Grid Tech Team Certificates, Monitoring, & Firewall September 15, 2003 Chiang Mai, Thailand Allan Doyle, NASA With the help of the entire Grid Tech Team.

Slides:



Advertisements
Similar presentations
DATE: 2008/03/11 NCHC-Grid Computing Portal (NCHC-GCE Portal) Project Manager: Dr. Weicheng Huang Developed Team: Chien-Lin Eric Huang Chien-Heng Gary.
Advertisements

Demonstrations at PRAGMA demos are nominated by WG chairs Did not call for demos. We will select the best demo(s) Criteria is under discussion. Notes.
EGEE-II INFSO-RI Enabling Grids for E-sciencE EGEE and gLite are registered trademarks MyProxy and EGEE Ludek Matyska and Daniel.
The Community Authorization Service: Status and Future Ian Foster 1,2, Carl Kesselman 3, Laura Pearlman 3, Steven Tuecke 1, Von Welch 2 1 Argonne National.
MyProxy Jim Basney Senior Research Scientist NCSA
© 2007 Open Grid Forum Data Management Challenge - The View from OGF OGF22 – February 28, 2008 Cambridge, MA, USA Erwin Laure David E. Martin Data Area.
Workflow + Globus Toolkit Update September 8, 2004 Allan Doyle, NASA
Overview of China Spatial Information Gird (SIG) Research Works Presentation to WGISS-16 Chiang Mai, Thailand September 15, 2003 Pro. Liu Dingsheng, Dr.
CEOS WGISS & Subgroup Meeting Beijing, September, CEOS WGISS Technology & Services Subgroup Overview Wyn Cudlip British National Space Centre/QinetiQ.
18 Copyright © 2005, Oracle. All rights reserved. Distributing Modular Applications: Introduction to Web Services.
1 Copyright © 2005, Oracle. All rights reserved. Introducing the Java and Oracle Platforms.
Grid Initiatives for e-Science virtual communities in Europe and Latin America The VRC-driven GISELA Science Gateway Diego Scardaci.
Addition Facts
GridPP July 2003Stefan StonjekSlide 1 SAM middleware components Stefan Stonjek University of Oxford 7 th GridPP Meeting 02 nd July 2003 Oxford.
The National Grid Service Mike Mineter.
NGS computation services: API's,
The National Grid Service and OGSA-DAI Mike Mineter
Eldas 1.0 Enterprise Level Data Access Services Design Issues, Implementation and Future Development Davy Virdee.
Current status of grids: the need for standards Mike Mineter TOE-NeSC, Edinburgh.
18 April 2002 e-Science Architectural Roadmap Open Meeting 1 Support for the UK e-Science Roadmap David Boyd UK Grid Support Centre CLRC e-Science Centre.
OMII-UK Steven Newhouse, Director. © 2 OMII-UK aims to provide software and support to enable a sustained future for the UK e-Science community and its.
Andrew McNab - Manchester HEP - 22 April 2002 EU DataGrid Testbed EU DataGrid Software releases Testbed 1 Job Lifecycle Authorisation at your site More.
Software change management
The importance of the service catalogue to the service desk
Data Management Expert Panel - WP2. WP2 Overview.
Database System Concepts and Architecture
ArrayExpress Query Interface Gonzalo Garc í a Lara January, / 24.
Addition 1’s to 20.
CALIFORNIA DEPARTMENT OF EDUCATION Tom Torlakson, State Superintendent of Public Instruction March 22, 2012 Jose Ortega Rodney Okamoto SMARTER Balanced.
Week 1.
Andrew McNab - EDG Access Control - 14 Jan 2003 EU DataGrid security with GSI and Globus Andrew McNab University of Manchester
The Community Authorisation Service – CAS Dr Steven Newhouse Technical Director London e-Science Centre Department of Computing, Imperial College London.
MTA SZTAKI Hungarian Academy of Sciences Grid Computing Course Porto, January Introduction to Grid portals Gergely Sipos
Seminar Grid Computing ‘05 Hui Li Sep 19, Overview Brief Introduction Presentations Projects Remarks.
Globus Toolkit 4 hands-on Gergely Sipos, Gábor Kecskeméti MTA SZTAKI
1-2.1 Grid computing infrastructure software Brief introduction to Globus © 2010 B. Wilkinson/Clayton Ferner. Spring 2010 Grid computing course. Modification.
Data Grids: Globus vs SRB. Maturity SRB  Older code base  Widely accepted across multiple communities  Core components are tightly integrated Globus.
DataGrid Kimmo Soikkeli Ilkka Sormunen. What is DataGrid? DataGrid is a project that aims to enable access to geographically distributed computing power.
Globus Computing Infrustructure Software Globus Toolkit 11-2.
Kate Keahey Argonne National Laboratory University of Chicago Globus Toolkit® 4: from common Grid protocols to virtualization.
Commodity Grid (CoG) Kits Keith Jackson, Lawrence Berkeley National Laboratory Gregor von Laszewski, Argonne National Laboratory.
National Computational Science National Center for Supercomputing Applications National Computational Science MyProxy: An Online Credential Repository.
CoG Kit Overview Gregor von Laszewski Keith Jackson.
GT Components. Globus Toolkit A “toolkit” of services and packages for creating the basic grid computing infrastructure Higher level tools added to this.
Grids and Portals for VLAB Marlon Pierce Community Grids Lab Indiana University.
CEOS Grid Task Team Yonsook Enloe September 2004.
National Computational Science National Center for Supercomputing Applications National Computational Science NCSA-IPG Collaboration Projects Overview.
CEOS Grid Task Team Yonsook Enloe, Allan Doyle, Ananth Rao March 8, 2005.
NA-MIC National Alliance for Medical Image Computing UCSD: Engineering Core 2 Portal and Grid Infrastructure.
The new European Toolkit EC-CHM Miruna Bădescu EEA contractor: Eau de Web.
Grid Security: Authentication Most Grids rely on a Public Key Infrastructure system for issuing credentials. Users are issued long term public and private.
EGEE-II INFSO-RI Enabling Grids for E-sciencE The GILDA training infrastructure.
The MyProxy Online Credential Repository Jim Basney NCSA
US LHC OSG Technology Roadmap May 4-5th, 2005 Welcome. Thank you to Deirdre for the arrangements.
Cole David Ronnie Julio. Introduction Globus is A community of users and developers who collaborate on the use and development of open source software,
The National Grid Service Mike Mineter.
DGC Paris WP2 Summary of Discussions and Plans Peter Z. Kunszt And the WP2 team.
Introduction to Grids By: Fetahi Z. Wuhib [CSD2004-Team19]
WEB SERVER SOFTWARE FEATURE SETS
1 AHM, 2–4 Sept 2003 e-Science Centre GRID Authorization Framework for CCLRC Data Portal Ananta Manandhar.
USGS GRID Exploratory Status Review Stuart Doescher Mike Neiers USGS/EDC May
Status of Globus activities Massimo Sgaravatto INFN Padova for the INFN Globus group
The National Grid Service Mike Mineter.
The GRIDS Center, part of the NSF Middleware Initiative Grid Security Overview presented by Von Welch National Center for Supercomputing.
DataGrid is a project funded by the European Commission EDG Conference, Heidelberg, Sep 26 – Oct under contract IST OGSI and GT3 Initial.
ACGT Architecture and Grid Infrastructure Juliusz Pukacki ‏ EGEE Conference Budapest, 4 October 2007.
The EPIKH Project (Exchange Programme to advance e-Infrastructure Know-How) gLite Grid Introduction Salma Saber Electronic.
Stephen Pickles Technical Director, GOSC
Creating and running applications on the NGS
Report on GLUE activities 5th EU-DataGRID Conference
Presentation transcript:

Grid Tech Team Certificates, Monitoring, & Firewall September 15, 2003 Chiang Mai, Thailand Allan Doyle, NASA With the help of the entire Grid Tech Team

September 15, 2003 Grid Tech Team 2 Certificates

September 15, 2003 Grid Tech Team 3 Virtual Organization Definition Grid Virtual Organization (VO) –Set of resources (computers, storage systems) –Distributed among participating organizations –Available for use by a group of users –Is defined by the grouping of resources plus the grouping of individuals, brought together for a common purpose under mutually acceptable governing rules.

September 15, 2003 Grid Tech Team 4 Organizations, Resources, Users, and Virtual Organizations S C Storage Resource Compute Resource S S S S C C C C C C C C C C C S S S S S S Org A Org B Org C VO X VO Y U2U2 U1U1

September 15, 2003 Grid Tech Team 5 Creating a VO Hosts and users must obtain certificates Users are then granted access to hosts (by the owners of the hosts). The set of users coupled with the set of hosts they are allowed onto is what defines the VO S C Storage Resource Compute Resource S S S S C C C C C C C C C C C S S S S S S OAOA OBOB OCOC VO X VO Y U2U2 U1U1

September 15, 2003 Grid Tech Team 6 CEOS Grid USGS EDC NOAA NOMADS UAH GMU ESA ESRIN Test-SGT Test-II NASA ADG CNES Colors Blue - CEOS Certificates Green - DataGrid Certificates Black - TBD Colors Blue - CEOS Certificates Green - DataGrid Certificates Black - TBD

September 15, 2003 Grid Tech Team 7 CEOS Grid - CAs CEOS Grid Users will not all have the same CA We want to limit the number of CAs to the smallest possible set. –Makes management easier –Makes policy decisions easier European users already have a high-quality operational CA US Users are encouraged to obtain certificates from NASA IPG

September 15, 2003 Grid Tech Team 8 CEOS Certificates from NASA IPG NASA Information Power Grid (IPG) already runs a high-quality CA that is accepted by most VOs. NASA IPG is providing CA resources for the CEOS Grid. Current status –Certificate request software has been delivered & tested. –Operating well at 2 test sites (II, SGT) and at GMU. –Others are encouraged to try it out. Availability Username ceos-grid, password grid-tech –Small tar file & quick installation instructions

September 15, 2003 Grid Tech Team 9 Monitoring

September 15, 2003 Grid Tech Team 10 Network Monitoring

September 15, 2003 Grid Tech Team 11 Grid Tools Monitoring

September 15, 2003 Grid Tech Team 12 Firewall

September 15, 2003 Grid Tech Team 13 General Firewall Issues Using the Grid means that you have to make new services accessible to the internet –System administrators and security people will be uncomfortable with this –Some sites have different policies, some are set up to allow experimentation outside the firewall What you can do 1. Familiarity - install & test on a machine outside the firewall, learn about the Grid 2. Provide information about security issues to people who need it 3. Develop a relationship with the people you depend on for access

September 15, 2003 Grid Tech Team 14 Firewall Tech Team has put together a firewall document Contents –Introductory material CEOS Grid overview; Quick primer on Grids; Globus port numbers –Site specific sections Meant to be filled in by each site with anything you learned that might help someone else –Product specific info Currently only one - Cisco instructions –Miscellaneous Open Questions; References; To Do

September 15, 2003 Grid Tech Team 15 CEOS Grid Toolkit

September 15, 2003 Grid Tech Team 16 CEOS Grid Components Baseline (Core) –Globus with latest bug-fix packages - see advisories page at: –Grid Packaging Toolkit (GPT) –IPG Certificate Authority Package –EU Data Grid 2.0 (being used by ESA) Globus 2.4 Other Dependent Packages –Java Community Grid Kit (Java CoG) 1.1 –Other COGs (Perl/Python)

September 15, 2003 Grid Tech Team 17 Globus Advisories* GridFTP Server 1.9 Gram Job Manager 3.13 Gram Client Tools 3.6 GSI Sysconfig 0.10 Globus Common 3.14 LDAP Modules 0.12 GSI Credential 0.9 GSI Cert. Utils 0.12 GSI Proxy Core 0.8 GSI Proxy Utils 0.9 FTP Control 1.9 *As of 8/11/2003

September 15, 2003 Grid Tech Team 18 Grid Components were Tracking Globus 3.0 Metadata Catalog Service (MCS) (Current version as of 8/11/03) –Open Grid Services Architecture – Data Access & Integration (OGSA DAI –Community Authorization Service (CAS) Alpha R2 Release OGSA DAI 3.0 –Ported version of MCS – planned MCS with Spatial Query capabilities – planned Storage Resource Broker/Metadata Catalog (SRB/MCAT) V –Globus Grid Security Infrastructure (GSI)

September 15, 2003 Grid Tech Team 19 CEOS Grid Toolkit WGISS participants are developing higher-level tools & components GMU –OGC WCS with GridFTP back end –OGC WCS with Grid front end –OGC Catalog wrapper on Grid MCS –Reprojection service, 13 NASA EOS projections ESA –Grid Engine - multi-Grid job management –Web Notification - Grid-to-Web events –Grid Portal - Web control of Grid applications –Reprojection Service

September 15, 2003 Grid Tech Team 20 CEOS Grid Toolkit Catalog We need to put some thought into how we want to describe the components. Possible metadata elements (thanks to Stu Doescher) : –short name –long name –summary description –pointer to additional discussion –latest version and date –maturity - new, obsolete –other parts needed –recommendations –Contact points supported and by who used by –Technical parts Language how to install problems

September 15, 2003 Grid Tech Team 21