Michael Fenn CPSC 620, Fall 09.  Grid computing is the process of allowing loosely-coupled virtual organizations to share resources over a wide area.

Slides:



Advertisements
Similar presentations
Introduction of Grid Security
Advertisements

The National Grid Service and OGSA-DAI Mike Mineter
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI AAI in EGI Status and Evolution Peter Solagna Senior Operations Manager
EGEE-II INFSO-RI Enabling Grids for E-sciencE The gLite middleware distribution OSG Consortium Meeting Seattle,
FP7-INFRA Enabling Grids for E-sciencE EGEE Induction Grid training for users, Institute of Physics Belgrade, Serbia Sep. 19, 2008.
Role Based VO Authorization Services Ian Fisk Gabriele Carcassi July 20, 2005.
Middleware technology and software quality issues Andrew McNab Grid Security Research Fellow University of Manchester.
Plateforme de Calcul pour les Sciences du Vivant SRB & gLite V. Breton.
Security Q&A OSG Site Administrators workshop Indianapolis August Doug Olson LBNL.
Campus High Throughput Computing (HTC) Infrastructures (aka Campus Grids) Dan Fraser OSG Production Coordinator Campus Grids Lead.
May 9, 2008 Reorganization of the OSG Project The existing project organization chart was put in place at the beginning of It has worked very well.
The Community Authorisation Service – CAS Dr Steven Newhouse Technical Director London e-Science Centre Department of Computing, Imperial College London.
1 Software & Grid Middleware for Tier 2 Centers Rob Gardner Indiana University DOE/NSF Review of U.S. ATLAS and CMS Computing Projects Brookhaven National.
CoreGRID Workpackage 5 Virtual Institute on Grid Information and Monitoring Services Authorizing Grid Resource Access and Consumption Erik Elmroth, Michał.
Open Science Grid Use of PKI: Wishing it was easy A brief and incomplete introduction. Doug Olson, LBNL PKI Workshop, NIST 5 April 2006.
Workload Management Workpackage Massimo Sgaravatto INFN Padova.
Open Science Grid Frank Würthwein UCSD. 2/13/2006 GGF 2 “Airplane view” of the OSG  High Throughput Computing — Opportunistic scavenging on cheap hardware.
A Model for Grid User Management Rich Baker Dantong Yu Tomasz Wlodek Brookhaven National Lab.
Computing and Data Infrastructure for Large-Scale Science Deploying Production Grids: NASA’s IPG and DOE’s Science Grid William E. Johnston
AustrianGrid, LCG & more Reinhard Bischof HPC-Seminar April 8 th 2005.
Sergey Belov, LIT JINR 15 September, NEC’2011, Varna, Bulgaria.
Grid Services at NERSC Shreyas Cholia Open Software and Programming Group, NERSC NERSC User Group Meeting September 17, 2007.
Joining the Grid Andrew McNab. 28 March 2006Andrew McNab – Joining the Grid Outline ● LCG – the grid you're joining ● Related projects ● Getting a certificate.
OSG End User Tools Overview OSG Grid school – March 19, 2009 Marco Mambelli - University of Chicago A brief summary about the system.
Open Science Grid For CI-Days Internet2: Fall Member Meeting, 2007 John McGee – OSG Engagement Manager Renaissance Computing Institute.
OSG Site Provide one or more of the following capabilities: – access to local computational resources using a batch queue – interactive access to local.
OSG Middleware Roadmap Rob Gardner University of Chicago OSG / EGEE Operations Workshop CERN June 19-20, 2006.
INFSO-RI Enabling Grids for E-sciencE The US Federation Miron Livny Computer Sciences Department University of Wisconsin – Madison.
Publication and Protection of Site Sensitive Information in Grids Shreyas Cholia NERSC Division, Lawrence Berkeley Lab Open Source Grid.
Open Science Grid For CI-Days Elizabeth City State University Jan-2008 John McGee – OSG Engagement Manager Manager, Cyberinfrastructure.
May 8, 20071/15 VO Services Project – Status Report Gabriele Garzoglio VO Services Project – Status Report Overview and Plans May 8, 2007 Computing Division,
Grid Security 1. Grid security is a crucial component Need for secure communication between grid elements  Authenticated ( verify entities are who they.
CERN IT Department CH-1211 Genève 23 Switzerland t Internet Services Job Monitoring for the LHC experiments Irina Sidorova (CERN, JINR) on.
G RID M IDDLEWARE AND S ECURITY Suchandra Thapa Computation Institute University of Chicago.
Grid Technologies  Slide text. What is Grid?  The World Wide Web provides seamless access to information that is stored in many millions of different.
Use of Condor on the Open Science Grid Chris Green, OSG User Group / FNAL Condor Week, April
1 OSG Accounting Service Requirements Matteo Melani SLAC for the OSG Accounting Activity.
Evolution of the Open Science Grid Authentication Model Kevin Hill Fermilab OSG Security Team.
The Anatomy of the Grid Mahdi Hamzeh Fall 2005 Class Presentation for the Parallel Processing Course. All figures and data are copyrights of their respective.
Tools for collaboration How to share your duck tales…
Grid Computing & Semantic Web. Grid Computing Proposed with the idea of electric power grid; Aims at integrating large-scale (global scale) computing.
GRID ARCHITECTURE Chintan O.Patel. CS 551 Fall 2002 Workshop 1 Software Architectures 2 What is Grid ? "...a flexible, secure, coordinated resource- sharing.
User Management: Authentication & Authorization on the NorduGrid Balázs Kónya, AndersWäänänen 3 rd NorduGrid Workshop, 23 May, 2002 Helsinki.
Role Based VO Authorization Services Ian Fisk Gabriele Carcassi July 20, 2005.
US LHC OSG Technology Roadmap May 4-5th, 2005 Welcome. Thank you to Deirdre for the arrangements.
Campus grids: e-Infrastructure within a University Mike Mineter National e-Science Centre 14 February 2006.
Next Steps.
6/23/2005 R. GARDNER OSG Baseline Services 1 OSG Baseline Services In my talk I’d like to discuss two questions:  What capabilities are we aiming for.
VO Privilege Activity. The VO Privilege Project develops and implements fine-grained authorization to grid- enabled resources and services Started Spring.
Glite. Architecture Applications have access both to Higher-level Grid Services and to Foundation Grid Middleware Higher-Level Grid Services are supposed.
Internet2 AdvCollab Apps 1 Access Grid Vision To create virtual spaces where distributed people can work together. Challenges:
Rutherford Appleton Lab, UK VOBox Considerations from GridPP. GridPP DTeam Meeting. Wed Sep 13 th 2005.
The OSG and Grid Operations Center Rob Quick Open Science Grid Operations Center - Indiana University ATLAS Tier 2-Tier 3 Meeting Bloomington, Indiana.
Globus and PlanetLab Resource Management Solutions Compared M. Ripeanu, M. Bowman, J. Chase, I. Foster, M. Milenkovic Presented by Dionysis Logothetis.
DTI Mission – 29 June LCG Security Ian Neilson LCG Security Officer Grid Deployment Group CERN.
OSG Site Admin Workshop - Mar 2008Using gLExec to improve security1 OSG Site Administrators Workshop Using gLExec to improve security of Grid jobs by Alain.
WLCG Authentication & Authorisation LHCOPN/LHCONE Rome, 29 April 2014 David Kelsey STFC/RAL.
OSG Deployment Preparations Status Dane Skow OSG Council Meeting May 3, 2005 Madison, WI.
© Copyright AARNet Pty Ltd PRAGMA Update & some personal observations James Sankar Network Engineer - Middleware.
The National Grid Service Mike Mineter.
The Globus Toolkit The Globus project was started by Ian Foster and Carl Kesselman from Argonne National Labs and USC respectively. The Globus toolkit.
OSG Status and Rob Gardner University of Chicago US ATLAS Tier2 Meeting Harvard University, August 17-18, 2006.
Defining the Technical Roadmap for the NWICG – OSG Ruth Pordes Fermilab.
Why you should care about glexec OSG Site Administrator’s Meeting Written by Igor Sfiligoi Presented by Alain Roy Hint: It’s about security.
Grid Colombia Workshop with OSG Week 2 Startup Rob Gardner University of Chicago October 26, 2009.
Accessing the VI-SEEM infrastructure
StratusLab First Periodic Review
Grid Computing B.Ramamurthy 9/22/2018 B.Ramamurthy.
From Prototype to Production Grid
Presentation transcript:

Michael Fenn CPSC 620, Fall 09

 Grid computing is the process of allowing loosely-coupled virtual organizations to share resources over a wide area network.  What does this mean? ◦ I’m at Prestigious University ◦ I have some jobs ◦ I want to run them ◦ Well-known State University has idling computers ◦ Grid computing lets me get my jobs there  (Foster, Kesselman and Tuecke, The Anatomy of the Grid: Enabling Scalable Virtual Organzations 2001)

 My usage is bursty ◦ Big paper deadline ◦ End of semester ◦ Etc.  Their usage is bursty  Our bursts don’t coincide  Let’s share  (Armbrust, et al. 2009)

 Many grids, let’s pick one  2 realities ◦ Loosely federated Virtual Organizations (VOs) ◦ Loosely federated sites  2 elements of security ◦ Public Key Infrastructure (PKI) ◦ Web of trust model

 A group of users who share a “common interest” ◦ Definition of “common interest” is flexible  Examples: ◦ High-energy physicists: ATLAS, STAR, CMS, Alice ◦ Bioinformatics: CompBioGrid ◦ Nanotechnology: Nanohub ◦ Just learning: Engagement, OSG-EDU

 Sites are collections of resources  Compute Elements ◦ Globus gatekeeper for authentication ◦ Batch scheduler (PBS, Condor) for getting jobs to compute nodes ◦ Monitoring and accounting to keep the higher-ups happy  Storage Elements ◦ Storage Resource Manager (SRM) for authentication ◦ Big bit bucket for storage ◦ Monitoring and accounting here too

 Public-key infrastructure  Users are affiliated with VOs  VOs issue certificates  Sites trust certificates issued by particular VOs  Confidentiality and Integrity are maintained

 Sites choose which VOs to trust  Resources also have certificates ◦ Users can be confident that the resource is what it claims to be  Sites generally trust the VO that issued their cert ◦ This is not required however!

 3 main types:  VO-User trust ◦ VOs establish criteria for membership  Site-VO trust ◦ Factors in deciding whom to trust  VO requirements  Trust reciprocity  OSG-VO trust ◦ OSG maintains a list of trusted VOs ◦ Trusted VOs have their CA certificates included in the OSG software distribution

 Users have been “accredited” by a VO  If things do go wrong, I have his cert ◦ I know his name ◦ I know who vouched for him  VOs have incentive to maintain well-behaved membership

 OSG runs securely due to: ◦ PKI ◦ Web of trust  Flexible and scalable ◦ I don’t have to make a UNIX user account for everybody  Users are still accountable

 Thank you for listening!