Presentation is loading. Please wait.

Presentation is loading. Please wait.

All Hands Meeting 2005 BIRN Portal Architecture: Security Jana Nguyen

Similar presentations


Presentation on theme: "All Hands Meeting 2005 BIRN Portal Architecture: Security Jana Nguyen"— Presentation transcript:

1 All Hands Meeting 2005 BIRN Portal Architecture: Security Jana Nguyen jnguyen@ncmir.ucsd.edu

2 Current BIRN Portal Architecture  Based on Perl  Limited extensibility  Not easy to setup distributed collaborative environment development

3 How can BIRN portal benefit from GridSphere?  With portlets easy to extend  Modular development model  Built-in features including user management, role based access control  Supports credential management Interfaces to on-line credential repositories  Community development of portlets, e.g. gridportlets, GAMA (GEON/Telescience/BIRN)  Credential management provides distributed development environment

4 BIRN Portal Architecture Portal server 2 BIRN Portal server retrieve credential DB gridportlets gama GridSphere Servlet container projectportlets siteportlets Grid Account Management Architecture (GAMA) server gridportlets

5 Account Management Goals  Currently centralized user management Done through BIRN CC  Move to distributed Registration Authority (RA’s) Local site to add, modify and delete its users  Why we need RA’s? Avoid bottleneck Local sites know their users Improves auditing Local sites have control of their users

6 Site Registration  Site Registration & Management Site tracking system Require approval

7 Site Management

8 Portal Security  Why GAMA? Complete GSI credential management system Dedicated security server Portlets for handling accounts  Releases 3.0 – Accounts approved as in current Portal 4.0 – Distributed RA’s

9 Online Credential Repository  Myproxy Online Credential Repository  Component of GAMA  Stores credentials securely online  Credentials available at anytime or anywhere

10 Myproxy usability

11 Portal Security / GAMA Architecture Portal server 2 GAMA server CA MyProxy AXIS Web Services wrapper …. Servlet container import user retrieve credential Stand-alone applications retrieve credential DB BIRN Portal Java keystore Servlet container create user Java keystore

12 Storage Resource Broker (SRB) Portlets  SRB Portlets Adapted from Telescience Provides a uniform interface Auditing: Logs, read, and writes

13 What has been done?  Setup Gridsphere and GAMA Hibernate mapping to Postgres database persists gridsphere and GAMA data  Data Migration Users won’t need to apply for new accounts  Site Registration and Project Management Portlets developed


Download ppt "All Hands Meeting 2005 BIRN Portal Architecture: Security Jana Nguyen"

Similar presentations


Ads by Google