Operated by Los Alamos National Security, LLC for DOE/NNSA U N C L A S S I F I E D Medialess Computing: A LANL success story using multiple KVM technologies.

Slides:



Advertisements
Similar presentations
PC Blades Wilson Edgar. Objective - 44% Lower Operating Cost than traditional PCs - 50% More Energy Efficient than traditional PCs - Unsurpassed Security.
Advertisements

PowerEdge T20 Customer Presentation. Product overview Customer benefits Use cases Summary PowerEdge T20 Overview 2 PowerEdge T20 mini tower server.
Premio Predator G2 Workstation Training
Custom’s K-12 Education Technology Council Presents… Custom Computer Specialists Server Technology Solutions Designed for NYCDOE Affordable and.
Case Study: T-Mobile Retail Personal Coverage Check Kiosk Joe Wong, Integral GIS Sean Alexis, T-Mobile April 18, 2007.
Consoles and Hardware Status Erik Gottschalk. Overview Consoles will be installed Dec. 19 & 20 Network installation will begin Dec. 11 Installation of.
Product and feature presentation. tou of new features DIGITAL SIGNAGE SOLUTIONS FROM UNISEN INTERACTIVE.
Premio 845D and 845MD Training Premio S650 Desktop Product Training By Calvin Chen Technical Director.
Computer Basics 1 Computer Basic 1 includes two lessons:
Linux Clustering A way to supercomputing. What is Cluster? A group of individual computers bundled together using hardware and software in order to make.
Drawer 8/16 Port Combo-Free IP KVM Console with 17" LCD Display
IT Infrastructure: Software September 18, LEARNING GOALS Identify the different types of systems software. Explain the main functions of operating.
1 SOFTWARE TECHNOLOGIES BUS Abdou Illia, Spring 2007 (Week 2, Thursday 1/18/2007)
Computer Hardware Components for Desktop
ASUS Confidential ASUS AP140R Server Introduction By Server Team V1.0.
VMware vCenter Server Module 4.
UNCLASSIFIED DCS-4 Departmental Computing Services “Security, Performance, and Support Benefits of Virtualizing the Desktop PC Using a Zero-Client” Kenneth.
5.3 HS23 Blade Server. The HS23 blade server is a dual CPU socket blade running Intel´s new Xeon® processor, the E5-2600, and is the first IBM BladeCenter.
COMPUTER A random company inc. Malachi Andersen. Goals  Build a computer with a budget of $1,500 - $1,
Cluster computing facility for CMS simulation work at NPD-BARC Raman Sehgal.
Components of a PC. Motherboard. Computer Mother Board Computer Mother board and its constituent components A typical PC mother board with important.
Basic Computer Structure and Knowledge Project Work.
Hardware Overview Iomega Network Storage LENOVO | EMC CONFIDENTIAL. ALL RIGHTS RESERVED. Storage for SMB and Distributed Enterprise PX SERIES.
ADVANCE FORENSIC WORKSTATION. SPECIFICATION Mother board : Xeon 5000 Series Server Board support 667MHz, 1066MHz and 1333MHz1 Processor : Two Intel Quad.
A+ Guide to Hardware: Managing, Maintaining, and Troubleshooting, Sixth Edition Chapter 9, Part 11 Satisfying Customer Needs.
Introduction to Computers Personal Computing 10. What is a computer? Electronic device Performs instructions in a program Performs four functions –Accepts.
MetaMorph Installation. 2 MetaMorph Overview Imaging Toolbox What MetaMorph can do oAcquisition oDevice Control oVisualization oProcessing oAnalysis oPresentation.

Know the Computer Multimedia tools. Computer essentials.
MicroSCADA Pro Partners Club 04/2007 © ABB MicroSCADA Pro Partners Club SYS Scalability Marko Viitala.
Computer Hardware Mr. Richard Orr Technology Teacher Bednarcik Jr. High School.
Introduction to Computers
© Cisco Systems, Inc. All rights reserved. Cisco Public ITE PC v4.1 Chapter 3 1 Chapter 3: Computer Assembly – Step by Step IT Essentials: PC.
Motherboard (Main board)
MY PERSONAL COMPUTER Monica Sheffo. MOTHERBOARD  Model: Intel BOXDZ77GA-70K Intel Extreme Motherboard  Supported Processors: 2 nd generation Intel Core.
Operated by Los Alamos National Security, LLC for the U.S. Department of Energy’s NNSA U N C L A S S I F I E D Lessons Learned: Certification and Accreditation.
Introduction A computer is a group of interdependent items that interact regularly to perform a task. A computer system refers to the hardware.
Objective  CEO of a small company  Create a small office network  $10,000 and $20,000 Budget  Three servers (workstations)  Firewall device  Switch.
Computer Design Julie Hiles. Motherboard  Model: Intel LGA155  Supported Processor’s: Celeron, Pentium, Intel 3rd generation core i3 processor, Intel.
October 29, 2009 From the Desktop to the Data Center Best Practices in Centralized Computing.
Computer Build Analysis Number 4.  Biostar G31M7TE Intel G31 Socket 775 Motherboard  Intel G31 Express  Socket 775  MicroATX  Audio  Video  PCI.
Computer Anatomy Chin-Sung Lin Eleanor Roosevelt High School.
Computer Build Analysis Number 2.  Gigabyte GA-H55M-S2H Motherboard  Intel H55  LGA1156  Micro ATX  Audio  Video  PCI Express 2.0  LAN  USB 2.0.
Raritan AV-over-IP Distribution System (RAV-IP) Cat5 and Fiber High Performance IP Video Easy to Install/Expand.
1 st Semester Introduction to Computer and Programming Computer Engineering Department Kasetsart University, Bangkok, THAILAND.
Agenda  Mother Board – P4M266  Types Of Mother Boards  Components - Processor - RAM - Cards - Ports and Slots - BIOS.
IP Surveillance Solution & Products Introduction
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 3: Computer Assembly IT Essentials 5.0.
Operated by Los Alamos National Security, LLC for the U.S. Department of Energy’s NNSA U N C L A S S I F I E D Slide 1 Sun Ray Deployment in a Scientific.
Computer Hardware & Processing Inside the Box CSC September 16, 2010.
COMPUTER  A programmable electronic device that can store, retrieve and process data.  An electronic machine that can be programmed to accept data (input),
By Harshal Ghule Guided by Mrs. Anita Mahajan G.H.Raisoni Institute Of Engineering And Technology.
Component 8/Unit 1bHealth IT Workforce Curriculum Version 1.0 Fall Installation and Maintenance of Health IT Systems Unit 1b Elements of a Typical.
Hardware Architecture
1062m0656 between 10692m2192 DS/ICI/CIF EqualLogic PS6510E
Computer Hardware Introduction What’s inside that box?
MOTHER BOARD PARTS BY BOGDAN LANGONE BACK PANEL CONNECTORS AND PORTS Back Panels= The back panel is the portion of the motherboard that allows.
This document contains information on a pre-launch desktop that is under NDA and is not yet available. Expected launch is: January 20, 2017.
Vostro 14/ technical specifications
Visualization & Collaboration
Computer Components.
Personal Computers A Research and Reverse Engineering
Virtualization OVERVIEW
Latest Configurations
CS111 Computer Programming
DELL ALIENWARE 15R2 ALIENWARE.
SYSTEM UNIT.
Unit 2: Computer Systems
Computer Selection - Hardware Components
Presentation transcript:

Operated by Los Alamos National Security, LLC for DOE/NNSA U N C L A S S I F I E D Medialess Computing: A LANL success story using multiple KVM technologies Brian Martinez Weapons Engineering Computer Support Team Departmental Computing Services(DCS-4) Los Alamos National Laboratory Brian Martinez Weapons Engineering Computer Support Team Departmental Computing Services(DCS-4) Los Alamos National Laboratory Slide 1 LA-UR

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 2 Objective Introduction into a KVM implementation at Los Alamos National Laboratory Security advantages – has been showcased to other agencies and Laboratories across the complex Focus on system architecture Tools developed for implementation

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Brian Martinez Bio 18 years of technology management and computing experience working with Los Alamos and Sandia National Laboratories. 12 years of experience working on classified computing systems and red networks, 7 of these years working directly with KVM technology. Instrumental on the planning, design, and implementation of the KVM infrastructure for the Weapons Engineering complex which now serves as a proven architecture for the institutional cyber security strategy Currently the Team Leader for the Weapons Engineering Computer Support Team at Los Alamos National Laboratory. His team currently supports the hardware, software and security support for over 1,100 weapons related customers. Brian and his team have received numerous LANL awards and outside recognition pertaining to the team’s secure classified implementations. Brian and his team are also certified in many different technologies that support the classified infrastructure at Los Alamos. Slide 3

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 4 Agenda Introduction to KVM Technology Weapons Engineering Computer Support Team Weapons Engineering Vault Configuration Questions

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 5 KVM (Keyboard Video and Mouse) Keyboard, Video and Mouse at a users desktop. Stands for the technologies which retain personal computing advantages, while centralizing administration and physical location. More Secure, cheaper to manage No desktop ACREM (Accountable Classified Removable Electronic Media) Central locations streamline physical support “Always on” enables effective remote system management

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 6 Technologies Different KVM technologies available and implemented Currently one size does not fit all High end Graphics Logical Solutions Point to Point High end Graphics ClearCube IP solution ClearCube Point to Point Solution Matrix Switch Solution

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 7 Weapons Systems Secure Computing Environment SRD(Secret Restricted Data) COMPUTING Remote Access SECURE PTS/Encrypted Approved Remote Access SECURE PTS/Encrypted Approved Office Secure Lock Box Users KVM Work Area (No Writable Media, NO USB) System w/HD (Access control Approved or Equivalent)

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 8 WECS Team Secure Computing Overview 789 KVM Units Implemented in WECS Support area Service provided to 1,166 classified users 100% of classified desktop/workstations on a Non-CREM (diskless) solution Machine controllers are the only machines left with a disk

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 9 Previous VTR Installation  This is one of the first KVM installations the Weapons Engineering Computing team installed.  We were only able to fit 16 systems per rack.  At the time this installation reduced the number of diskfull machines by 80.

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 10  Standard Weapon Systems Vault Configuration Current Weapons Engineering Vault

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 11  Using ClearCube Blade Technology we are able to support 80 blades per rack.  This rack installation also has 3 UPS(Uninterrupted Power Supply) units and 4 PDU’s(Power Distribution Units) ClearCube Rack Configuration (Front side)

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 12 ClearCube Rack Configuration (Back side)  ClearCube IP based Blade Solutions

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 13 Logical Solutions/Dell/HP Rack Configuration (front)  1u servers/Logical Solutions  16 users per Rack

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 14 Logical Solutions/Dell/HP Rack Configuration (Back) Approved PTS Wire Separation (Power separated from Video)

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 15 No Mass Storage Devices Technology used only enumerates human interface devices (HID) such as mouse and keyboard at the clients workstation. Physical hardware disablement through Jumper setting on motherboard. Software USB disablement and monitoring on all KVM machines.

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 16 1u Workstations Dell Workstations 1-U Dual core, dual 3.00 GHz processor, 4-8 gig RAM, High end Video — 32 bit and 64 bit Operating System HP DL140 G3 Dual Core, Dual core, dual 3.00 GHz processor, 4-8 gig RAM, High end Video — 32 bit and 64 bit Operating System Dell Workstations Precision 5400 Quad core, 3.00 GHz processor, 16 gig RAM, High end Video(1.5 GB PCIe graphics card. FX100 access card. — 64 bit XP Operating System

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 17 Point to Point KVM Logical Solutions VIS-24- Digital Fiber Optic Transceiver, receiver System — 1920X1200 Resolution (dual 24 inch LCD’s) — Up to 1,000 meters VIS-28- Digital Fiber Optic Transceiver, receiver System, Dual Link — 3840 X 2400 single link (single LCD) — Dual LCD’s available with 1920X1200 — Up to 1,000 meters

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 18 ClearCube Blades New -- Model R1300 Intel 945G chipset Single & Dual Core Pentium 4 Integrated Intel® GMA 950 Graphics Integrated Gigabit Ethernet port Secondary 10/100 Ethernet port 8 Blades fit into a single Cage USB 2.0 port on front and out back PCI Express Video Option – NVS285 w/ 128 MB VRAM New -- Model R2200 Intel E7525 chipset w/ 800 MHz FSB Dual Intel Xeon Processors with HT 1 MB and 2 MB L2 Cache Dual Gigabit Ethernet ports Dual SATA II Hard Drives with HW Raid 0, 1 4 Blades fit into a single Cage NVIDIA Quadro NVS 285 (128 MB VRAM) Graphics – PCI Express New -- Model 1350 Intel® Core™ 2 Duo processor 1 MB and 2 MB L2 Cache Dual Gigabit Ethernet ports SATA II Hard Drives 8 Blades fit into a single Cage Integrated Intel® GMA 950 graphics or optional NVIDIA Quadro NVS285 PCI- Express graphics card

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 19 Blade Infrastructure – Chassis & Connection Modules 112 PC Blades per 42U Rack Options: Admin Connect Module (I/Port/HPC) User Connect Module (Mainstream C/Port) 8x8 Connect Module (Specialty C/Port) One Option: Remote Management Module “Pass-thru” Options: 8 port Network Module 16 port Network Module Connect Bay Management Bay Network Bay Dual AC Input New -- R4300 Series

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D C7420 Digital fiber C/Port Slide 20  Specifications  Dimensions: 1.6 inches H × 9.5 inches W × 5.2 inches D  Operating System: None  Fiber Type: 62.5 μm or 50 μm fiber  Distance: Up to 2,000 meters direct connect (3000 miles over IP network)  Video: Supports 1 or 2 monitors at 32 bit color depth and up to 60 Hz  Connections: 4 USB ports (2 on front and 2 on back)  2 DVI-I digital video ports  HD Audio Out and Audio In

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 21 Key New Features Combines previous generation tools into a single integrated console (5 th generation) Enterprise Scalability: Powerful Views and Dashboard let admins “slice and dice” their environments Remote Browser-based access and User Roaming Support for virtual machines Modular architecture supports “plug-in” software modules for added functionality (Switching Module and Dynamic Allocation Module) English and Japanese Localization Software

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 22 WECS TEAM KVM Visitors Livermore National Laboratory Sandia National Laboratory Department of Energy; LA, Abq., DC Pantex Savannah River Nevada Test Site University of California Congressional Members Many Divisions in the Laboratory Acting NNSA Administrator Department of Energy Chief of Staff

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 23 KVM KVM technology has proven to be a secure and cost effective solution to the “ACREM” issue Technology continues to evolve LANL continues to evaluate improvements and development in media- less technologies

Operated by Los Alamos National Security, LLC for NNSA U N C L A S S I F I E D Slide 24 Contact Information Brian Martinez CTN-3 Los Alamos National Laboratory Phone