Access Control for Dynamic Virtual Organisations Duncan Russell, Peter Dew & Karim Djemame University of Leeds.

Slides:



Advertisements
Similar presentations
PIONIER 2003, Poznan, , PROGRESS Grid Access Environment for SUN Computing Cluster Poznań Supercomputing and Networking Center Cezary Mazurek.
Advertisements

Supporting further and higher education 19th APAN Meetings in Bangkok Innovative Uses of Pervasive Broadband Network Is adoption of technology running.
LEAD Portal: a TeraGrid Gateway and Application Service Architecture Marcus Christie and Suresh Marru Indiana University LEAD Project (
Grids for Complex Problem Solving, 29 January 2003 Grid based collaborative working in large distributed organisations
Pattern Matching against Distributed Datasets within DAME Andy Pasley University of York.
Research Councils ICT Conference Welcome Malcolm Atkinson Director 17 th May 2004.
Rolls-Royce supported University Technology Centre in Control and Systems Engineering UK e-Science DAME Project Alex Shenfield
Grid Quality of Service and Service Level Agreements Karim Djemame University of Leeds.
Decision Support Tools CBR & Modeling Jeff Allan University of Sheffield.
Holding slide prior to starting show. Supporting Collaborative Working of Construction Industry Consortia via the Grid - P. Burnap, L. Joita, J.S. Pahwa,
Jim Austin, University of York Grid-based on-line aeroengine diagnostics.
1 Richard White Design decisions: architecture 1 July 2005 BiodiversityWorld Grid Workshop NeSC, Edinburgh, 30 June - 1 July 2005 Design decisions: architecture.
CoreGRID Workpackage 5 Virtual Institute on Grid Information and Monitoring Services Authorizing Grid Resource Access and Consumption Erik Elmroth, Michał.
Towards the Design and Implementation of the DAME prototype: OGSA Compliant Grid Services on the White Rose Grid Sarfraz A Nadeem University of Leeds.
L4-1-S1 UML Overview © M.E. Fayad SJSU -- CmpE Software Architectures Dr. M.E. Fayad, Professor Computer Engineering Department, Room #283I.
Grid Enabled Pattern Matching within the DAME e-Science Pilot Project Jim Austin Computer Science University of York.
CoLaB 22nd December 2005 Secure Access to Service-based Collaborative Workflow for DAME Duncan Russell Informatics Institute University of Leeds, UK.
DAME Collaborative Workflow & Access Control Duncan Russell University of Leeds.
DAME, EuroGrid WP3 and GEODISE Esa Nuutinen. Introduction Dame, EuroGrid WP3 and GEODISE All are Grid based tools for Engineers. Many times engineers.
WP6: Grid Authorization Service Review meeting in Berlin, March 8 th 2004 Marcin Adamski Michał Chmielewski Sergiusz Fonrobert Jarek Nabrzyski Tomasz Nowocień.
DAME: A Distributed Diagnostics Environment for Maintenance Professor Jim Austin/Dr Tom Jackson University of York.
CS e-Science & Grid Computing - introduction - What is e-Science? What is the Grid? Grid middleware.
The National Grid Service User Accounting System Katie Weeks Science and Technology Facilities Council.
Flexibility and user-friendliness of grid portals: the PROGRESS approach Michal Kosiedowski
DAME: Distributed Engine Health Monitoring on the Grid
CBR for Fault Analysis in DAME Max Ong University of Sheffield.
Introduction To System Analysis and Design
DAME: The route to commercialisation Tom Jackson University of York.
Institute for Science Networking IuK Trier Mar 12th 2001 Physics Portals based on Distributed Databases Thomas Severiens Institute for Science Networking.
UK e-Science DAME Project | UK DTI BROADEN Project All Hands Meeting19 th September 2006 Proxim-CBR: A Scalable Grid Service Network for Mobile Decision.
Rolls-Royce University Technology Centre in Control and Systems Engineering X. Ren, M. Ong, G. Allan, V. Kadirkamanathan, H. A. Thompson and P. J. Fleming.
Distributed Aircraft Maintenance Environment - DAME DAME Workflow Advisor Max Ong University of Sheffield.
The Grid System Design Liu Xiangrui Beijing Institute of Technology.
Max Ong University of Sheffield, UK. AHM 2004 Session 2.3: Workflow Composition, Wednesday 1 st September 2004, 4pm. Workflow Advisor in DAME Abstract.
1 Introduction to Software Engineering Lecture 1.
The DAME project Professor Jim Austin University of York.
Performance Evaluation of a SNAP-based Community Resource Broker Mohammed H. Haji, Peter Dew, Karim Djemame and Iain Gourlay.
DAME: A Distributed Diagnostics Environment for Maintenance Duncan Russell University of Leeds.
L6-S1 UML Overview 2003 SJSU -- CmpE Advanced Object-Oriented Analysis & Design Dr. M.E. Fayad, Professor Computer Engineering Department, Room #283I College.
1 Computing Challenges for the Square Kilometre Array Mathai Joseph & Harrick Vin Tata Research Development & Design Centre Pune, India CHEP Mumbai 16.
SEEK Welcome Malcolm Atkinson Director 12 th May 2004.
NA-MIC National Alliance for Medical Image Computing UCSD: Engineering Core 2 Portal and Grid Infrastructure.
GRID Overview Internet2 Member Meeting Spring 2003 Sandra Redman Information Technology and Systems Center and Information Technology Research Center National.
DAME: A Distributed Diagnostics Environment for Maintenance Dr Tom Jackson University of York.
Ruth Pordes November 2004TeraGrid GIG Site Review1 TeraGrid and Open Science Grid Ruth Pordes, Fermilab representing the Open Science.
NeSC Workshop - February /14 Study of User Priorities for e-Infrastructure for e-Research (SUPER) Steven Newhouse Jennifer Schopf Andrew Richards.
Overview of the DAME Project Distributed Aircraft Maintenance Environment University of York Martyn Fletcher.
Domain Classes – Part 1.  Analyze Requirements as per Use Case Model  Domain Model (Conceptual Class Diagram)  Interaction (Sequence) Diagrams  System.
Approaching Fine-grain Access Control for Distributed Biomedical Databases within Virtual Environments Onur Kalyoncu, Yi Pan, Matthias Assel High Performance.
International Symposium on Grid Computing (ISGC-07), Taipei - March 26-29, 2007 Of 16 1 A Novel Grid Resource Broker Cum Meta Scheduler - Asvija B System.
1 AHM, 2–4 Sept 2003 e-Science Centre GRID Authorization Framework for CCLRC Data Portal Ananta Manandhar.
INFSO-RI Enabling Grids for E-sciencE Policy management and fair share in gLite Andrea Guarise HPDC 2006 Paris June 19th, 2006.
The National Grid Service Mike Mineter.
The National Grid Service User Accounting System Katie Weeks Science and Technology Facilities Council.
Virtual Organisations for Trials and Epidemiological Studies (VOTES) Overview VOTES is a pioneering project investigating the application of Grid technology.
ETICS An Environment for Distributed Software Development in Aerospace Applications SpaceTransfer09 Hannover Messe, April 2009.
E-Science Centre of Excellence 1 The White Rose Grid Peter Dew Chair of the White Rose Grid Executive.
ACGT Architecture and Grid Infrastructure Juliusz Pukacki ‏ EGEE Conference Budapest, 4 October 2007.
1 Process activities. 2 Software specification Software design and implementation Software validation Software evolution.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI solution for high throughput data analysis Peter Solagna EGI.eu Operations.
Virtual Organisations and the NGS Mike Jones Research Computing Services e-Science & “The Grid” for Bio/Health Informaticians, IT January 2008.
PLM, Document and Workflow Management
Grid Portal Services IeSE (the Integrated e-Science Environment)
Servicenow Admin Certification Training
MANAGING KNOWLEDGE FOR THE DIGITAL FIRM
Grid Services B.Ramamurthy 12/28/2018 B.Ramamurthy.
Code Analysis, Repository and Modelling for e-Neuroscience
High Performance Computing Center – HLRS
Code Analysis, Repository and Modelling for e-Neuroscience
Presentation transcript:

Access Control for Dynamic Virtual Organisations Duncan Russell, Peter Dew & Karim Djemame University of Leeds

Access Control for Dynamic Virtual Organisations DAME Context DAME Virtual Organisation Demonstration Portal & Workflow Management Virtual Organisation Issues

DAME (Distributed Aircraft Maintenance Environment) EPSRC Funded, 3 years. Ends Dec Universities: – University of Leeds - School of Computing and School of Mechanical Engineering – University of Oxford - Dept of Engineering Science – University of Sheffield - Dept of Automatic Control and Systems Engineering – University of York - Dept of Computer Science Industrial Partners: – Rolls-Royce – Data Systems and Solutions

DAME System Aircraft Engine Diagnostics – Expert system & decision support – Predictive maintenance scheduling Distributed Resources – Data sources e.g. aircraft engines – Signal & Case data processing services Distributed Users – Maintenance staff at airport (for Airline) – Engine experts at Rolls Royce and DS&S On-demand Requirements – Diagnostics response within turn-around time

DAME Example Business process for diagnosing engine data Three roles: – Maintenance Engineer – Maintenance Analyst – Domain Expert Forms problem solving team

DAME Virtual Organisation

DAME VO Properties Role based Task oriented – Linked by diagnosis problem to solve Evolves over time – Dynamic membership – Multiples of role instances High availability of services – Dynamic selection of compute resource Access to restricted services & data

DAME Architecture VO Templates VO Instances Controlled access to workflow instances Presentation Tier Business Tier Service Tier Browser Portal Role database Case database Workflow Manager Workflow Credential Feature Visualization Feature Detection CBR Workflow Advisor Engine Data Store Broker White Rose Grid Pattern Matching Resource Tier Engine Model Jump

DAME Portal

DAME Portal Tools

DAME VO Issues Multiple portals, i.e. one per company Multiple workflow engines Multiple organisations defining rights for their: – Users by role – Workflow (task) by role – Services by role privileges – Data by ownership – Resources by usage Service logging

DAME VO Requirements Definition of flexible VO template policy – Administration rights to policy Implement flexible policy control mechanisms – VO members permitted to modify VO policy – Services read/modify VO policy by proxy Distribute VO access control to services and resources Back to Architecture

DAME Access Control Issues Service interface implementation: – Control of service access (using VO policy) – Modifying VO policy (using VO policy) Implementation issues: – Define template policy and translate to dynamic policy – Single entity or separate policy components – Synchronising simultaneous policy changes Current implementation: – VO templates describe static teams – Access control in presentation and business tiers only Single grid certificate in DAME collaborative workflows

Questions? Access Control for Dynamic Virtual Organisations Duncan Russell, Peter Dew & Karim Djemame University of Leeds This research is funded by the Engineering and Physical Science Research Council, e–Science Programme, Contract No. GR/R67668/01