Download presentation
Presentation is loading. Please wait.
Published byJean Porter Modified over 9 years ago
1
Tokai Academic Cloud: An Experimental Intra And Inter- institutional Cloud Infrastructure among National Universities in The Tokai Region of Japan Shoji Kajita, Ph.D IT Planning Office, Institute for Information Management and Communication Academic Center for Computing and Media Studies Kyoto University
2
Kyoto University One of the seven key national universities in Japan About 10,000 faculty, researcher & admin. staff About 23,000 under-graduate & graduate students Tokyo Nagoya Osaka Kyoto 500km Tokai Area = Central Part of Japan Nagoya 5,000 16,000
3
Nagoya Institute of Technology Shizuoka University Mie University Gifu University Nagoya University Toyohashi Institute of Technology ※ Google Map http://maps.google.com Tokai Academic Cloud Consortium A Virtual Consortium Among Six ITCs in National Universities
4
Contributions to ICA Community 1.Describe the current experiences of Tokai Academic Cloud under development 2.Propose a proxy type of Federated Shibboleth Authentication Handler for Identity Management of Consortium Cloud 3.Present our current activities on the use of VCL for teaching and learning at Nagoya U Emphasizing cultural aspects on implementing intra and inter-institutional cloud infrastructure from the view of Japanese H.E.
5
Tokai Academic Cloud
6
Challenges for Higher Educational Institutions Severe Competition among H.E. institutions in the world – Due to the globalization of economics supported by Information and Communication Technologies Severe Budget Cuts – Due to the economic downturn caused by the world’s economic crisis of 2008 Each institution must strengthen its organizational power with clear foresight and strategic visions Each institution must strengthen its organizational power with clear foresight and strategic visions
7
“Academic Cloud” We need to develop ``Academic Cloud'' as cloud computing of the academia, by the academia and for the academia The aim is to fulfill diverse needs from constituencies and to accommodate the complexity of academic and administrative computing requirements with affordable costs
8
Academic Cloud Environment 8
9
Nagoya Institute of Technology Shizuoka University Mie University Gifu University Nagoya University Toyohashi Institute of Technology ※ Google Map http://maps.google.com Tokai Academic Cloud Consortium A Virtual Consortium Among Six ITCs in National Universities June, 2009 – Having a meeting with the directors (or the delegation) from each ITC October, 2009 – Slected as a research project in the grant program of Joint Usage/Research Center for Interdisciplinary Large-scale Informa- tion Infrastructure – PI: The Director of Nagoya Institute of Technology – Center: Nagoya U September, 2009 – IBM Shared University Award April, 2010 – Grant-in-Aid for Scientific Research for 3 Yrs. (200K US$)
10
Background Started as a Research Most of national universities in Japan, a lot of faculty in IT Center have been getting involved in these operational issues Operation itself is the matter of Cloud Computing Best practices are still unclear and research issues must be there
11
11 Tokai Academic Cloud Architecture Vision Nagoya University Nagoya Institute of Technology Toyohashi Institute of Technology Mie University Gifu University Shizuoka University XXX University YYYY University Authentication Infrastructure Data & Storage Infrastructure Virtual Computing Laboratory …. Calendar Service ePortfolio Service Course Management Service Student Information Service Tokai Academic Cloud Consortium Portal Consortium Cloud Private Cloud Challenges on Inter-Cloud (1)Operation Coordination (2)Data Coordination (3)Automation
12
Three Tier Architecture based on Open Source Products Software-as-a-Service (SaaS) Platform-as-a-Service (PaaS) Infrastructure-as-a- Service (IaaS) Institutional Private Cloud Institutional Private Cloud Public Cloud Consortium Cloud Computing Infrastructure Middleware Infrastructure Service A Service B Service Z Data Storage Infrastructure
13
IBM BladeCenter E HS21/22 x 14 16GB mem 146GB HDD IBM BladeCenter E HS21/22 x 14 16GB mem 146GB HDD YAMAHA RTX1200 LAN2: 133.6.47/24 LAN1: 192.168.70/24 133.6.47.253 spider1 192.168.70.253 Nagoya University Campus Network IBM BladeCenter E HS22 x 12 16GB mem 146GB HDD IBM BladeCenter E HS22 x 12 16GB mem 146GB HDD MGMT1 IBM x3350 2GB mem, 73GB HDD VMWare ESX spider2 mysql LAN3: 192.168.80/24 Gakuzoh Kyoto Gakuzoh Kyoto Gakuzoh Hokkaido Gakuzoh Hokkaido Gakuzoh Kyushu Gakuzoh Kyushu Gakuzoh Osaka Gakuzoh Osaka Gakuzoh Nagoya SINET L2-VPN 2TB+20TB 2TB YAMAHA RTX1200 2001:DF:…./48 TAG 451 Tokai IPv6 Academic Network MGMT3 DNS VCL Front-end VMWare ESXi Tokai Academic IaaS NAREGI Computation Nodes Fujitsu HX600× 16 Fujitsu PRIMERGY RX200 ×6 NAREGI Computation Nodes Fujitsu HX600× 16 Fujitsu PRIMERGY RX200 ×6 Gbit Hub IBM BladeCenter E HS22 x 5 16GB mem 146GB HDD IBM BladeCenter E HS22 x 5 16GB mem 146GB HDD VMWare ESXi Gbit Hub LAN4: 10.0.70/22 Campus Network Nagoya University Service Mgmt Network
14
Tokai Academic Portal
15
Tokai Academic Calendar
16
Tokai VCL +100 Concurrent Uses Available Potentially on About 30 IBM BladeCenters
17
(2) Identity Management within Consortium Cloud
18
Tokai Academic Cloud Authentication Infrastructure App1 App2 App3 App4 App5 App6 CAS Server CAS Server Tokai Academic Portal uPortal4 Tokai Academic Portal uPortal4 Enable SSO for Services within Consortium Cloud Tokai LDAP NU Shib NITech Shib XXX Shib For orphan users For institutional users
19
Three Main Reasons 1.CAS is better than Shibboleth within organization – Various services provided through Consortium Cloud require fine-grained authentication and authorization rather than application container delegated authentication 2.LDAP authentication is not allowed for outside services (Shibboleth Authentication only) – Strict security policy in Japanese institutions 3.VCL cannot use other authentication method (Shib and LDAP) when using CAS
20
LDAP RDB MS Person Attribute Group Service PW Authentication Public Key (X.509) Authentication Attribute Processing org.jasig.cas.authentication.AuthenticationManagerImpl.authenticationHandler Authentication Request Result Person Directory Service FederatedShibbolethAuthenticationHandler as A Proxy Authentication 20 Federated Shib
21
Nagoya U Shib IdP A Shib SP Protected by Nagoya U Shib A Shib SP Protected by Nagoya U Shib ID Password Access 300 (NG) 200 (OK) ID Password Still under development Could be an issue against security policy because it may create a man-in-the-middle security hole 300 (OK) Its Implementation
22
(3) Current Activities on Use of VCL for Teaching and Learning at Nagoya University
23
Tokai VCL +100 Concurrent Uses Available Potentially on About 30 IBM BladeCenters
24
Nagoya University VCL Pilot Currently, five professors have been investigating the use in 2012 semesters: – Mathematics (Mathematica on Linux) – Signal Processing (Scilab on Linux) – Image Processing (Scilab and OpenCV on Linux) – Bio Informatics (PyMOL and Yasara on Linux) – Media Literacy (OpenCast on Linux) See Paper for detailed background and scenarios
25
PyMOL on Ubuntu
26
Cultural Aspects on Pilot 1.A Very Small Pilot – Again, due to the lack of operation staff and budgets 2.Use of Linux only – A strong opposition to enter Campus Agreement for dominant OS product 3.Use of Open Source and Shareware-based Applications – Limit of Budget – Scalability
27
In Summary Nagoya University Nagoya Institute of Technology Toyohashi Institute of Technology Mie University Gifu University Shizuoka University XXX University YYYY University Authentication Infrastructure Data & Storage Infrastructure Virtual Computing Laboratory …. Calendar Service ePortfolio Service Course Management Service Student Information Service Tokai Academic Cloud Consortium Portal Consortium Cloud Private Cloud Challenges on Inter-Cloud (1)Operation Coordination (2)Data Coordination (3)Automation (1) Architecture Vision based on OSS (3) VCL as a private cloud at Nagoya U (2) IdM for Consortium Cloud Efforts Continues on Tokai Academic Cloud!
28
Japanese version of EDUCASE has established since February 2011
29
Alert Notification and Survivor Confirmation as a First Cloud Service by AXIES Cloud SIG LDAP2 DB1 LDAP1 DB2 Email Addresses (University A) Encrypted Email Addresses (University C) Email Addresses (University B) Encrypted Operation (University A) Operation (University B) Operation (University C) Survivor Confirmation Reporting
30
Common Spec and Reference Implementation Different Impl and System with the same spec Impl A Impl B … Common Spec System A System B Lessons Learned Reference Impl. Feedback Common Spec システ ム The same Impl and System among different institutions Feedback Procurement Process Opened to All Venders AXIES システ ム System Customizable Open Source
31
Diverse Communities Needs Services Survivor Confirmation Service Survivor Confirmation at Higher Educational Institutions faculty, staff, students and administrators, … A very good testbed to think about Academic Cloud
33
Constituency Reachable Address Database Reachable Address Database Reliable Status Database Reliable Status Database Stakeholders at Crisis Situation Transmit Central ICT Organization Register MaintainAuthor Confirm Report Detect Alias Institutional Systems Social Media Social Media Institutional Systems Social Media Social Media Crisis Situation Large Scale Message Notification and Confirmation Service
34
Co-Development and Co-Operation among AXIES Institutions AXIES Consortium Finance Mgmt Copyright Mgmt Kyoto University WG Membership National X University Private A University Private B University National Y University Public C University Kyoto University Implement Maintenance System Requirements WG Membership Co-operation among member institutions LDAP DB Incetance Hosting Service Non-member
Similar presentations
© 2025 SlidePlayer.com Inc.
All rights reserved.