Christopher Paolini Computational Science Research Center San Diego State University 100G and Beyond Workshop: Ultra High Performance Networking in California.

Slides:



Advertisements
Similar presentations
Cross-site data transfer on TeraGrid using GridFTP TeraGrid06 Institute User Introduction to TeraGrid June 12 th by Krishna Muriki
Advertisements

Network Systems Sales LLC
M A Wajid Tanveer Infrastructure M A Wajid Tanveer
High Performance Computing Course Notes Grid Computing.
Kathy Benninger, Pittsburgh Supercomputing Center Workshop on the Development of a Next-Generation Cyberinfrastructure 1-Oct-2014 NSF Collaborative Research:
LANs and WANs Network size, vary from –simple office system (few PCs) to –complex global system(thousands PCs) Distinguish by the distances that the network.
GridFTP: File Transfer Protocol in Grid Computing Networks
Lab Practical 1 Study about different types of networks
Lesson 11-Virtual Private Networks. Overview Define Virtual Private Networks (VPNs). Deploy User VPNs. Deploy Site VPNs. Understand standard VPN techniques.
Security Management IACT 918 July 2004 Gene Awyzio SITACS University of Wollongong.
Milos Kobliha Alejandro Cimadevilla Luis de Alba Parallel Computing Seminar GROUP 12.
Security Management IACT 418/918 Autumn 2005 Gene Awyzio SITACS University of Wollongong.
Firewall 2 * Essential Network Security Book Slides. IT352 | Network Security |Najwa AlGhamdi 1.
Cloud Usability Framework
Network Topology. Cisco 2921 Integrated Services Router Security Embedded hardware-accelerated VPN encryption Secure collaborative communications with.
James Deaton Chief Technology Officer OneNet Glass, Graphs and Gear.
Copyright Microsoft Corp Ramnish Singh IT Advisor Microsoft Corporation Secure Remote Access Challenges, Choices, Best Practices.
Lecture 1, 1Spring 2003, COM1337/3501Computer Communication Networks Rajmohan Rajaraman COM1337/3501 Textbook: Computer Networks: A Systems Approach, L.
An Introduction to the Open Science Data Cloud Heidi Alvarez Florida International University Robert L. Grossman University of Chicago Open Cloud Consortium.
1 Wide Area Network. 2 What is a WAN? A wide area network (WAN ) is a data communications network that covers a relatively broad geographic area and that.
CMS Data Transfer Challenges LHCOPN-LHCONE meeting Michigan, Sept 15/16th, 2014 Azher Mughal Caltech.
1 ESnet Network Measurements ESCC Feb Joe Metzger
NORDUnet NORDUnet The Fibre Generation Lars Fischer CTO NORDUnet.
Big Data: Movement, Crunching, and Sharing Guy Almes, Academy for Advanced Telecommunications 13 February 2015.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Identifying Application Impacts on Network Design Designing and Supporting Computer.
Bio-IT World Asia, June 7, 2012 High Performance Data Management and Computational Architectures for Genomics Research at National and International Scales.
GT Components. Globus Toolkit A “toolkit” of services and packages for creating the basic grid computing infrastructure Higher level tools added to this.
Software-defined Networking Capabilities, Needs in GENI for VMLab ( Prasad Calyam; Sudharsan Rajagopalan;
Developing a 100G TestBed for Life Science Collaborations  Taking advantage of existing UM/SURA dark fiber to create a research 100G pathway from St.
VIRTUAL PRIVATE NETWORK By: Tammy Be Khoa Kieu Stephen Tran Michael Tse.
Campus Cyberinfrastructure – Network Infrastructure and Engineering (CC-NIE) Kevin Thompson NSF Office of CyberInfrastructure April 25, 2012.
RNA-Seq 2013, Boston MA, 6/20/2013 Optimizing the National Cyberinfrastructure for Lower Bioinformatic Costs: Making the Most of Resources for Publicly.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Identifying Application Impacts on Network Design Designing and Supporting.
1 Second ATLAS-South Caucasus Software / Computing Workshop & Tutorial October 24, 2012 Georgian Technical University PhD Zaza Tsiramua Head of computer.
UNM RESEARCH NETWORKS Steve Perry CCNP, CCDP, CCNP-V, CCNP-S, CCNP-SP, CCAI, CMNA, CNSS 4013 Director of Networks.
Internet2 Performance Update Jeff W. Boote Senior Network Software Engineer Internet2.
DataTAG Research and Technological Development for a Transatlantic Grid Abstract Several major international Grid development projects are underway at.
Innovations to Transition a Campus Core Cyberinfrastructure to Serve Diverse and Emerging Researcher Needs Prasad Calyam (Presenter), Jay Young, Paul Schopis.
ASCR/ESnet Network Requirements an Internet2 Perspective 2009 ASCR/ESnet Network Requirements Workshop April 15/16, 2009 Richard Carlson -- Internet2.
Cisco 3 - Switch Perrine. J Page 111/6/2015 Chapter 5 At which layer of the 3-layer design component would users with common interests be grouped? 1.Access.
Securing the Network Infrastructure. Firewalls Typically used to filter packets Designed to prevent malicious packets from entering the network or its.
1 Network Measurement Summary ESCC, Feb Joe Metzger ESnet Engineering Group Lawrence Berkeley National Laboratory.
GRIDS Center Middleware Overview Sandra Redman Information Technology and Systems Center and Information Technology Research Center National Space Science.
GRID Overview Internet2 Member Meeting Spring 2003 Sandra Redman Information Technology and Systems Center and Information Technology Research Center National.
NEES Cyberinfrastructure Center at the San Diego Supercomputer Center, UCSD George E. Brown, Jr. Network for Earthquake Engineering Simulation Analyzing.
CEOS Working Group on Information Systems and Services - 1 Data Services Task Team Discussions on GRID and GRIDftp Stuart Doescher, USGS WGISS-15 May 2003.
Cyberinfrastructure: An investment worth making Joe Breen University of Utah Center for High Performance Computing.
The PRPv1 Architecture Model Panel Presentation Building the Pacific Research Platform Qualcomm Institute, Calit2 UC San Diego October 16, 2015.
Cyberinfrastructure: Many Things to Many People Russ Hobby Program Manager Internet2.
Securing the Grid & other Middleware Challenges Ian Foster Mathematics and Computer Science Division Argonne National Laboratory and Department of Computer.
Advanced research and education networking in the United States: the Internet2 experience Heather Boyles Director, Member and Partner Relations Internet2.
GEMINI: Active Network Measurements Martin Swany, Indiana University.
© 2002, Cisco Systems, Inc. All rights reserved..
SCIENCE_DMZ NETWORKS STEVE PERRY, DIRECTOR OF NETWORKS UNM PIYASAT NILKAEW, DIRECTOR OF NETWORKS NMSU.
© ITT Educational Services, Inc. All rights reserved. IS3220 Information Technology Infrastructure Security Unit 7 VPN Fundamentals.
Southern California Infrastructure Philip Papadopoulos Greg Hidley.
Advanced Network Diagnostic Tools Richard Carlson EVN-NREN workshop.
Slide 1 E-Science: The Impact of Science DMZs on Research Presenter: Alex Berryman Performance Engineer, OARnet Paul Schopis, Marcio Faerman.
Data Infrastructure in the TeraGrid Chris Jordan Campus Champions Presentation May 6, 2009.
UNM SCIENCE DMZ Sean Taylor Senior Network Engineer.
Network Attached Storage Overview
Establishing End-to-End Guaranteed Bandwidth Network Paths Across Multiple Administrative Domains The DOE-funded TeraPaths project at Brookhaven National.
Wide Area Network.
Study course: “Computing clusters, grids and clouds” Andrey Y. Shevel
Internet2 Performance Update
Introduction to Networks
Unit 27: Network Operating Systems
An Introduction to Computer Networking
Optical SIG, SD Telecom Council
STATEL an easy way to transfer data
Presentation transcript:

Christopher Paolini Computational Science Research Center San Diego State University 100G and Beyond Workshop: Ultra High Performance Networking in California Calit 2 Auditorium First floor, Atkinson Hall UC San Diego La Jolla, CA Tuesday, February 26, 2013 · Campus and Lab Strategies Panel · 11:00AM – 12:00PM

 University network operations centers support multiple, conflicting missions.  Network Security or Network Performance: which is more important? vs.  NOCs typically accountable to university business divisions and contend with legal and public relations pressures → security wins always.  NOCs not usually accountable to research groups (often never communicate with faculty).  University enterprise (e.g. general purpose/financial/personal) computing: security > performance  Computational and “Big Data” research: performance > security  What can we do to ensure efficient scientific data transfer between universities and national labs?

 A network optimized for business is not designed or capable of supporting data intensive science.  Universities will always need to support security features that protect organizational financial and personnel data.  Solution: create separate data intensive science network, external to university enterprise network  Design formalized by ESnet, based on traditional network DMZ paradigm

 Science DMZ: (1) dedicated access to high-performance WAN, (2) high-performance switching infrastructure (large buffer memory), (3) dedicated data transfer nodes

 Science DMZ using CENIC California Research and Education Network resources

Alcatel-Lucent 10 and 40 Gbps switching devices, per CSU policy DMZ spans four campus buildings: Administration, Life Sciences (CSRC Data Center), Education & Business Administration (UCO Data Center), and Chemical Sciences (VizCenter) Primary users: CSRC affiliated faculty and students AL OmniVista 2500 for network management NSF Office of CyberInfrastructure CC-NIE Grant

Computational science network connects to the DMZ Funded in 2009 through NSF MRI award Cisco 10 Gbps Catalyst 4900M switching devices CSRCnet spans five campus buildings: Administration, Life Sciences (CSRC Data Center), Education & Business Administration (UCO Data Center), Physics, and Engineering Sole users: CSRC affiliated faculty and students 10G access to SDSC

 Facilitate high-performance data transfer for scientific applications using Globus Online GridFTP  Alcatel-Lucent OmniSwitch 10K (core device)  Two Alcatel-Lucent OmniSwitch 6900s (satellite devices)  Dedicated and independent 10GE (maybe 40GE) uplink to Internet2 and ESnet via CENIC  Optimized network for high-volume bulk transfer of scientific datasets  Unencumbered, high-speed access to online scientific applications and data generated at SDSU  External access to science resources not impacted by regular “enterprise” or business class Internet traffic  Focus on “BigData” Intensive Science: earthquake rupture and wave propagation, parallel 3D unified curvilinear coastal ocean modeling, geologic sequestration simulation of supercritical CO 2, large-scale proteomic data, bioinformatics of gene promoter analysis, microbial metagenomics, and high-order PSIC methods for simulation of pulse detonation engines  Network performance measurement based on the PerfSONAR framework  InCommon Federation global federated system for identity management and authentication to DMZ connected hosts and services

 Extension of the standard, two channel FTP protocol  Control Channel ◦ Command/Response ◦ Used to establish data channels ◦ Basic file system operations (e.g. mkdir, delete, etc.)  Data channel: Pathway over which file is transferred  Scheduled transfers using command line interface: $ scp xsede#lonestar4:~/GO/bigdatafile xsede#trestles:~/GO/bigdatafile $ scp xsede#trestles:~/GO/bigdatafile paolini#sdsu:~/GO/bigdatafile

 Science DMZ performance monitoring accomplished using perfSONAR tool suite  Server side tools run on designated hosts attached to key switches  End-to-end testing with collaborating perfSONAR sites  Determine one way latencies and packet loss between hosts using One-Way Active Measurement Protocol (OWAMP) owping -c i.01 remotedmz  Periodic throughput tests to remote Science DMZs using Bandwidth Test Controller (BWCTL)  Resource allocation and scheduling daemon for regularly- scheduled Iperf tests bwctl -s remotedmz -P 4 -t 30 -f M -w 4M -S 32

 U.S. education and research identity federation service  Provides common framework for trusted shared management of access to on-line resources  Provide users single sign-on convenience and privacy protection – Shibboleth Service Provider Federating software  Site admins can delegate responsibility for administering service provider (SP) metadata to another admin

 Primary SDSU faculty/staff for Science DMZ implementation: NameRole Phone Christopher PaoliniCSRC Affiliated Faculty, Network Engineering and Research Jose CastilloDirector of Computational Science Research Center Rich PickettCampus Kent McKelveyDirector of Network Skip AustinNetwork Planning and Gene LeDucTechnology Security Officer Robert OsbornInfrastructure Installation, Configuration, and Support  Current and planned DMZ related research: Development of new transport layer protocols that use compressed sensing techniques to perform sparse sampling on streaming petabyte sized datasets originating from remote CO 2 sequestration, curvilinear coastal ocean modeling, and earthquake rupture and wave propagation simulations Development of a new Alcatel-Lucent SDN/Application Fluent Network based protocol for the OS10K that bridges Lustre RDMA traffic between 40GE and FDR InfiniBand