EU Phosphorus Project Harmony. (on

Size: px
Start display at page:

Download "EU Phosphorus Project Harmony. (on"

Transcription

1 EU Phosphorus Project Harmony Advance Reservation features for Grids (on behalf of UniBonn, SURFnet, UvA,, CRC, Nortel,, FHG, I2CAT) E2E Workshop Establishing Lightpaths Amsterdam, December 2008

2 Phosphorus Architecture HARMONY

3 Harmony system is An multi-domain path provisioning system where users and Grid applications can book in advance end-to-end paths with AA The Harmony Service Interface (HSI) allows the user, Middleware or ever applications operate the whole inter-domain scenario Harmony allows heterogeneous domain interoperability by performing an inter-domain resource brokering over the heterogeneous Network Resource Provisioning Systems (NRPS) underlying NRPS considered are: Argia/UCLP (CA-CRC/Inocybe, Spain-i2CAT) ARGON (Germany Viola Testbed) DRAC (Holland- Nortel/SURFnet)

4 Grid applications in Phosphorus WISDOM - Wide In Silico Docking On Malaria WISDOM consists of virtual screening techniques AutoDock and FlexX. both are in silico docking techniques, where researchers use large computing power (Grid systems) to compute the probability that potential drugs will dock with a target protein. Distribution of high volume input data from the specified Input data Server High bandwidth need and low latency for data distribution of up to 240 GB KoDaVis Making Atmospheric Processes visible Simulations of physical and chemical processes in the atmosphere help to understand the effect of human activities on the climate: data sets ~ 1000 GigaByte stored on 1 or more central servers Collaborative visualization of data provides insight into processes TOPS - Technology for Optical Pixel Streaming Streaming of high resolution 2D scientific content Huge data source (~50 TB), not practical to transfer data itself Interactive queries on data source. Results (images) are streamed to scientist for analysis Visualisation of huge data-sets on a tiled panel display (TPD). The rendering is performed at a source node Requirements: 10 Gbit/s, 100 msec latency, layer 2, MTU 9000 DDSS Distributed Data Storage System Huge data volumes moved over the network in parallel TCP/IP streams Transfers both latency- and bandwidth-dependent Single network links allocation for one-to-one scenarios

5 Harmony testbed

6 HARMONY Architecture Key points: Distributed (P2P) or Hierarchical architecture for the Network Service Plane (NSP) The NSP is composed by independent entities (Inter Domain Brokers) Harmony Service Interface common for the adaptation layer and the network service plane

7 Harmony Service Interface HSI

8 Harmony AAI Overview The Harmony System implements an Authentication (AuthN) and Authorisation (AuthZ) Infrastructure based on the Generalised AAA Toolkit [1]. AuthN Based on user certificate + user signature. PKI-based, using certificate X.509. Signature is exchanged using SAML assertions among entities. Signature added as part of the SOAP header in the service request message. AuthZ Access control based on XACML obligations using local policy databases. Implemented using GAAA-Toolkit (ver. 0.5). Session is kept exchanging tokens among entities (token := GRI, value, validity) [1]

9 Advance Reservation Algorithm Malleable reservations stand behind the user intention for transfering a certain amount of data within a given deadline. bandwidth When a reservation request is received, the IDB loops over different interdomain paths, possible start times and bandwidths (inside user s constraints range) to find a set of available resources that fulfill the request. The steps followed by the IDB are: earliest start time 1. Path computation and choice of bandwidth In a first step, a path between the given user endpoints is computed. Then, only bandwidths in the range requested are chosen. deadline time 2. Bandwidth adaptation The attempt here is made to adjust all the endpoints on the given path to a common bandwidth level. First, it chooses the min-max bandwidth following user s constratins. In the second step, the highest bandwidths are reduced according to the technology-induced granularity until the smallest bandwidth is equal to or greater than the minmax bandwidth. 3. Availability checking In this step the availability of the network resources is checked. 4. Reservation The final step commits the fixed reservation constraints that fulfils the original malleable reservation request.

10 Harmony and the outer world Current implement.: Harmony-IDC gateway (signaling demonstrated on SC08, booth #2603) Harmony-G2MPLS (signaling, working on topology) HarmonyAutobhan (under design, using IDC) Key points: For any integration it is necessary to build an Harmony Gateway (HG), with the HSI on the one hand, and the interface of the other system in the other hand HG translates requests in one system-language to HSI, bi-directionally. Modularity in the internals of HG allow stateful or stateless interoperability, depending on HG implementation NSI OGF participation

11 Harmony-IDC Gateway 1. IDB in Harmony receives reservation request. 2. IDC is seen as a simple domain (limited IDB request forwarding-) 3. Reservation request to IDC domain is sent to the Gateway 4. Gateway translates request from Harmony to IDC and initiates the reservation procedure in IDC control plane.

12 Harmony administrator GUI

13 Admin GUI

14

15 Thanks for your attention Sergi Figuerola (i2cat Foundation,, Barcelona) or

Project Vision and Mission

Project Vision and Mission Solving End to End connectivity with GMPLS Radek Krzywania, PSNC, Poland radek.krzywania@man.poznan.pl April 4th 2008, Munich NGN meeting Phopshorus project European and Global alliance of partners to

More information

Solving End-to-End connectivity with GMPLS

Solving End-to-End connectivity with GMPLS Solving End-to-End connectivity with GMPLS Radek Krzywania, PSNC, Poland radek.krzywania@man.poznan.pl April 4 th 2008, Munich NGN meeting Phopshorus project European and Global alliance of partners to

More information

Attributes used for Authorisation in Network Resource Provisioning

Attributes used for Authorisation in Network Resource Provisioning Attributes used for Authorisation in Network Resource Provisioning (XACML-NRP Authorisation Interoperability Profile for NRP) Yuri Demchenko System and Network Engineering Group University of Amsterdam

More information

FP6 Phosphorus and FP7 Federica projects

FP6 Phosphorus and FP7 Federica projects FP6 Phosphorus and FP7 Federica projects Network resources for grid applications and Europe-wide experimental open infrastructure Joan Antoni García Espín Network Engineer i2cat Foundation, Barcelona (Catalonia,

More information

Deliverable reference number: D.4.1. AAA Architectures for multi-domain optical networking scenario's

Deliverable reference number: D.4.1. AAA Architectures for multi-domain optical networking scenario's 034115 PHOSPHORUS Lambda User Controlled Infrastructure for European Research Integrated Project Strategic objective: Research Networking Testbeds Deliverable reference number: D.4.1 AAA Architectures

More information

Integration of Network Services Interface version 2 with the JUNOS Space SDK

Integration of Network Services Interface version 2 with the JUNOS Space SDK Integration of Network Services Interface version 2 with the JUNOS Space SDK Radosław Krzywania, Michał Balcerkiewicz, Bartosz Belter Poznan Supercomputing and Networking Center, ul. Z. Noskowskiego 12/14,

More information

Federated Authentication with Web Services Clients

Federated Authentication with Web Services Clients Federated Authentication with Web Services Clients in the context of SAML based AAI federations Thomas Lenggenhager thomas.lenggenhager@switch.ch Mannheim, 8. March 2011 Overview SAML n-tier Delegation

More information

AutoBAHN Provisioning guaranteed capacity circuits across networks

AutoBAHN Provisioning guaranteed capacity circuits across networks AutoBAHN Provisioning guaranteed capacity circuits across networks Afrodite Sevasti, GRNET 1 st End-to-end workshop: Establishing lightpaths 1-2 December 2008, TERENA, Amsterdam AutoBAHN is a research

More information

NSI: The common interface towards network services

NSI: The common interface towards network services NSI: The common interface towards network services TERENA June 2009 Eduard Escalona, University of Essex http://forge.gridforum.org/sf/projects/nsi-wg Slides Credit: NSI-WG contributors Talk Overview Need

More information

ForCES: An implementation

ForCES: An implementation ForCES: An implementation Evangelos Haleplidis (ehalep@ece.upatras.gr) (Speaker) Odysseas Koufopavlou (odysseas@ece.upatras.gr) Denazis Spyros (sdena@ece.upatras.gr) University of Patras Department of

More information

glite Java Authorisation Framework (gjaf) and Authorisation Policy coordination

glite Java Authorisation Framework (gjaf) and Authorisation Policy coordination glite Java Authorisation Framework (gjaf) and Authorisation Policy coordination Yuri Demchenko University of Amsterdam MWSG meeting EGEE 06 Conference, September 27, 2006, Geneve www.eu-egee.org EGEE and

More information

Rapid Deployment of VS Workflows. Meta Scheduling Service

Rapid Deployment of VS Workflows. Meta Scheduling Service Rapid Deployment of VS Workflows on PHOSPHORUS using Meta Scheduling Service M. Shahid, Bjoern Hagemeier Fraunhofer Institute SCAI, Research Center Juelich. (TNC 2009) Outline Introduction and Motivation

More information

National R&E Networks: Engines for innovation in research

National R&E Networks: Engines for innovation in research National R&E Networks: Engines for innovation in research Erik-Jan Bos EGI Technical Forum 2010 Amsterdam, The Netherlands September 15, 2010 Erik-Jan Bos - Chief Technology Officer at Dutch NREN SURFnet

More information

Functional Requirements for Grid Oriented Optical Networks

Functional Requirements for Grid Oriented Optical Networks Functional Requirements for Grid Oriented Optical s Luca Valcarenghi Internal Workshop 4 on Photonic s and Technologies Scuola Superiore Sant Anna Pisa June 3-4, 2003 1 Motivations Grid networking connection

More information

Application Projects in VIOLA

Application Projects in VIOLA Application Projects in VIOLA The integration of applications with high communication demands is a crucial element of the vertically integrated approach of VIOLA. These demands include guaranteed high

More information

Authorisation Infrastructure for On-Demand Network Resource Provisioning

Authorisation Infrastructure for On-Demand Network Resource Provisioning Authorisation Infrastructure for On-Demand Network Resource Provisioning Yuri Demchenko, Alfred Wan, Mihai Cristea, Cees de Laat University of Amsterdam {demch, wan, cristea, delaat}@science.uva.nl Abstract

More information

Evolution of OSCARS. Chin Guok, Network Engineer ESnet Network Engineering Group. Winter 2012 Internet2 Joint Techs. Baton Rouge, LA.

Evolution of OSCARS. Chin Guok, Network Engineer ESnet Network Engineering Group. Winter 2012 Internet2 Joint Techs. Baton Rouge, LA. Evolution of OSCARS Chin Guok, Network Engineer ESnet Network Engineering Group Winter 2012 Internet2 Joint Techs Baton Rouge, LA Jan 23, 2012 Outline What was the motivation for OSCARS History of OSCARS

More information

UCLPv2 update TERENA (CRC, UofO, Inocybe Tech. and i2cat developments) Sergi Figuerola Fundació i2cat

UCLPv2 update TERENA (CRC, UofO, Inocybe Tech. and i2cat developments) Sergi Figuerola Fundació i2cat UCLPv2 update TF-NGN TERENA (CRC, UofO, Inocybe Tech. and i2cat developments) Sergi Figuerola Fundació i2cat Sergi.figuerola@i2cat.net Cambridge, January 2005 i2cat Foundation i2cat Foundation : private

More information

User Controlled LightPaths version 2

User Controlled LightPaths version 2 User Controlled LightPaths version 2 Carol Meertens and Tijmen van den Brink February 6, 2007 1 Objectives Optical Networks Terminology Why UCLP? 2 Lower Layer - Resource Management Middle Layer - Virtualization

More information

Milestone deliverable reference number M.4.1 (Part 1 of the Deliverable D.4.1)

Milestone deliverable reference number M.4.1 (Part 1 of the Deliverable D.4.1) 034115 PHOSPHORUS Lambda User Controlled Infrastructure for European Research Integrated Project Strategic objective: Research Networking Testbeds Milestone deliverable reference number M.4.1 (Part 1 of

More information

Internet2 DCN and Dynamic Circuit GOLEs. Eric Boyd Deputy Technology Officer Internet2 GLIF Catania March 5, 2009

Internet2 DCN and Dynamic Circuit GOLEs. Eric Boyd Deputy Technology Officer Internet2 GLIF Catania March 5, 2009 Internet2 DCN and Dynamic Circuit GOLEs Eric Boyd Deputy Technology Officer Internet2 GLIF Catania March 5, 2009 Internet2 Strategic Plan Operate a National R&E Network Build Advanced Tools and Services

More information

SELF SERVICE INTERFACE CODE OF CONNECTION

SELF SERVICE INTERFACE CODE OF CONNECTION SELF SERVICE INTERFACE CODE OF CONNECTION Definitions SSI Administration User Identity Management System Identity Provider Service Policy Enforcement Point (or PEP) SAML Security Patch Smart Card Token

More information

New trends in Identity Management

New trends in Identity Management New trends in Identity Management Peter Gietz, DAASI International GmbH peter.gietz@daasi.de Track on Research and Education Networking in South East Europe, Yu Info 2007, Kopaionik, Serbia 14 March 2007

More information

Identität und Autorisierung als Grundlage für sichere Web-Services. Dr. Hannes P. Lubich IT Security Strategist

Identität und Autorisierung als Grundlage für sichere Web-Services. Dr. Hannes P. Lubich IT Security Strategist Identität und Autorisierung als Grundlage für sichere Web-Services Dr. Hannes P. Lubich IT Security Strategist The Web Services Temptation For every $1 spent on software $3 to $5 is spent on integration

More information

Implementation of the FELIX SDN Experimental Facility

Implementation of the FELIX SDN Experimental Facility Implementation of the FELIX SDN Experimental Facility U. Toseef, C. Fernandez, C. Bermudo, G. Carrozzo, R. Monno, B. Belter, K. Dombek, L. Ogrodowczyk, T. Kudoh, A. Takefusa, J. Haga, T. Ikeda, J. Tanaka,

More information

Results from the EARNEST Technical Study

Results from the EARNEST Technical Study EARNEST Workshop, Amsterdam, 8 May 2007 Results from the EARNEST Technical Study Licia Florio, TERENA florio@terena.org Agenda Technical study Lower layers preliminary results Middleware preliminary results

More information

Deploying Standards-based, Multi-domain, Bandwidth-on-Demand

Deploying Standards-based, Multi-domain, Bandwidth-on-Demand Nordic Infrastructure for Research & Education Deploying Standards-based, Multi-domain, Bandwidth-on-Demand Lars Fischer 28 th NORDUnet Conference Uppsala, 23 September 2014 The State of BoD Hybrid networking

More information

Cisco ACI Simulator VM Installation Guide

Cisco ACI Simulator VM Installation Guide Cisco ACI Simulator VM Installation Guide New and Changed Information 2 About the Application Policy Infrastructure Controller 2 About the ACI Simulator Virtual Machine 2 Simulator VM Topology and Connections

More information

Identity Management in ESA Grid on-demand Infrastructure

Identity Management in ESA Grid on-demand Infrastructure Identity Management in ESA Grid on-demand Infrastructure OGC TC - Europe Forum 4 December 2008, Valencia Pedro Pereira Gonçalves http://www.terradue.com Slide 1 ESA G-POD Infrastructure! Computing and

More information

LionShare: A Hybrid Secure Network for Academic Collaboration. Michael J. Halm, Marek Hatala, Derek Morr and Alex Valentine

LionShare: A Hybrid Secure Network for Academic Collaboration. Michael J. Halm, Marek Hatala, Derek Morr and Alex Valentine LionShare: A Hybrid Secure Network for Academic Collaboration Michael J. Halm, Marek Hatala, Derek Morr and Alex Valentine Presentation Overview Brief LionShare Overview LionShare Security Overview Connecting

More information

DWDM-RAM: DARPA-Sponsored Research for Data Intensive Service-on-Demand Advanced Optical Networks

DWDM-RAM: DARPA-Sponsored Research for Data Intensive Service-on-Demand Advanced Optical Networks DWDM RAM @LIGHTspeed DWDM-RAM: DARPA-Sponsored Research for Intensive -on-demand Advanced Optical Networks Tal Lavian BUSINESS WITHOUT BOUNDARIES Optical Abundant Bandwidth Meets Grid The Intensive App

More information

EUDAT. Towards a pan-european Collaborative Data Infrastructure

EUDAT. Towards a pan-european Collaborative Data Infrastructure EUDAT Towards a pan-european Collaborative Data Infrastructure Giuseppe Fiameni (g.fiameni@cineca.it) Claudio Cacciari SuperComputing, Application and Innovation CINECA Johannes Reatz RZG, Germany Damien

More information

UNICORE Globus: Interoperability of Grid Infrastructures

UNICORE Globus: Interoperability of Grid Infrastructures UNICORE : Interoperability of Grid Infrastructures Michael Rambadt Philipp Wieder Central Institute for Applied Mathematics (ZAM) Research Centre Juelich D 52425 Juelich, Germany Phone: +49 2461 612057

More information

Advance and Immediate Reservations of Virtualized Network Resources

Advance and Immediate Reservations of Virtualized Network Resources Advance and Immediate Reservations of Virtualized Network Resources Laia Ferrao, Xavier Barrera, Eduard Grasa, Sergi Figuerola Fundació i2cat, Gran Capità 2 4 Edifici Nexus I 2ª planta, despatx 203, 08034

More information

Ad Hoc Trust Associations with Trust Anchor Repositories

Ad Hoc Trust Associations with Trust Anchor Repositories Ad Hoc Trust Associations with Trust Anchor Repositories Stefan Roelofs Research Project 2 1 July, 2009 1 Agenda Research Questions DNSSEC Agenda Research Questions DNSSEC Global Trust Hierarchy versus

More information

Grid Architectural Models

Grid Architectural Models Grid Architectural Models Computational Grids - A computational Grid aggregates the processing power from a distributed collection of systems - This type of Grid is primarily composed of low powered computers

More information

StarPlane an Application Controlled Photonic Network

StarPlane an Application Controlled Photonic Network Expanding the Knowledge Economy: Issues, Applications, Case Studies Paul Cunningham and Miriam Cunningham (Eds) IOS Press, 2007 Amsterdam ISBN 978 1 58603 801-4 StarPlane an Application Controlled Photonic

More information

Deliverable DJ3.3.1: Composable Network Services use cases

Deliverable DJ3.3.1: Composable Network Services use cases 11-01-2010 Composable Network Services use cases Deliverable DJ3.3.1 Contractual Date: 30-09-2009 Actual Date: 11-01-2010 Grant Agreement No.: 238875 Activity: JRA3 Task: T3 Nature of Deliverable: R (Report),

More information

KoM WP3 Task3.2 Overview and Next steps. Yuri Demchenko University of Amsterdam

KoM WP3 Task3.2 Overview and Next steps. Yuri Demchenko University of Amsterdam KoM WP3 Task3.2 Overview and Next steps Yuri Demchenko University of Amsterdam Task 3.2 Development of Security and Access Control Mechanisms in a Multi-cloud Federated Environment [M2-M24] Task leader:

More information

INDIGO AAI An overview and status update!

INDIGO AAI An overview and status update! RIA-653549 INDIGO DataCloud INDIGO AAI An overview and status update! Andrea Ceccanti (INFN) on behalf of the INDIGO AAI Task Force! indigo-aai-tf@lists.indigo-datacloud.org INDIGO Datacloud An H2020 project

More information

Fusion of Bandwidth on Demand and Virtual Organizations

Fusion of Bandwidth on Demand and Virtual Organizations Fusion of Bandwidth on Demand and Virtual Organizations Harold Teunissen and Gerben van Malenstein SURFnet I2JTW12 January 2012 Changing Behaviors Hierarchical Secrecy Loose Alliance Sluggish Novelty Tunnel

More information

SURFnet network developments 10th E-VLBI workshop 15 Nov Wouter Huisman SURFnet

SURFnet network developments 10th E-VLBI workshop 15 Nov Wouter Huisman SURFnet SURFnet network developments 10th E-VLBI workshop 15 Nov 2011 Wouter Huisman SURFnet Engine for Innovation Mission To improve higher education and research by promoting, developing and operating a trusted,

More information

Lightpath AAA Gap Analysis

Lightpath AAA Gap Analysis Lightpath AAA Gap Analysis or Filling the Gap with GAAA-P SURFnet RoN Meeting 17-18 October 2005, Utrecht Yuri Demchenko Advanced Internet Research Group University of Amsterdam

More information

Dynamic Security Context Management in Grid-based Applications

Dynamic Security Context Management in Grid-based Applications Abstract Dynamic Security Context Management in Grid-based Applications Yuri Demchenko #1, Olle Mulmo *2, Leon Gommans #3, Cees de Laat #4, Alfred Wan #5 # System and Network Engineering Group, University

More information

DWDM-RAM: Enabling Grid Services with Dynamic Optical Networks

DWDM-RAM: Enabling Grid Services with Dynamic Optical Networks DWDM-RAM: Enabling Grid Services with Dynamic Optical Networks S. Figueira, S. Naiksatam, H. Cohen, D. Cutrell, P. Daspit, D. Gutierrez, D. Hoang, T. Lavian, J. Mambretti, S. Merrill, F. Travostino 1 DWDM-RAM

More information

Datapower is both a security appliance & can provide a firewall mechanism to get into Systems of Record

Datapower is both a security appliance & can provide a firewall mechanism to get into Systems of Record 1 2 3 Datapower is both a security appliance & can provide a firewall mechanism to get into Systems of Record 5 White boxes show the access points for different kinds of security. That s what we will

More information

AA Developers Meeting

AA Developers Meeting AA Developers Meeting Attendees Alan Robiette Ali Odaci Bob Morgan David Chadwick David Orrell Diego Lopez Ingrid Melve Licia Florio Lyn Norris Maarten Koopmans Roland Hedberg Thomas Lenggenhager Ton Verschuren

More information

TechSec WG: Related activities overview Information and discussion TechSec WG, RIPE-45 May 14, 2003

TechSec WG: Related activities overview Information and discussion TechSec WG, RIPE-45 May 14, 2003 TechSec WG: Related activities overview Information and discussion TechSec WG, RIPE-45 May 14, 2003 Yuri Demchenko Outline TechSec WG liaison with CSIRT community! Results and developments

More information

A Simplified Access to Grid Resources for Virtual Research Communities

A Simplified Access to Grid Resources for Virtual Research Communities Consorzio COMETA - Progetto PI2S2 UNIONE EUROPEA A Simplified Access to Grid Resources for Virtual Research Communities Roberto BARBERA (1-3), Marco FARGETTA (3,*) and Riccardo ROTONDO (2) (1) Department

More information

HealthGrids: In Search for Sustainable Solutions

HealthGrids: In Search for Sustainable Solutions HealthGrids: In Search for Sustainable Solutions Karl A. Stroetmann MBA PhD FRSM with Alexander Dobrev, Dainis Zegners empirica Communication & Technology Research, Bonn, Germany 1 Contents Definition

More information

[GSoC Proposal] Securing Airavata API

[GSoC Proposal] Securing Airavata API [GSoC Proposal] Securing Airavata API TITLE: Securing AIRAVATA API ABSTRACT: The goal of this project is to design and implement the solution for securing AIRAVATA API. Particularly, this includes authenticating

More information

Authorisation Policy coordination and glite Java Authorisation Framework (gjaf)

Authorisation Policy coordination and glite Java Authorisation Framework (gjaf) Authorisation Policy coordination and glite Java Authorisation Framework (gjaf) Yuri Demchenko University of Amsterdam JRA1 All Hands meeting, July 10-12, 2006, Pilsen www.eu-egee.org EGEE and glite are

More information

Forschungszentrum Jülich in der Helmholtz-Gesellschaft

Forschungszentrum Jülich in der Helmholtz-Gesellschaft Grid Standards, Interoperability and Applications UNICORE Tutorial 25.-26.07.200726.07.2007 Morris Riedel m.riedel@fz-juelich.de Forschungszentrum Jülich in der Helmholtz-Gesellschaft Outline Grid Standards

More information

National Identity Exchange Federation. Terminology Reference. Version 1.0

National Identity Exchange Federation. Terminology Reference. Version 1.0 National Identity Exchange Federation Terminology Reference Version 1.0 August 18, 2014 Table of Contents 1. INTRODUCTION AND PURPOSE... 2 2. REFERENCES... 2 3. BASIC NIEF TERMS AND DEFINITIONS... 5 4.

More information

FELIX project : Overview and the results. Tomohiro Kudoh (The University of Tokyo / AIST) on behalf of all FELIX partners

FELIX project : Overview and the results. Tomohiro Kudoh (The University of Tokyo / AIST) on behalf of all FELIX partners FELIX project : Overview and the results Tomohiro Kudoh (The University of Tokyo / AIST) on behalf of all FELIX partners FELIX partners European Partners: Japanese Partners: PSNC (coord.) AIST (coord.)

More information

SENSE: SDN for End-to-end Networked Science at the Exascale

SENSE: SDN for End-to-end Networked Science at the Exascale SENSE: SDN for End-to-end Networked Science at the Exascale SENSE Research Team INDIS Workshop, SC18 November 11, 2018 Dallas, Texas SENSE Team Sponsor Advanced Scientific Computing Research (ASCR) ESnet

More information

Goal. TeraGrid. Challenges. Federated Login to TeraGrid

Goal. TeraGrid. Challenges. Federated Login to TeraGrid Goal Federated Login to Jim Basney Terry Fleury Von Welch Enable researchers to use the authentication method of their home organization for access to Researchers don t need to use -specific credentials

More information

Identity and capability management and federation

Identity and capability management and federation Identity and capability management and federation The need to manage identities - 1 Increment of digital identity complexity Password, dynamic password, one-time password, based on portable secure devices

More information

EnterSpace Data Sheet

EnterSpace Data Sheet EnterSpace 7.0.4.3 Data Sheet ENTERSPACE BUNDLE COMPONENTS Policy Engine The policy engine is the heart of EnterSpace. It evaluates digital access control policies and makes dynamic, real-time decisions

More information

Grid Scheduling Architectures with Globus

Grid Scheduling Architectures with Globus Grid Scheduling Architectures with Workshop on Scheduling WS 07 Cetraro, Italy July 28, 2007 Ignacio Martin Llorente Distributed Systems Architecture Group Universidad Complutense de Madrid 1/38 Contents

More information

Experiences with Dynamic Circuit Creation in a Regional Network Testbed

Experiences with Dynamic Circuit Creation in a Regional Network Testbed This paper was presented as part of the High-Speed Networks 2011 (HSN 2011) Workshop at IEEE INFOCOM 2011 Experiences with Dynamic Circuit Creation in a Regional Network Testbed Pragatheeswaran Angu and

More information

Pacific Wave: Building an SDN Exchange

Pacific Wave: Building an SDN Exchange Pacific Wave: Building an SDN Exchange Will Black, CENIC - Pacific Wave Internet2 TechExchange San Francisco, CA Pacific Wave: Overview Joint project between CENIC and PNWGP Open Exchange supporting both

More information

30 Nov Dec Advanced School in High Performance and GRID Computing Concepts and Applications, ICTP, Trieste, Italy

30 Nov Dec Advanced School in High Performance and GRID Computing Concepts and Applications, ICTP, Trieste, Italy Advanced School in High Performance and GRID Computing Concepts and Applications, ICTP, Trieste, Italy Why the Grid? Science is becoming increasingly digital and needs to deal with increasing amounts of

More information

GigaPort-RON dec 2008 From Routed to Hybrid Networking Cees de Laat University of Amsterdam

GigaPort-RON dec 2008 From Routed to Hybrid Networking Cees de Laat University of Amsterdam GigaPort-RON dec 2008 From Routed to Hybrid Networking Cees de Laat University of Amsterdam GP - Plans 2004-2008 1. Hybrid networking structure Network Architecture Optical Internet Exchange Architecture

More information

Circuits provisioning in PIONIER with AutoBAHN system. Radek Krzywania

Circuits provisioning in PIONIER with AutoBAHN system. Radek Krzywania Circuits provisioning in PIONIER with AutoBAHN system Radek Krzywania radek.krzywania@man.poznan.pl ToC Introduction to PIONIER AutoBAHN deployment in PIONIER network Topology Network abstraction Reservation

More information

UCLPv1.5 for HEAnet. Overview. Victor Reijs July 4 th, 2006, TF-NGN Ljubljana

UCLPv1.5 for HEAnet. Overview. Victor Reijs July 4 th, 2006, TF-NGN Ljubljana UCLPv1.5 for HEAnet Overview Victor Reijs July 4 th, 2006, TF-NGN Ljubljana victor.reijs@heanet.ie UCLP-HEAnet Introduction Main goal: To adapt UCLPv1.5 system for HEAnet's network Create an UCLP release

More information

2. HDF AAI Meeting -- Demo Slides

2. HDF AAI Meeting -- Demo Slides 2. HDF AAI Meeting -- Demo Slides Steinbuch Centre for Computing Marcus Hardt KIT University of the State of Baden-Wuerttemberg and National Research Center of the Helmholtz Association www.kit.edu Introduction

More information

The New Internet2 Network

The New Internet2 Network The New Internet2 Network Director Network Research, Architecture, and Technologies Internet2 GLIF Meeting 11 September 2006 Tokyo, Japan Agenda Basic Ideas Design Ideas Topology Optical nodes Control

More information

Heterogeneous Interconnection between SDN and Layer2 Networks based on NSI

Heterogeneous Interconnection between SDN and Layer2 Networks based on NSI Heterogeneous Interconnection between SDN and Layer2 Networks based on NSI Ta-Yuan Chou, Wun-Yuan Huang, Hui-Lan Lee, Te-Lung Liu, Joe Mambretti*, Jim Hao Chen*, Fei Yeh* National Center for High-Performance

More information

DWDM-RAM: DARPA-Sponsored Research for Data Intensive Service-on-Demand Advanced Optical Networks

DWDM-RAM: DARPA-Sponsored Research for Data Intensive Service-on-Demand Advanced Optical Networks DWDM-RAM: DARPA-Sponsored Research for Intensive -on-demand Advanced Optical Networks DWDM RAM @LIGHTspeed Optical Abundant Bandwidth Meets Grid The Intensive App Challenge: Emerging data intensive applications

More information

Dr. Sergi Figuerola CTIO, M:

Dr. Sergi Figuerola CTIO, M: Dr. Sergi Figuerola CTIO, i2cat sergi.figuerola@i2cat.net @sfiguerola M: +34.675.780.950 Why Barcelona? The city of Barcelona gathers all the necessary elements to become a reference city and a pioneer

More information

BNL Dimitrios Katramatos Sushant Sharma Dantong Yu

BNL Dimitrios Katramatos Sushant Sharma Dantong Yu USC/ISI Tom Lehman Xi Yang ESnet Chin Guok Eric Pouyoul Inder Monga Vangelis Chaniotakis Bharath Ramaprasad (UMass) UNM Nasir Ghani Feng Gu Kaile Liang BNL Dimitrios Katramatos Sushant Sharma Dantong Yu

More information

Introducing Shibboleth. Sebastian Rieger

Introducing Shibboleth. Sebastian Rieger Introducing Shibboleth Sebastian Rieger sebastian.rieger@gwdg.de Gesellschaft für wissenschaftliche Datenverarbeitung mbh Göttingen, Germany CLARIN AAI Hands On Workshop, 25.02.2009, Oxford eresearch Center

More information

Boundary control : Access Controls: An access control mechanism processes users request for resources in three steps: Identification:

Boundary control : Access Controls: An access control mechanism processes users request for resources in three steps: Identification: Application control : Boundary control : Access Controls: These controls restrict use of computer system resources to authorized users, limit the actions authorized users can taker with these resources,

More information

A Guanxi Shibboleth based Security Infrastructure for e-social Science

A Guanxi Shibboleth based Security Infrastructure for e-social Science A Guanxi Shibboleth based Security Infrastructure for e-social Science Wei Jie 1 Alistair Young 2 Junaid Arshad 3 June Finch 1 Rob Procter 1 Andy Turner 3 1 University of Manchester, UK 2 UHI Millennium

More information

Grid Computing. MCSN - N. Tonellotto - Distributed Enabling Platforms

Grid Computing. MCSN - N. Tonellotto - Distributed Enabling Platforms Grid Computing 1 Resource sharing Elements of Grid Computing - Computers, data, storage, sensors, networks, - Sharing always conditional: issues of trust, policy, negotiation, payment, Coordinated problem

More information

Grid Programming: Concepts and Challenges. Michael Rokitka CSE510B 10/2007

Grid Programming: Concepts and Challenges. Michael Rokitka CSE510B 10/2007 Grid Programming: Concepts and Challenges Michael Rokitka SUNY@Buffalo CSE510B 10/2007 Issues Due to Heterogeneous Hardware level Environment Different architectures, chipsets, execution speeds Software

More information

The grid for LHC Data Analysis

The grid for LHC Data Analysis The grid for LHC Data Analysis ICAP 2006 Conference Chamonix 5 October 2006 Les Robertson - CERN LHC Computing Grid Project Leader The LHC Computing Challenges 1. Data After reduction by triggers and data

More information

Guidelines on non-browser access

Guidelines on non-browser access Published Date: 13-06-2017 Revision: 1.0 Work Package: Document Code: Document URL: JRA1 AARC-JRA1.4F https://aarc-project.eu/wp-content/uploads/2017/03/aarc-jra1.4f.pdf 1 Table of Contents 1 Introduction

More information

Interconnect EGEE and CNGRID e-infrastructures

Interconnect EGEE and CNGRID e-infrastructures Interconnect EGEE and CNGRID e-infrastructures Giuseppe Andronico Interoperability and Interoperation between Europe, India and Asia Workshop Barcelona - Spain, June 2 2007 FP6 2004 Infrastructures 6-SSA-026634

More information

Raj Jain (Washington University in Saint Louis) Mohammed Samaka (Qatar University)

Raj Jain (Washington University in Saint Louis) Mohammed Samaka (Qatar University) APPLICATION DEPLOYMENT IN FUTURE GLOBAL MULTI-CLOUD ENVIRONMENT Raj Jain (Washington University in Saint Louis) Mohammed Samaka (Qatar University) GITMA 2015 Conference, St. Louis, June 23, 2015 These

More information

University of Amsterdam

University of Amsterdam The road to optical networking www.science.uva.nl/~delaat www.science.uva.nl/research/air Cees de Laat University of Amsterdam SURFnet λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ λ Know the user #

More information

Vasilis Maglaris. Chairman, NREN Policy Committee - GÉANT Consortium Coordinator, NOVI FIRE Project

Vasilis Maglaris. Chairman, NREN Policy Committee - GÉANT Consortium Coordinator, NOVI FIRE Project Federated Testbeds for Future Internet Research The NOVI Experience & NREN/GÉANT Potential Vasilis Maglaris Professor of Electrical & Computer Engineering, NTUA Chairman, NREN Policy Committee - GÉANT

More information

Grids and Security. Ian Neilson Grid Deployment Group CERN. TF-CSIRT London 27 Jan

Grids and Security. Ian Neilson Grid Deployment Group CERN. TF-CSIRT London 27 Jan Grids and Security Ian Neilson Grid Deployment Group CERN TF-CSIRT London 27 Jan 2004-1 TOC Background Grids Grid Projects Some Technical Aspects The three or four A s Some Operational Aspects Security

More information

Integration of Wireless Sensor Network Services into other Home and Industrial networks

Integration of Wireless Sensor Network Services into other Home and Industrial networks Integration of Wireless Sensor Network Services into other Home and Industrial networks using Device Profile for Web Services (DPWS) Ayman Sleman Automation and Process Control Engineering, University

More information

Computing grids, a tool for international collaboration and against digital divide Guy Wormser Director of CNRS Institut des Grilles (CNRS, France)

Computing grids, a tool for international collaboration and against digital divide Guy Wormser Director of CNRS Institut des Grilles (CNRS, France) Computing grids, a tool for international collaboration and against digital divide Guy Wormser Director of CNRS Institut des Grilles (CNRS, France) www.eu-egee.org EGEE and glite are registered trademarks

More information

Grid Middleware and Globus Toolkit Architecture

Grid Middleware and Globus Toolkit Architecture Grid Middleware and Globus Toolkit Architecture Lisa Childers Argonne National Laboratory University of Chicago 2 Overview Grid Middleware The problem: supporting Virtual Organizations equirements Capabilities

More information

Federated Services for Scientists Thursday, December 9, p.m. EST

Federated Services for Scientists Thursday, December 9, p.m. EST IAM Online Federated Services for Scientists Thursday, December 9, 2010 1 p.m. EST Rachana Ananthakrishnan Argonne National Laboratory & University of Chicago Jim Basney National Center for Supercomputing

More information

WELCOME TO GLIF Technical Working Group Summer 2015 meeting. Prague, Czech Republic September 2015

WELCOME TO GLIF Technical Working Group Summer 2015 meeting. Prague, Czech Republic September 2015 WELCOME TO GLIF Technical Working Group Summer 2015 meeting Prague, Czech Republic 29-30 September 2015 You Are Here Hosted by CESNET 15th Annual Global LambdaGrid Workshop Thanks to CESNET for hosting

More information

WP JRA1: Architectures for an integrated and interoperable AAI

WP JRA1: Architectures for an integrated and interoperable AAI Authentication and Authorisation for Research and Collaboration WP JRA1: Architectures for an integrated and interoperable AAI Christos Kanellopoulos Agenda Structure and administrative matters Objectives

More information

Ad-hoc trust associations with Trust Anchor Repositories

Ad-hoc trust associations with Trust Anchor Repositories Ad-hoc trust associations with Trust Anchor Repositories Stefan Roelofs stefan.roelofs@os3.nl July 2, 2009 Supervisor: Yuri Demchenko Abstract This project report presents the results of the research done

More information

PERMIS An Application Independent Authorisation Infrastructure. David Chadwick

PERMIS An Application Independent Authorisation Infrastructure. David Chadwick PERMIS An Application Independent Authorisation Infrastructure David Chadwick Role/Attribute Based Access Control Model Hierarchical Role based Access Control (RBAC) Permissions are allocated to roles/attributes

More information

Security Services Lifecycle Management in On-Demand Infrastructure Services Provisioning

Security Services Lifecycle Management in On-Demand Infrastructure Services Provisioning Security Services Lifecycle Management in On-Demand Infrastructure Services Provisioning Yuri Demchenko, Cees de Laat System and Network Engineering Group University of Amsterdam The Netherlands e-mail:

More information

Course Objectives In this course, students can expect to learn how to:

Course Objectives In this course, students can expect to learn how to: CNS-222 Citrix NetScaler Essentials and Unified Gateway The objective of this course is to provide the foundational concepts and teach the skills necessary to deploy, secure and manage a Citrix NetScaler

More information

The National Fusion Collaboratory

The National Fusion Collaboratory The National Fusion Collaboratory A DOE National Collaboratory Pilot Project Presented by David P. Schissel at ICC 2004 Workshop May 27, 2004 Madison, WI PRESENTATION S KEY POINTS Collaborative technology

More information

Connecting the e-infrastructure chain

Connecting the e-infrastructure chain Connecting the e-infrastructure chain Internet2 Spring Meeting, Arlington, April 23 rd, 2012 Peter Hinrich & Migiel de Vos Topics - About SURFnet - Motivation: Big data & collaboration - Collaboration

More information

3rd UNICORE Summit, Rennes, Using SAML-based VOMS for Authorization within Web Services-based UNICORE Grids

3rd UNICORE Summit, Rennes, Using SAML-based VOMS for Authorization within Web Services-based UNICORE Grids 3rd UNICORE Summit, Rennes, 28.08.2007 Using SAML-based VOMS for Authorization within Web Services-based UNICORE Grids Valerio Venturi, Morris Riedel, Shiraz Memon, Shahbaz Memon, Frederico Stagni, Bernd

More information

Sentinet for BizTalk Server SENTINET

Sentinet for BizTalk Server SENTINET Sentinet for BizTalk Server SENTINET Sentinet for BizTalk Server 1 Contents Introduction... 2 Sentinet Benefits... 3 SOA and API Repository... 4 Security... 4 Mediation and Virtualization... 5 Authentication

More information

Understanding Admin Access and RBAC Policies on ISE

Understanding Admin Access and RBAC Policies on ISE Understanding Admin Access and RBAC Policies on ISE Contents Introduction Prerequisites Requirements Components Used Configure Authentication Settings Configure Admin Groups Configure Admin Users Configure

More information

(0 of 12) High Performance λnetworking for Grid Applications. Cees de Laat

(0 of 12) High Performance λnetworking for Grid Applications.   Cees de Laat High Performance λnetworking for Grid Applications www.science.uva.nl/~delaat Cees de Laat (0 of 12) λeu High Performance Networking for Grid Applications www.science.uva.nl/~delaat www.science.uva.nl/~deλaat

More information