Sponsored by the National Science Foundation Strategies for Cyber-Infrastructure Integration Marshall Brinn, GPO Brecht Vermeulen, iMinds GEC22: March.

Slides:



Advertisements
Similar presentations
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI AAI in EGI Status and Evolution Peter Solagna Senior Operations Manager
Advertisements

December 9 th, 2013 Given by: Rose Rocchio. IMS Global Update Overall Health of org is strong 220 Total conformance certifications (80 this year) IMS.
The Internet2 NET+ Services Program Jerry Grochow Interim Vice President CSG January, 2012.
Copyright © 2011 Cloud Security Alliance Trusted Cloud Initiative Work Group Session.
Sponsored by the National Science Foundation Campus Policies for the GENI Clearinghouse and Portal Sarah Edwards, GPO March 20, 2013.
1 Cyberinfrastructure Framework for 21st Century Science & Engineering (CIF21) NSF-wide Cyberinfrastructure Vision People, Sustainability, Innovation,
1 Cyberinfrastructure Framework for 21st Century Science & Engineering (CF21) IRNC Kick-Off Workshop July 13,
Tool Integration with LTI Phil McGachey Tech Lead Teaching and Learning Technologies.
Cloud Usability Framework
Mobile Data Sharing over Cloud Group No. 8 - Akshay Kantak - Swapnil Chavan - Harish Singh.
Using the jFed tool to experiment from zero to hero Brecht Vermeulen FGRE, July 7 th, 2015.
Health IT RESTful Application Programming Interface (API) Security Considerations Transport & Security Standards Workgroup March 18, 2015.
CONNECT as an Interoperability Platform - Demo. Agenda Demonstrate CONNECT “As an Evolving Interoperability Platform” –Incremental addition of features.
Authorization architecture sketches draft-selander-core-access-control-02 draft-gerdes-core-dcaf-authorize-02 draft-seitz-ace-design-considerations-00.
1 FGRE July 7 th – July 11 th Wifi: WelcomeATiMindS
Report from Breakout Session 1.2 Secure Consumerization: the Genuine Trustworthiness Revolution Chair: Craig Lee Rapporteur: Paolo Mazzetti.
Cloud computing is the use of computing resources (hardware and software) that are delivered as a service over the Internet. Cloud is the metaphor for.
Sponsored by the National Science Foundation GENI Stitching Services: Present and Future Marshall Brinn, GPO March 18, 2014.
National Science Foundation Arlington, Virginia January 7-8, 2013 Tom Lehman University of Maryland Mid-Atlantic Crossroads.
Working Group Outbrief Resource discovery & description and federation Workshop on the Development of a Next-Generation, Interoperable, Federated Network.
1 Multi Cloud Navid Pustchi April 25, 2014 World-Leading Research with Real-World Impact!
Sponsored by the National Science Foundation GEC16 Service Developers Roundtable: Strawman Unified I&M Tools and Services Marshall Brinn, GPO March 19,
1 Identity and Transparency ( Bridging the GAPS of Governance Bridging the GAPS of Governance in eGov Initiatives in eGov Initiatives )‏ Badri Sriraman.
Climate Sciences: Use Case and Vision Summary Philip Kershaw CEDA, RAL Space, STFC.
Sponsored by the National Science Foundation GEC17: Developer Track Introduction Marshall Brinn, GPO July 21, 2013.
Evaluation and Testbed Development Bhavani Thuraisingham The University of Texas at Dallas Jim Massaro and Ravi Sandhu.
Federated Identity Management for HEP David Kelsey WLCG GDB 9 May 2012.
Sponsored by the National Science Foundation Programmable Networks and GENI Marshall Brinn, GPO GEC October 25, 2012.
IST 2006 – 22/11/2006 Aljosa Pasic Atos Origin Security, Dependability and Trust in Service Infrastructures.
© 1998 R. Gemmell IETF WG Presentation1 Robert Gemmell ROAMOPS Working Group.
Sponsored by the National Science Foundation GEC16 Plenary Session: GENI Solicitation 4 Tool Context Marshall Brinn, GPO March 20, 2013.
Sponsored by the National Science Foundation GEC14 Session: SDN * in GENI Marshall Brinn, GPO July 11, 2012 * Software-Defined Networking.
Sponsored by the National Science Foundation Enabling Trusted Federation Marshall Brinn, GENI Program Office October 1, 2014.
Sponsored by the National Science Foundation Software Defined Exchanges (SDX) Panel discussion Chip Elliott GENI Project Office
Access Control for Federation of Emulab-based Network Testbeds Ted Faber, John Wroclawski 28 July 2008
Tutorial: Building Science Gateways TeraGrid 08 Tom Scavo, Jim Basney, Terry Fleury, Von Welch National Center for Supercomputing.
DOCUMENT #:GSC15-PLEN-62 FOR:Presentation SOURCE:ISACC AGENDA ITEM:Opening Plenary (6.14) CONTACT(S):Jim MacFie Cloud Computing Jim MacFie Chairman, ISACC.
Virtual Workspaces Kate Keahey Argonne National Laboratory.
Sponsored by the National Science Foundation GEC17: GENI Instrumentation and Measurement Sessions Sun. July 21, Mon. July 22, 2013 Marshall Brinn, Jeanne.
Authors: Ronnie Julio Cole David
Sponsored by the National Science Foundation Cluster D Working Meetings GENI Engineering Conference 5 Seattle, WA July ,
Sponsored by the National Science Foundation GENI Experimenter Portal Service Developers Roundtable GENI Engineering Conference 16 Salt Lake City, Utah.
Enabling the Future Service-Oriented Internet (EFSOI 2008) Supporting end-to-end resource virtualization for Web 2.0 applications using Service Oriented.
Tutorial emulation/cloud July 8 th Brecht Vermeulen.
Sponsored by the National Science Foundation Achieving the Programmable WAN: Introduction Marshall Brinn, GPO March 18,
Sponsored by the National Science Foundation Introduction to GENI Architecture: Federated Trust Perspective Marshall Brinn, GPO GEC20: June 24, 2014.
Sponsored by the National Science Foundation GENI Aggregate Manager API Tom Mitchell March 16, 2010.
Award # funded by the National Science Foundation Award #ACI Jetstream: A Distributed Cloud Infrastructure for.
HIT Policy Committee NHIN Workgroup HIE Trust Framework: HIE Trust Framework: Essential Components for Trust April 21, 2010 David Lansky, Chair Farzad.
Sponsored by the National Science Foundation Establishing Policy-based Resource Quotas at Software-defined Exchanges Marshall Brinn, GPO June 16, 2015.
Sponsored by the National Science Foundation GENI SDN Offering Marshall Brinn, GPO GEC18: October 28, 2013.
Sponsored by the National Science Foundation Measurement System Spiral 2 Year-end Project Review University of Wisconsin, Colgate University, Boston University.
Globus and PlanetLab Resource Management Solutions Compared M. Ripeanu, M. Bowman, J. Chase, I. Foster, M. Milenkovic Presented by Dionysis Logothetis.
Sponsored by the National Science Foundation Stitching Slices GEC7 Control Framework WG Aaron Falk GENI Project Office.
© 2012 IBM Corporation IBM Security Systems 1 © 2012 IBM Corporation Cloud Security: Who do you trust? Martin Borrett Director of the IBM Institute for.
GRID ANATOMY Advanced Computing Concepts – Dr. Emmanuel Pilli.
Sponsored by the National Science Foundation GENI Experimenter Portal Service Developers Roundtable GENI Engineering Conference 16 Salt Lake City, Utah.
Behind the Scenes of GENI Experimentation An Introduction to GENI Tools Sponsored by the National Science Foundation.
Sponsored by the National Science Foundation GENI Cloud Security GENI Engineering Conference 12 Kansas City, MO Stephen Schwab University of Southern California.
Ocean Observatories Initiative Serving Ocean Model Data on the Cloud M. Meisinger, C. Farcas, E. Farcas, C. Alexander, M. Arrott, J. de La Beaujardière,
INDIGO – DataCloud Security and Authorization in WP5 INFN RIA
INTRODUCTION TO CLOUD COMPUTING. CLOUD  The expression cloud is commonly used in science to describe a large agglomeration of objects that visually appear.
Designing a Federated Testbed as a Distributed System Robert Ricci, Jonathon Duerig, Gary Wong, Leigh Stoller, Srikanth Chikkulapelly, Woojin Seok 1.
Sponsored by the National Science Foundation ABAC and GPO Clearinghouse Authorization Marshall Brinn, GPO GEC20: June 22, 2014.
Sponsored by the National Science Foundation GEC17 Plenary Session: Architecture Marshall Brinn, GPO July 22, 2013.
Using the jFed tool to experiment from zero to hero
Joslynn Lee – Data Science Educator
Federated IdM Across Heterogeneous Clouding Environment
THE STEPS TO MANAGE THE GRID
Tutorial emulation/cloud on Virtual Wall
Presentation transcript:

Sponsored by the National Science Foundation Strategies for Cyber-Infrastructure Integration Marshall Brinn, GPO Brecht Vermeulen, iMinds GEC22: March 24, 2015

Sponsored by the National Science Foundation2 Outline Introduction Speakers Open Discussion, Q&A

Sponsored by the National Science Foundation3 Introduction This GEC presents the capabilities of a wide range of cyber-infrastructure (CI) services and resources including: –Individual resources (computation, network, storage) –CI Resource Test-beds –Cloud Servers –“Meta-cloud” Servers In this session, we hope to review lessons-learned and best practices around enabling integration across these platforms and resources/services provided by these platforms.

Sponsored by the National Science Foundation4 Platform Design Trade-offs Each CI platform is designed to position itself somewhere in might be termed the “Convenience vs. Confidence” trade-off space –Convenience: How easy is it for providers to maintain the systems including security, accountability How easy is it for consumers to gain access to resources –Confidence: How sure is the resource provider that no harm will come to these resources by letting people use them? How sure are the resource consumers that they will receive reliable, secure computing/networking environments? This trade-off space is a critical feature of a platform: Too much convenience may make it too unreliable for anyone to want to use Too much confidence may make it too difficult for anyone to be able to use

Sponsored by the National Science Foundation5 The Challenge of CI Integration Lots of care has gone into these design decisions –There are many platforms, many represented in this room, that provide both convenience and confidence to resource providers and consumers. In recent years, there has been a marked increase in the desire to build topologies or services requiring collaboration/integration across such platforms I contend that less time and care has gone into assessing the convenience/confidence trade-offs in these CI integration scenarios. Yet as the demand for integration grows, the criticality of these design issues grows as well.

Sponsored by the National Science Foundation6 CI Integration at Two Levels Control Framework Level –Supporting common sense of identity for AuthN, policies for AuthZ, Accountability for forensics –Adopting common (or compatible) APIs for provisioning and managing resources Allocated Resource Level –Allow separately allocated resources (in different ‘slices’ from different CI platforms) to interoperate

Sponsored by the National Science Foundation7 Some Models for CI Integration: Platforms Federation: One common (very strong) approach is to establish formal trust relationships (sharing trust roots, negotiating policies) between CI authorities. Tools: Building tools to speak to different platforms and give the appearance of seamless interoperation Ad-hoc AuthN interfaces. Setting up specific point-to-point interfaces to pass along required identity/credential information between otherwise incompatible systems. (E.g. OAuth, OpenID)

Sponsored by the National Science Foundation8 Some Models for CI Integration: Resources Software-defined Exchange (SDX): Placing explicit exchange points (with storage, computation, network control) between one or more entities Ad-hoc Connectivity: Setting up links between separate slices (e.g. public IP, Stitch Points, Shared VLANs)

Sponsored by the National Science Foundation9 Questions for Discussion How do you maintain control, while providing access, in the context of integrating with other systems? What are your experiences with these convenience/confidence trade-offs and how have you addressed these challenges? What are your requirements before supporting integration? Do you care about integration between the allocated resources? Or is that beyond the scope of your design interest?

Sponsored by the National Science Foundation10 Speakers Brecht Vermeulen, iMinds Rob Ricci, CloudLab Kate Keahey, Chameleon Vinod Mishara, ARL Michiaki Hayashi, KDDI R&D Labs Plus (informally)… –Anita Nikolich, NSF ACI –Representatives of the GLIF and GRID communities