© 2008 Pittsburgh Supercomputing Center WAN-LUSTRE WITH KERBEROS AUTHENTICATION Thursday, August 14, 2008 Ben Bennett Josephine Palencia J. Ray Scott UPDATE.

Slides:



Advertisements
Similar presentations
TeraGrid Deployment Test of Grid Software JP Navarro TeraGrid Software Integration University of Chicago OGF 21 October 19, 2007.
Advertisements

MyProxy Jim Basney Senior Research Scientist NCSA
Cross-site data transfer on TeraGrid using GridFTP TeraGrid06 Institute User Introduction to TeraGrid June 12 th by Krishna Muriki
Cloud PIV Authentication and Authorization Demo PIV Card User Workstation Central Security Server In order to use Cloud Authentication and Authorization.
Andrew File System CSS534 ZACH MA. History  Originated in October 1982, by the Information Technology Center (ITC) formed with Carnegie Mellon and IBM.
TERMINAL SERVER DEPLOYMENT PLAN. STEP 1: PREPARATION  UTILIZE THE CURRENT SERVER FOR: ACTIVE DIRECTORY (AD) ACTIVE DIRECTORY (AD) NEEDED FOR STORAGE.
TeraGrid Quarterly Meeting Dec 6-7, 2007 DVS GIG Project Year 4&5 Project List Kelly Gaither, DVS Area Director.
Authenticated QoS Signaling William A. (Andy) Adamson Olga Kornievskaia CITI, University of Michigan.
Copyright © 2012 Certification Partners, LLC -- All Rights Reserved Lesson 4: Web Browsing.
(e)Science-Driven, Production- Quality, Distributed Grid and Cloud Data Infrastructure for the Transformative, Disruptive, Revolutionary, Next-Generation.
National Center for Supercomputing Applications Integrating MyProxy with Site Authentication Jim Basney Senior Research Scientist National Center for Supercomputing.
USING THE GLOBUS TOOLKIT This summary by: Asad Samar / CALTECH/CMS Ben Segal / CERN-IT FULL INFO AT:
National Center for Supercomputing Applications MyProxy and GSISSH Update Von Welch National Center for Supercomputing Applications University of Illinois.
Red Hat Linux Network. Red Hat Network Red Hat Network is the environment for system- level support and management of Red Hat Linux networks. Red Hat.
National Center for Supercomputing Applications University of Illinois at Urbana-Champaign This material is based upon work supported by the National Science.
PKI 2: Protezione del traffico Web tramite SSL Fabrizio Grossi.
Client Solution Secure collaboration with partners on customer initiatives and transactions Internal users push content to site without multiple authentication.
Business Productivity Online Suite Enterprise class software delivered via subscription services hosted by Microsoft and sold with partners.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
TeraGrid ’06 National Center for Supercomputing Applications Managing Credentials on the TeraGrid with MyProxy Jim Basney.
Ing. Ondřej Ševeček | GOPAS a.s. | MCM: Directory Services | MVP: Enterprise Security | | |
11 REVIEWING MICROSOFT ACTIVE DIRECTORY CONCEPTS Chapter 1.
Module 1: Installing Internet Information Services 5.0.
Module 10: Designing an AD RMS Infrastructure in Windows Server 2008.
Microsoft Windows 8.1 Enterprise: A brief overview of Microsoft Windows 8 Enhancements. Welcome!
IT:Network:Microsoft Server 2 Chapter 27 WINDOWS SERVER UPDATE SERVICES.
Fitosoft.com. ObjectPrint enables the control, quota allocation and restriction of printing and printer usage. ObjectPrint provides centralized administration.
Sprint 114 Review / Sprint 115 Planning August 26th, 2013.
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter Four Configuring Outlook and Outlook Web Access.
1 Chapter 6: Proxy Server in Internet and Intranet Designs Designs That Include Proxy Server Essential Proxy Server Design Concepts Data Protection in.
TeraGrid Information Services JP Navarro, Lee Liming University of Chicago TeraGrid Architecture Meeting September 20, 2007.
DDN WOS Storage Update Yu Fu University of Florida Tampa, FL November 3, 2014.
Your university or experiment logo here NextGen Storage Shaun de Witt (STFC) With Contributions from: James Adams, Rob Appleyard, Ian Collier, Brian Davies,
GridFE: Web-accessible Grid System Front End Jared Yanovich, PSC Robert Budden, PSC.
Designing Authentication for a Microsoft Windows 2000 Network Designing Authentication in a Microsoft Windows 2000 Network Designing Kerberos Authentication.
CBEO Portal Presentation 2/6/2008, 4:30pm EST SDSC Or link from
TeraGrid Privacy Policy: What is it and why are we doing it… Von Welch TeraGrid Quarterly Meeting March 6, 2008.
Designing Secure SharePoint External Access Ondrej Sevecek | MCM: Directory | MVP: Security |
TeraGrid CTSS Plans and Status Dane Skow for Lee Liming and JP Navarro OSG Consortium Meeting 22 August, 2006.
1 Grid Portal for VN-Grid Cu Nguyen Phuong Ha. 2 Outline Some words about portals in principle Overview of OGCE GridPortlets.
SAN DIEGO SUPERCOMPUTER CENTER Inca TeraGrid Status Kate Ericson November 2, 2006.
National Computational Science National Center for Supercomputing Applications National Computational Science GSI Online Credential Retrieval Requirements.
Leveraging the InCommon Federation to access the NSF TeraGrid Jim Basney Senior Research Scientist National Center for Supercomputing Applications University.
Registries, ebXML and Web Services in short. Registry A mechanism for allowing users to announce, or discover, the availability and state of a resource:
Portal Update Plan Ashok Adiga (512)
TeraGrid NOS Turnover Jeff Koerner Q meeting December 8, 2010.
System Center Lesson 4: Overview of System Center 2012 Components System Center 2012 Private Cloud Components VMM Overview App Controller Overview.
Module 9 User Profiles and Social Networking. Module Overview Configuring User Profiles Implementing SharePoint 2010 Social Networking Features.
Database authentication in CORAL and COOL Database authentication in CORAL and COOL Giacomo Govi Giacomo Govi CERN IT/PSS CERN IT/PSS On behalf of the.
Data, Visualization and Scheduling (DVS) TeraGrid Annual Meeting, April 2008 Kelly Gaither, GIG Area Director DVS.
Jasig CAS Roadmap Scott Battaglia Rutgers, the State University of New Jersey.
Service Pack 2 System Center Configuration Manager 2007.
Advanced Authentication Campus-Booster ID: Copyright © SUPINFO. All rights reserved Kerberos.
Status of Globus activities Massimo Sgaravatto INFN Padova for the INFN Globus group
The GRIDS Center, part of the NSF Middleware Initiative Grid Security Overview presented by Von Welch National Center for Supercomputing.
Free, online, technical courses Take a free online course. Microsoft Virtual Academy.
G. Russo, D. Del Prete, S. Pardi Kick Off Meeting - Isola d'Elba, 2011 May 29th–June 01th A proposal for distributed computing monitoring for SuperB G.
EGEE-III INFSO-RI Enabling Grids for E-sciencE EGEE and gLite are registered trademarks Towards an Information System Product Team.
© 2010 Pittsburgh Supercomputing Center Lustre WAN ExTENCI Kickoff Meeting August 19, 2010 Josephine Palencia J. Ray Scott.
Follow OCG Learning Twitter Facebook LinkedIn
Open OnDemand: Open Source General Purpose HPC Portal
System Center 2012 Configuration Manager
Microsoft Virtual Academy
MCSA VCE
Do you know what Group Policy is?
VCE Dumps
Comparison June 2017.
Jerald Overstreet, GISP Server Portal SQL Manager Admin
Microsoft Virtual Academy
Module 1: Overview of Systems Management Server 2003
Presentation transcript:

© 2008 Pittsburgh Supercomputing Center WAN-LUSTRE WITH KERBEROS AUTHENTICATION Thursday, August 14, 2008 Ben Bennett Josephine Palencia J. Ray Scott UPDATE

© 2008 Pittsburgh Supercomputing Center WAN-LUSTRE WITH KERBEROS AUTHENTICATION –Introduction –Current Status –How it Looks –Summary –References

© 2008 Pittsburgh Supercomputing Center INTRODUCTION MDS OSS MGS Clients Kerberos-enabled Lustre Components –Servers Management Configuration Server (MGS)‏ –Mount point Meta Data Server (MDS)‏ –Directory structure Object Storage Server (OSS)‏ –Content –Clients

© 2008 Pittsburgh Supercomputing Center INTRODUCTION Kerberos Components –Servers and clients authenticate with each other MGS is in TERAGRID.ORG MDS, OSS and Clients are in realm local to RP site –Users authenticate to TERAGRID.ORG realm Cross-site from local hosts with Lustre id-mapping TG portal access –WAN Lustre user directories reside in TERAGRID.ORG realm, which already exists Development –Contribute bug fixes to Lustre software base –Be on the SUN/CFS Lustre roadmap

© 2008 Pittsburgh Supercomputing Center CURRENT STATUS Mountable WAN Lustre fs with Kerberos enabled on the TERAGRID –Mount -t lustre /lustre-wan Components (for test deployment)‏ –mgs.teragrid.org in TERAGRID.ORG kerberos realm –[mds00w, oss00w, oss01w].psc.teragrid.org in PSC.EDU –Other RP site systems will use their local kerberos realm for oss deployment clients

© 2008 Pittsburgh Supercomputing Center HOW IT LOOKS PSC.EDU MDS OSS1 RP-n /lustre-kw RP.ANY.EDU RP.TERAGRID.ORG OSS3 OSS2 TERAGRID.ORG MGS

© 2008 Pittsburgh Supercomputing Center JOIN IN Use latest Lustre v Sites arrange to have keys/keytabs with PSC

© 2008 Pittsburgh Supercomputing Center SUMMARY RP resident OSS's provides local performance from WAN Lustre Certificate access to WAN Lustre via pkinit TG User Portal users get TERAGRID.ORG ticket automatically –Portlets can access WAN Lustre “for free”

© 2008 Pittsburgh Supercomputing Center REFERENCE Teragrid advanced lustre-wan features Wiki