Presentation is loading. Please wait.

Presentation is loading. Please wait.

Tokai Academic Cloud: An Experimental Intra And Inter- institutional Cloud Infrastructure among National Universities in The Tokai Region of Japan Shoji.

Similar presentations


Presentation on theme: "Tokai Academic Cloud: An Experimental Intra And Inter- institutional Cloud Infrastructure among National Universities in The Tokai Region of Japan Shoji."— Presentation transcript:

1 Tokai Academic Cloud: An Experimental Intra And Inter- institutional Cloud Infrastructure among National Universities in The Tokai Region of Japan Shoji Kajita, Ph.D IT Planning Office, Institute for Information Management and Communication Academic Center for Computing and Media Studies Kyoto University

2 Kyoto University One of the seven key national universities in Japan About 10,000 faculty, researcher & admin. staff About 23,000 under-graduate & graduate students Tokyo Nagoya Osaka Kyoto 500km Tokai Area = Central Part of Japan Nagoya 5,000 16,000

3 Nagoya Institute of Technology Shizuoka University Mie University Gifu University Nagoya University Toyohashi Institute of Technology ※ Google Map http://maps.google.com Tokai Academic Cloud Consortium A Virtual Consortium Among Six ITCs in National Universities

4 Contributions to ICA Community 1.Describe the current experiences of Tokai Academic Cloud under development 2.Propose a proxy type of Federated Shibboleth Authentication Handler for Identity Management of Consortium Cloud 3.Present our current activities on the use of VCL for teaching and learning at Nagoya U Emphasizing cultural aspects on implementing intra and inter-institutional cloud infrastructure from the view of Japanese H.E.

5 Tokai Academic Cloud

6 Challenges for Higher Educational Institutions Severe Competition among H.E. institutions in the world – Due to the globalization of economics supported by Information and Communication Technologies Severe Budget Cuts – Due to the economic downturn caused by the world’s economic crisis of 2008 Each institution must strengthen its organizational power with clear foresight and strategic visions Each institution must strengthen its organizational power with clear foresight and strategic visions

7 “Academic Cloud” We need to develop ``Academic Cloud'' as cloud computing of the academia, by the academia and for the academia The aim is to fulfill diverse needs from constituencies and to accommodate the complexity of academic and administrative computing requirements with affordable costs

8 Academic Cloud Environment 8

9 Nagoya Institute of Technology Shizuoka University Mie University Gifu University Nagoya University Toyohashi Institute of Technology ※ Google Map http://maps.google.com Tokai Academic Cloud Consortium A Virtual Consortium Among Six ITCs in National Universities June, 2009 – Having a meeting with the directors (or the delegation) from each ITC October, 2009 – Slected as a research project in the grant program of Joint Usage/Research Center for Interdisciplinary Large-scale Informa- tion Infrastructure – PI: The Director of Nagoya Institute of Technology – Center: Nagoya U September, 2009 – IBM Shared University Award April, 2010 – Grant-in-Aid for Scientific Research for 3 Yrs. (200K US$)

10 Background Started as a Research Most of national universities in Japan, a lot of faculty in IT Center have been getting involved in these operational issues Operation itself is the matter of Cloud Computing Best practices are still unclear and research issues must be there

11 11 Tokai Academic Cloud Architecture Vision Nagoya University Nagoya Institute of Technology Toyohashi Institute of Technology Mie University Gifu University Shizuoka University XXX University YYYY University Authentication Infrastructure Data & Storage Infrastructure Virtual Computing Laboratory …. Calendar Service ePortfolio Service Course Management Service Student Information Service Tokai Academic Cloud Consortium Portal Consortium Cloud Private Cloud Challenges on Inter-Cloud (1)Operation Coordination (2)Data Coordination (3)Automation

12 Three Tier Architecture based on Open Source Products Software-as-a-Service (SaaS) Platform-as-a-Service (PaaS) Infrastructure-as-a- Service (IaaS) Institutional Private Cloud Institutional Private Cloud Public Cloud Consortium Cloud Computing Infrastructure Middleware Infrastructure Service A Service B Service Z Data Storage Infrastructure

13 IBM BladeCenter E HS21/22 x 14 16GB mem 146GB HDD IBM BladeCenter E HS21/22 x 14 16GB mem 146GB HDD YAMAHA RTX1200 LAN2: 133.6.47/24 LAN1: 192.168.70/24 133.6.47.253 spider1 192.168.70.253 Nagoya University Campus Network IBM BladeCenter E HS22 x 12 16GB mem 146GB HDD IBM BladeCenter E HS22 x 12 16GB mem 146GB HDD MGMT1 IBM x3350 2GB mem, 73GB HDD VMWare ESX spider2 mysql LAN3: 192.168.80/24 Gakuzoh Kyoto Gakuzoh Kyoto Gakuzoh Hokkaido Gakuzoh Hokkaido Gakuzoh Kyushu Gakuzoh Kyushu Gakuzoh Osaka Gakuzoh Osaka Gakuzoh Nagoya SINET L2-VPN 2TB+20TB 2TB YAMAHA RTX1200 2001:DF:…./48 TAG 451 Tokai IPv6 Academic Network MGMT3 DNS VCL Front-end VMWare ESXi Tokai Academic IaaS NAREGI Computation Nodes Fujitsu HX600× 16 Fujitsu PRIMERGY RX200 ×6 NAREGI Computation Nodes Fujitsu HX600× 16 Fujitsu PRIMERGY RX200 ×6 Gbit Hub IBM BladeCenter E HS22 x 5 16GB mem 146GB HDD IBM BladeCenter E HS22 x 5 16GB mem 146GB HDD VMWare ESXi Gbit Hub LAN4: 10.0.70/22 Campus Network Nagoya University Service Mgmt Network

14 Tokai Academic Portal

15 Tokai Academic Calendar

16 Tokai VCL +100 Concurrent Uses Available Potentially on About 30 IBM BladeCenters

17 (2) Identity Management within Consortium Cloud

18 Tokai Academic Cloud Authentication Infrastructure App1 App2 App3 App4 App5 App6 CAS Server CAS Server Tokai Academic Portal uPortal4 Tokai Academic Portal uPortal4 Enable SSO for Services within Consortium Cloud Tokai LDAP NU Shib NITech Shib XXX Shib For orphan users For institutional users

19 Three Main Reasons 1.CAS is better than Shibboleth within organization – Various services provided through Consortium Cloud require fine-grained authentication and authorization rather than application container delegated authentication 2.LDAP authentication is not allowed for outside services (Shibboleth Authentication only) – Strict security policy in Japanese institutions 3.VCL cannot use other authentication method (Shib and LDAP) when using CAS

20 LDAP RDB MS Person Attribute Group Service PW Authentication Public Key (X.509) Authentication Attribute Processing org.jasig.cas.authentication.AuthenticationManagerImpl.authenticationHandler Authentication Request Result Person Directory Service FederatedShibbolethAuthenticationHandler as A Proxy Authentication 20 Federated Shib

21 Nagoya U Shib IdP A Shib SP Protected by Nagoya U Shib A Shib SP Protected by Nagoya U Shib ID Password Access 300 (NG) 200 (OK) ID Password Still under development Could be an issue against security policy because it may create a man-in-the-middle security hole 300 (OK) Its Implementation

22 (3) Current Activities on Use of VCL for Teaching and Learning at Nagoya University

23 Tokai VCL +100 Concurrent Uses Available Potentially on About 30 IBM BladeCenters

24 Nagoya University VCL Pilot Currently, five professors have been investigating the use in 2012 semesters: – Mathematics (Mathematica on Linux) – Signal Processing (Scilab on Linux) – Image Processing (Scilab and OpenCV on Linux) – Bio Informatics (PyMOL and Yasara on Linux) – Media Literacy (OpenCast on Linux) See Paper for detailed background and scenarios

25 PyMOL on Ubuntu

26 Cultural Aspects on Pilot 1.A Very Small Pilot – Again, due to the lack of operation staff and budgets 2.Use of Linux only – A strong opposition to enter Campus Agreement for dominant OS product 3.Use of Open Source and Shareware-based Applications – Limit of Budget – Scalability

27 In Summary Nagoya University Nagoya Institute of Technology Toyohashi Institute of Technology Mie University Gifu University Shizuoka University XXX University YYYY University Authentication Infrastructure Data & Storage Infrastructure Virtual Computing Laboratory …. Calendar Service ePortfolio Service Course Management Service Student Information Service Tokai Academic Cloud Consortium Portal Consortium Cloud Private Cloud Challenges on Inter-Cloud (1)Operation Coordination (2)Data Coordination (3)Automation (1) Architecture Vision based on OSS (3) VCL as a private cloud at Nagoya U (2) IdM for Consortium Cloud Efforts Continues on Tokai Academic Cloud!

28 Japanese version of EDUCASE has established since February 2011

29 Alert Notification and Survivor Confirmation as a First Cloud Service by AXIES Cloud SIG LDAP2 DB1 LDAP1 DB2 Email Addresses (University A) Encrypted Email Addresses (University C) Email Addresses (University B) Encrypted Operation (University A) Operation (University B) Operation (University C) Survivor Confirmation Reporting

30 Common Spec and Reference Implementation Different Impl and System with the same spec Impl A Impl B … Common Spec System A System B Lessons Learned Reference Impl. Feedback Common Spec システ ム The same Impl and System among different institutions Feedback Procurement Process Opened to All Venders AXIES システ ム System Customizable Open Source

31 Diverse Communities Needs Services Survivor Confirmation Service Survivor Confirmation at Higher Educational Institutions faculty, staff, students and administrators, … A very good testbed to think about Academic Cloud

32

33 Constituency Reachable Address Database Reachable Address Database Reliable Status Database Reliable Status Database Stakeholders at Crisis Situation Transmit Central ICT Organization Register MaintainAuthor Confirm Report Detect Alias Institutional Systems Social Media Social Media Institutional Systems Social Media Social Media Crisis Situation Large Scale Message Notification and Confirmation Service

34 Co-Development and Co-Operation among AXIES Institutions AXIES Consortium Finance Mgmt Copyright Mgmt Kyoto University WG Membership National X University Private A University Private B University National Y University Public C University Kyoto University Implement Maintenance System Requirements WG Membership Co-operation among member institutions LDAP DB Incetance Hosting Service Non-member


Download ppt "Tokai Academic Cloud: An Experimental Intra And Inter- institutional Cloud Infrastructure among National Universities in The Tokai Region of Japan Shoji."

Similar presentations


Ads by Google