Gonçalo Borges, Mário David, Jorge Gomes

Slides:



Advertisements
Similar presentations
Introduction of Grid Security
Advertisements

GT 4 Security Goals & Plans Sam Meder
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI AAI in EGI Status and Evolution Peter Solagna Senior Operations Manager
High Performance Computing Course Notes Grid Computing.
Holding slide prior to starting show. Supporting Collaborative Working of Construction Industry Consortia via the Grid - P. Burnap, L. Joita, J.S. Pahwa,
Military Technical Academy Bucharest, 2006 SECURITY FOR GRID INFRASTRUCTURES - Grid Trust Model - ADINA RIPOSAN Department of Applied Informatics.
Introduction and Overview “the grid” – a proposed distributed computing infrastructure for advanced science and engineering. Purpose: grid concept is motivated.
The LHC Computing Grid – February 2008 The Worldwide LHC Computing Grid Dr Ian Bird LCG Project Leader 15 th April 2009 Visit of Spanish Royal Academy.
1-2.1 Grid computing infrastructure software Brief introduction to Globus © 2010 B. Wilkinson/Clayton Ferner. Spring 2010 Grid computing course. Modification.
Grids and Grid Technologies for Wide-Area Distributed Computing Mark Baker, Rajkumar Buyya and Domenico Laforenza.
Enabling Grids for E-sciencE Grid Computing Back to basics: the concept, the model, the infrastructure… Gonçalo Borges, Mário David, Jorge.
Globus Computing Infrustructure Software Globus Toolkit 11-2.
Grid Security Issues Shelestov Andrii Space Research Institute NASU-NSAU, Ukraine.
Grid-based Sensor Network Service on Future Internet By Mohammad Mehedi Hassan Student ID:
Chapter 23 Internet Authentication Applications Kerberos Overview Initially developed at MIT Software utility available in both the public domain and.
L ABORATÓRIO DE INSTRUMENTAÇÃO EM FÍSICA EXPERIMENTAL DE PARTÍCULAS Enabling Grids for E-sciencE Grid Computing: Running your Jobs around the World.
Grid Technologies  Slide text. What is Grid?  The World Wide Web provides seamless access to information that is stored in many millions of different.
Grid Basics Adarsh Patil
Middleware Support for Virtual Organizations Internet 2 Fall 2006 Member Meeting Chicago, Illinois Stephen Langella Department of.
INFSO-RI Enabling Grids for E-sciencE Sofia, 22 March 2007 Security, Authentication and Authorisation Mike Mineter Training, Outreach.
The Grid System Design Liu Xiangrui Beijing Institute of Technology.
1 4/23/2007 Introduction to Grid computing Sunil Avutu Graduate Student Dept.of Computer Science.
Security, Authorisation and Authentication.
Grid Middleware Tutorial / Grid Technologies IntroSlide 1 /14 Grid Technologies Intro Ivan Degtyarenko ivan.degtyarenko dog csc dot fi CSC – The Finnish.
GRID ARCHITECTURE Chintan O.Patel. CS 551 Fall 2002 Workshop 1 Software Architectures 2 What is Grid ? "...a flexible, secure, coordinated resource- sharing.
EGEE-II INFSO-RI Enabling Grids for E-sciencE The GILDA training infrastructure.
GRID Overview Internet2 Member Meeting Spring 2003 Sandra Redman Information Technology and Systems Center and Information Technology Research Center National.
Scalable Grid system– VDHA_Grid: an e-Science Grid with virtual and dynamic hierarchical architecture Huang Lican College of Computer.
US LHC OSG Technology Roadmap May 4-5th, 2005 Welcome. Thank you to Deirdre for the arrangements.
Introduction to Grids By: Fetahi Z. Wuhib [CSD2004-Team19]
INFSO-RI Enabling Grids for E-sciencE EGEE is a project funded by the European Union under contract INFSO-RI Grid Accounting.
Grid technology Security issues Andrey Nifatov A hacker.
7. Grid Computing Systems and Resource Management
Globus and PlanetLab Resource Management Solutions Compared M. Ripeanu, M. Bowman, J. Chase, I. Foster, M. Milenkovic Presented by Dionysis Logothetis.
DTI Mission – 29 June LCG Security Ian Neilson LCG Security Officer Grid Deployment Group CERN.
Grid Computing Unit I Introduction. Information anytime anywhere!!! support computation across administrative domains Generally  virtualizing computing.
GRID ANATOMY Advanced Computing Concepts – Dr. Emmanuel Pilli.
Security Policy Update WLCG GDB CERN, 14 May 2008 David Kelsey STFC/RAL
WLCG Authentication & Authorisation LHCOPN/LHCONE Rome, 29 April 2014 David Kelsey STFC/RAL.
EGEE-II INFSO-RI Enabling Grids for E-sciencE Authentication, Authorisation and Security Mike Mineter, National e-Science Centre.
EGEE-II INFSO-RI Enabling Grids for E-sciencE Authentication, Authorisation and Security Emidio Giorgio INFN Catania.
Windows Active Directory – What is it? Definition - Active Directory is a centralized and standardized system that automates network management of user.
The EPIKH Project (Exchange Programme to advance e-Infrastructure Know-How) gLite Grid Introduction Salma Saber Electronic.
INFSO-RI Enabling Grids for E-sciencE Sofia, 17 March 2009 Security, Authentication and Authorisation Mike Mineter Training, Outreach.
Enabling Grids for E-sciencE Claudio Cherubino INFN DGAS (Distributed Grid Accounting System)
GridMaGrid Users & Applications Conclusions 16/ Grid activities in Morocco Abderrahman El Kharrim CNRST - MaGrid Team Morocco Grid Workshop - Rabat,
Accessing the VI-SEEM infrastructure
Grid Computing: Running your Jobs around the World
Clouds , Grids and Clusters
Grid Computing Unit I Introduction.
Grid Security.
Cryptography and Network Security
Ian Bird GDB Meeting CERN 9 September 2003
HellasGrid CA & euGridPMA
EGEE VO Management.
Carlos Morais Pires European Commission Information Society and Media
Grid Computing.
THE STEPS TO MANAGE THE GRID
Public Key Infrastructure (PKI)
GSAF Grid Storage Access Framework
GRID COMPUTING PRESENTED BY : Richa Chaudhary.
Grid Computing B.Ramamurthy 9/22/2018 B.Ramamurthy.
IS4550 Security Policies and Implementation
The New Virtual Organization Membership Service (VOMS)
Message Digest Cryptographic checksum One-way function Relevance
Grid Security M. Jouvin / C. Loomis (LAL-Orsay)
The Anatomy and The Physiology of the Grid
The Anatomy and The Physiology of the Grid
Grid Computing Software Interface
Presentation transcript:

Gonçalo Borges, Mário David, Jorge Gomes Grid Computing Back to basics: the concept, the model, the infrastructure… EGEE & Int.EU.Grid Tutorial Lisbon, 12th Decemberr 2007 Gonçalo Borges, Mário David, Jorge Gomes LIP Lisboa

1. Concepts and Definitions goncalo@lip.pt Grid Computing – Grid Tutorial 2

What is the GRID? GRID computing is a recent concept which takes distributing computing a step forward The name GRID is chosen by analogy with the electric power grid: Transparent: plug-in to obtain computing power without worrying where it comes from Permanent and available everywhere The World Wide Web provides seamless access to information that is stored in many millions of different geographical locations In contrast, the GRID is a new computing infrastructure which provides seamless access to computing power and data storage distributed all over the globe goncalo@lip.pt Grid Computing – Grid Tutorial 3

GRID vs Distributed Computing Distributed infrastructures already exist, but… they normally tend to be local & specialized systems: Intended for a single purpose or user group Restricted to a limit number of users Do not allow coherent interactions with resources from other institutions The GRID goes further and takes into account: Different kinds of resources: Not always the same hardware, data, applications and admin. policies Different kinds of interactions: User groups or applications want to interact with Grids in different ways Access computing power / storage capacity across different administrative domains by an unlimited set of non-local users Dynamic nature: Resources added/removed/changed frequently World wide dimension goncalo@lip.pt Grid Computing – Grid Tutorial 4

The GRID Metaphor The transparent interaction between heterogeneous resources (owned by geographically spread organizations), applications and users is only possible through… the use of a specialized layer of software called middleware G R I D M L E W A Visualising Workstation Mobile Access The middleware hides the infrastructure technical details and allows a secure integration/sharing of resources. Internet protocols do not provide security mechanisms for resource sharing. goncalo@lip.pt Grid Computing – Grid Tutorial 8

2. How to access to the GRID? goncalo@lip.pt Grid Computing – Grid Tutorial 10

User & Administrator Perspectives Users need single sign-on: the ability to logon to a machine and have the user’s identity passed to other resources as required to trust owners of the resources they are using Providers of resources (computers, databases,..) need to trust users they do not know minimise impact on security have the ability to trace who did what The solution comes from Digital Certificates Virtual Organizations goncalo@lip.pt Grid Computing – Grid Tutorial 11

X.509 Public Key Infrastructure Digital Certificates Resource providers are “opening themselves up” to itinerant users: A Secure Access to resources is provided through the X.509 Public Key Infrastructure Digital certificates identify uniquely its user/service identity Users/Services identity have to be certified by (mutually recognized) national Certification Authorities (CAs) One CA per country CAs are coordinated by global bodies to enable the creation of a world-wide trust zone (EUGridPMA) Digital certificates allow a temporary delegation from users to processes executed “in user’s name” (proxy certificates and myproxy certificates repositories) goncalo@lip.pt Grid Computing – Grid Tutorial 12

Virtualization & Sharing Virtual Organizations (VO): People from different organizations but with common goals get together to solve their problems in a cooperative way. Virtualized shared computing resources: VO members have access to computing resources outside their home institutions. Virtualized shared data resources: VOs members can store and access data outside their home institutions. Other resources may be shared and virtualized as well: Instruments, sensors, software and even people… VO practical role: Set Common Agreed Policies for accessing resources Administrates the VO membership list Before joining a VO, a person must already have a valid certificate VO administrators can reject persons which do not fulfill the VO requirements goncalo@lip.pt Grid Computing – Grid Tutorial 13

Particle Physics Comunity VOs Examples Particle Physics Comunity Biomed Comunity High Energy Comunity Cancer Research Comunity goncalo@lip.pt Grid Computing – Grid Tutorial 14