examples of schedulers. PBS provides time-of-the-day based advanced resource reservation. Schedulers also maintain queues and implement access control. PBS also has full preemption capabilities that combined with existing access control mechanisms can provide full disaster response or scheduling of high priority job preempting a lower priority one. 1/14/2019 B.Ramamurthy

Preparing for the Deployment Identify some sample problems to test the working of the grid. Read a sample “Quick Start Guide” available at http://www.globus.org/toolkit/documentation/QuickStart.pdf At this point Globus, GIS/MDS, security infrastructure should all be operational. Deploy and build Globus on at least two production platforms at two different facilities. Configure job submission and schedulers and verify them. 1/14/2019 B.Ramamurthy

Grid Service Model Establish a model for moving data> For example: GridFTP. Check the operation using a sample service such as MyProxy service: provides for creating and storing intermediate lifetime proxies that can accessed by Web-based portals, job schedulers, and so forth. 1/14/2019 B.Ramamurthy

Summary We outlined the installation of prototype grid. We also sketched the details of moving from a prototype grid to a production grid. Your task is to read the main paper and the related material referenced in the presentation. 1/14/2019 B.Ramamurthy