Download presentation
Presentation is loading. Please wait.
Published byNickolas Lawson Modified over 9 years ago
1
All Hands Meeting 2005 BIRN Portal Architecture: Security Jana Nguyen jnguyen@ncmir.ucsd.edu
2
Current BIRN Portal Architecture Based on Perl Limited extensibility Not easy to setup distributed collaborative environment development
3
How can BIRN portal benefit from GridSphere? With portlets easy to extend Modular development model Built-in features including user management, role based access control Supports credential management Interfaces to on-line credential repositories Community development of portlets, e.g. gridportlets, GAMA (GEON/Telescience/BIRN) Credential management provides distributed development environment
4
BIRN Portal Architecture Portal server 2 BIRN Portal server retrieve credential DB gridportlets gama GridSphere Servlet container projectportlets siteportlets Grid Account Management Architecture (GAMA) server gridportlets
5
Account Management Goals Currently centralized user management Done through BIRN CC Move to distributed Registration Authority (RA’s) Local site to add, modify and delete its users Why we need RA’s? Avoid bottleneck Local sites know their users Improves auditing Local sites have control of their users
6
Site Registration Site Registration & Management Site tracking system Require approval
7
Site Management
8
Portal Security Why GAMA? Complete GSI credential management system Dedicated security server Portlets for handling accounts Releases 3.0 – Accounts approved as in current Portal 4.0 – Distributed RA’s
9
Online Credential Repository Myproxy Online Credential Repository Component of GAMA Stores credentials securely online Credentials available at anytime or anywhere
10
Myproxy usability
11
Portal Security / GAMA Architecture Portal server 2 GAMA server CA MyProxy AXIS Web Services wrapper …. Servlet container import user retrieve credential Stand-alone applications retrieve credential DB BIRN Portal Java keystore Servlet container create user Java keystore
12
Storage Resource Broker (SRB) Portlets SRB Portlets Adapted from Telescience Provides a uniform interface Auditing: Logs, read, and writes
13
What has been done? Setup Gridsphere and GAMA Hibernate mapping to Postgres database persists gridsphere and GAMA data Data Migration Users won’t need to apply for new accounts Site Registration and Project Management Portlets developed
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.