Federated Identity Management: Status and perspectives of EGI

Slides:



Advertisements
Similar presentations
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI AAI in EGI Status and Evolution Peter Solagna Senior Operations Manager
Advertisements

1 EGI Federated Clouds Task Force HEPiX Spring 2012 Workshop Matteo Turilli
EGI-Engage EGI-Engage Engaging the EGI Community towards an Open Science Commons Project Overview 9/14/2015 EGI-Engage: a project.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Future support of EGI services Tiziana Ferrari/EGI.eu Future support of EGI.
What is EGI? The European Grid Infrastructure enables access to computing resources for European scientists from all fields of science, from Physics to.
EGI-InSPIRE RI EGI-InSPIRE RI European Grid Infrastructure: status and services for users 04/11/ Gergely Sipos.
EGI-InSPIRE Steven Newhouse Interim EGI.eu Director EGI-InSPIRE Project Director.
European Grid Initiative Federated Cloud update Peter solagna Pre-GDB Workshop 10/11/
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI Future Plans T. Ferrari/EGI.eu 1.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI Towards H2020 Tiziana Ferrari/EGI.eu WLCG Collaboration Workshop.
RI EGI-InSPIRE RI EGI Future activities Peter Solagna – EGI.eu.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI (Present and) Future of the EGI Services for WLCG Peter Solagna – EGI.eu.
1 FedCloud Task Force Demo EGI CF2012 – Munich 28/29 March Matteo Turilli
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI on the road to Horizon 2020 Steven Newhouse EGI-InSPIRE Project Director.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evolution of AAI for e- infrastructures Peter Solagna Senior Operations Manager.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI strategy and Grand Vision Ludek Matyska EGI Council Chair EGI InSPIRE.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Plans for PY2 Steven Newhouse Project Director, EGI.eu 30/05/2011 Future.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI NA2.5 – Technical Outreach to New Communities Gergely Sipos Technical Outreach.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI UMD Roadmap Steven Newhouse 14/09/2010.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Data service requirements and provisioning models Gergely Sipos With input.
European Life Sciences Infrastructure for Biological Information ELIXIR Cloud Roadmap Chairs: Steven Newhouse, EMBL-EBI & Mirek Ruda,
EGI-Engage EGI-Engage WP3 e-Infrastructure Commons Diego Scardaci EGI.eu/INFN 6/18/2016 EGI-Engage – First.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI Technology Sustainability Discussion Points DCI Sustainability Meeting.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI Services for Distributed e-Infrastructure Access Tiziana Ferrari on behalf.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evaluation of Liferay modules EGI-InSPIRE mini-project Gergely Sipos EGI.eu.
EGI-Engage EGI Webinar - Introduction - Gergely Sipos EGI.eu / MTA SZTAKI 6/26/
European Grid Initiative The EGI Federated Cloud as Educational and Training Infrastructure for Data Science Tiziana Ferrari/ EGI.eu.
EGI-InSPIRE EGI-InSPIRE RI The European Grid Infrastructure Steven Newhouse Director, EGI.eu Project Director, EGI-InSPIRE 29/06/2016CoreGrid.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI A pan-European Research Infrastructure supporting the digital European Research.
EGI-InSPIRE RI EGI Compute and Data Services for Open Access in H2020 Tiziana Ferrari Technical Director, EGI.eu
EGI-InSPIRE EGI-InSPIRE RI EGI strategy towards the Open Science Commons Tiziana Ferrari EGI-InSPIRE Director at EGI.eu.
EGI-InSPIRE RI EGI-InSPIRE RI EGI-InSPIRE Software provisioning and HTC Solution Peter Solagna Senior Operations Manager.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI Overview for ENVRI Gergely Sipos, Malgorzata Krakowian EGI.eu
INDICATE Final Conference, Ankara, Turkey – 15 October, INDICATE Final Conference, Ankara, Turkey EGI & eCulture The role of.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI Sustainability & Business Models Sergio Andreozzi EGI.eu Policy Development.
EGI-InSPIRE RI An Introduction to European Grid Infrastructure (EGI) March An Introduction to the European Grid Infrastructure.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evaluation of Liferay modules EGI-InSPIRE mini-project Gergely Sipos EGI.eu.
1 EGI Federated Cloud Architecture Matteo Turilli Senior Research Associate, OeRC, University of Oxford Chair – EGI Federated Clouds Task Force
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Role and Challenges of the Resource Centre in the EGI Ecosystem Tiziana Ferrari,
The EGI Federated Cloud
Accessing the VI-SEEM infrastructure
EGI: advanced computing for research in Europe… and beyond!
Steve Brewer Stichting European Grid Initiaitive
User Engagement in EGI (With focus on the cloud)
Steven Newhouse EGI-InSPIRE Project Director, EGI.eu
Steven Newhouse Project Director, EGI.eu
EGI User Virtualisation Workshop
NA3: User Community Support Team
Agenda Welcome Project Status (inc. Activity Reports)
Linked Challenges Virtualisation has a key role to play….
EGI-Engage Engaging the EGI Community towards an Open Science Commons
StratusLab Sustainability
Status report of the LToS platform
Connecting the European Grid Infrastructure to Research Communities
Solutions for federated services management EGI
Introduction to the EGI cloud federations
Małgorzata Krakowian, Gergely Sipos
EGI – Organisation overview and outreach
European Grid Infrastructure for Life Science
EGI Webinar - Introduction -
Steven Newhouse, EGI.eu EGI-InSPIRE Project Director
Operations Management Board April 30
ELIXIR Competence Center
The EGI.eu Organisation
Sergio Andreozzi Strategy and Policy Manager (EGI.eu)
Introdicution to EGI.eu
AAI in EGI Status and Evolution
User Support in EGI Reactive and proactive services
Support services for EGI portal-* communities
EOSC-hub Contribution to the EOSC WGs
Presentation transcript:

Federated Identity Management: Status and perspectives of EGI Gergely Sipos EGI.eu, Amsterdam gergely.sipos@egi.eu 4th Federated Identity Management Workshop Nijmegen, 21-22, June 2012 http://www.clarin.eu/events/3501 11/16/2018

Outline Introduction to the European Grid Infrastructure AAI in the middleware-based EGI Towards FIM adoption EGI Federated Cloud Federated AAI Pilot for EGA NGI survey Conclusions and next steps

Resource & service Providers National Grid Infrastructures (NGIs) ~45 The EGI Ecosystem User Community VRC: Virtual Research Community VO: Virtual Organisation TRANSfoRm Policies + Funding Requirements + Feedback Services + Support Resource & service Providers Requirements + Feedback Public Funding Bodies Policies + Funding European Commission Requirements Technology Providers EGI.eu foundation National Grid Infrastructures (NGIs) ~45 Grid middleware software National Research Councils Strategic Feedback SW + Support Cloud provider software

EGI’s Strategic Focus http://go.egi.eu/EGI2020 Operational Infrastructure Operate a European wide infrastructure Offer its use to other research infrastructures Build a federated cloud environment Community & Coordination Community building through events Community networking through the NGIs Virtual Research Environments (VREs) Support the development, integration & operation of community/project/domain specific services

AAI in the middleware-based EGI Grid = federated resources exposed for controlled sharing via middleware services X.509 personal certificates From IGTF CAs From Terena Certificate Service Limited certificates Restricted in lifetime and/or infrastructure coverage Robot certificates Belong to applications (portals) instead of users Identity federations Middleware bridging, science gateways Nb. of users Tens of thousands Thousands Hundreds ?

Federated Cloud: a new EGI platform Research Communities Virtual Research Environment Collaboration services ‘Traditional’ EGI: batch processing ‘Cloud’ EGI: applications in Virtual Machines job job job Virtual machine Grid middleware services Virtual machine Research facilities (e.g. detectors, sensor networks) Virtual machine VM DB SW EGI Federated Cloud EGI resources (clusters, storages,...) Dedicated or shared resources/platforms (e.g. Clusters; dekstop grids, commercial cluds, GPUs, etc.)

FIM adoption in the EGI cloud Personalised environments for individual research communities in the European Research Area Testbed with ~1.700 CPUs is available for scientific communities! Project/community specific services SaaS Project/community specific services Project/community specific services Custom AAI PaaS Institutional cloud VM Mgmt Data Information Monitoring Accounting Notification NGI cloud VM Mgmt Data Information Monitoring Accounting Notification Commercial cloud VM Mgmt Data Information Monitoring Accounting Notification X.509 AAI IaaS EGI-wide message bus

Application/service integration: workflows Turn applications into repeatable, sharable experiments Catalogue of existing workflow tools and workflow applications http://go.egi.eu/workflows

EGI-compatible portals Access EGI-based applications through the Web Catalogue of existing portals and enabling technologies http://go.egi.eu/sciencegateways “How-to” documentation for portal developers Under development https://wiki.egi.eu/wiki/VT_Science_Gateway_Primer NEW: Become an associated member of the SCI-BUS project Funding for portal development http://www.sci-bus.eu

Other FIM adoption activities European Genome-phenome Archive AAI Pilot Interface EGA service with an Identity Federation (HAKA, Finnland) Demonstrator supported through EGI-InSPIRE (EBI-EMBL, CSC, EGI.eu) Virtual Team project Assess the readiness of the NGIs in adopting FIM mechanisms: https://wiki.egi.eu/wiki/VT_Federated_Identity_Providers_Assessment Terena Certificate Service Availability of personal certificates Availability for ‘NGI institutions’ Availability for potential EGI user institutions Custom FIM solutions Czech, French, Italian, Irish, Swiss NGIs + EGI.eu

Conclusions Requirements for a generic AAI: Geographical coverage, science discipline coverage, scalability, robustness, simplicity, sustainability, integrate-ability with EGI platforms. X509 certificates Complicated to most users, but no sign of change in middleware (provided by EMI, IGE) Expected to stay for platform developers for the IaaS cloud Terena Certificate Service Not much simpler, serious lack of coverage (country, NGI members, community) FIM solutions There is no single provider, standard. Rapid evolution and adoption Several initifiaves by EC (EduGAIN, REFEDS, ...) and NGIs (IT, CH, HU, CZ...) EGI community-wide collection, evaluation and discussion of these is the next step: AAI workshop at the EGI Technical Forum White paper / Report Authentication solutions in the European Grid Infrastructure https://documents.egi.eu/document/1178

Questions? EGI Technical Forum 2012, Prague, Czech Republic, 17–21 September www.egi.eu AAI Workshop Send your one paragraph long abstract before July to gergely.sipos@egi.eu, peter.solagna@egi.eu

Installed capacity (Apr ‘12) Metric Value (yearly increase) Sites 326 (+3%) Nb. of CPU cores 270,800 (+31%) Disk (PB) 139 PB (+31%) Tape (PB) 134 PB (+50%)

EGI Cloud based on open standards Infrastructure Capabilities VM Management, Data Management, Information Discovery, Accounting, Monitoring, Notification Community Capabilities Federated authentication & authorisation, VM Image Sharing (Virtual Image repository) Implementation based on third party, open standards and open source implementations: Frond-end interfaces: OCCI, CDMI-OVF, GLUE-LDAP Back-end interfaces: UR+-StAR, Nagios, ActiveMQ Providers: OpenNebula, OpenStack, Stratuslab

Asia Pacific (9 partners) EGI-InSPIRE Project Integrated Sustainable Pan-European Infrastructure for Researchers in Europe A 4 year project with €25M EC contribution Project cost €72M Total Effort ~€330M Effort: 9261PMs Project Partners (50) EGI.eu, 38 NGIs, 2 EIROs Asia Pacific (9 partners) 11/16/2018 EC Review Introduction – June 2012