COMPUTE CANADA GLOBUS PORTAL

Similar documents
Beyond File Transfer. Steve Tuecke NCAR September 5, 2018

Climate Data Management using Globus

Cloud Attached Storage

globus online Globus Nexus Steve Tuecke Computation Institute University of Chicago and Argonne National Laboratory

Managing Protected and Controlled Data with Globus. Vas Vasiliadis

Gridbus Portlets -- USER GUIDE -- GRIDBUS PORTLETS 1 1. GETTING STARTED 2 2. AUTHENTICATION 3 3. WORKING WITH PROJECTS 4

Leveraging the Globus Platform in your Web Applications. GlobusWorld April 26, 2018 Greg Nawrocki

Federated Services for Scientists Thursday, December 9, p.m. EST

Partner Center: Secure application model

Configuring Failover

Failover Dynamics and Options with BeyondTrust 3. Methods to Configure Failover Between BeyondTrust Appliances 4

UNIVERSITY OF EXETER BITLOCKER USER GUIDE

Data Management 1. Grid data management. Different sources of data. Sensors Analytic equipment Measurement tools and devices

What s New in Oracle Cloud Infrastructure Object Storage Classic. Topics: On Oracle Cloud. Oracle Cloud

Using the Self-Service Portal

CUSTOMER CONTROL PANEL... 2 DASHBOARD... 3 HOSTING &

Quick Start Guide. Table of Contents

Accessing CharityMaster data from another location

Maximum Availability Architecture (MAA): Oracle E-Business Suite Release 12

Privileged Remote Access Failover Configuration

globus online Software-as-a-Service for Research Data Management

Installation Guide for Windows

NetBackup 7.6 Replication Director A Hands On Experience

Failover Configuration Bomgar Privileged Access

Grid Computing. MCSN - N. Tonellotto - Distributed Enabling Platforms

Exam : Implementing Microsoft Azure Infrastructure Solutions

A VO-friendly, Community-based Authorization Framework

From using an External Harddrive, to a Google Cloud Drive; there is no one way to backup data.

File Protection. Whitepaper

Installing and Configuring Citrix XenApp 6.5 (Part 1)

XSEDE Infrastructure as a Service Use Cases

File Protection Whitepaper

Building the Modern Research Data Portal. Developer Tutorial

Using MATLAB on the TeraGrid. Nate Woody, CAC John Kotwicki, MathWorks Susan Mehringer, CAC

File Protection Whitepaper

Index Introduction Setting up an account Searching and accessing Download Advanced features

File Transfer: Basics and Best Practices. Joon Kim. Ph.D. PICSciE. Research Computing 09/07/2018

Using the MyProxy Online Credential Repository

Globus Research Data Management: Campus Deployment and Configuration. Steve Tuecke Vas Vasiliadis

PARALLEL COMPUTING IN R USING WESTGRID CLUSTERS STATGEN GROUP MEETING 10/30/2017

How to integrate HP StorageWorks tape libraries into a SAN based backup environment.

USER GUIDE. CTERA Agent for Windows. June 2016 Version 5.5

The Materials Data Facility

VMware AirWatch Content Gateway for Linux. VMware Workspace ONE UEM 1811 Unified Access Gateway

Grid Computing Middleware. Definitions & functions Middleware components Globus glite

Getting Started with XSEDE. Dan Stanzione

An Introduction to GPFS

Installation Guide. Research Computing Team V2.0 RESTRICTED

Design patterns for data-driven research acceleration

Enhanced VMware and Hyper-V Data Protection with Vembu VMBackup v3.5!

DOWNLOAD PDF SQL SERVER 2012 STEP BY STEP

VMware AirWatch Content Gateway for Windows. VMware Workspace ONE UEM 1811 Unified Access Gateway

Cloud UC. Program Downloads I WOULD LIKE TO... DOWNLOADING THE CLIENT SOFTWARE

Building the Modern Research Data Portal using the Globus Platform. Rachana Ananthakrishnan GlobusWorld 2017

Managing the Cisco APIC-EM and Applications

How Vembu BDR Suite ensures the data protection for your Modern Data Centers?

5 OAuth EssEntiAls for APi AccEss control layer7.com

VMware AirWatch Content Gateway Guide for Windows

Veritas NetBackup for Microsoft SQL Server Administrator's Guide

SAP GUI 7.30 for Windows Computer

Leveraging the Globus Platform in your Web Applications

Backup the System. Backup Overview. Backup Prerequisites

5 OAuth Essentials for API Access Control

AT&T Global Network Client for Mac User s Guide Version 2.0.0

Accessing the CAES Office of Communication File Sharing Services

IT 341: Introduction to System Administration. Notes for Project #8: Backing Up Files with rsync

CyberLynk FTP Service Functional Description

End User Manual. December 2014 V1.0

TABLE OF CONTENTS. Page 1 of 59

BlackBerry UEM Configuration Guide

October J. Polycom Cloud Services Portal

Configuration Guide. BlackBerry UEM. Version 12.9

Setup Guide. for Teachers, Instructors, Managers and Administrators. Letter Format for North America. Published by.

Using WestGrid from the desktop Oct on Access Grid

VMware AirWatch Content Gateway Guide for Windows

Distributed Systems Security

AccessData. Forensic Toolkit. Upgrading, Migrating, and Moving Cases. Version: 5.x

File Archiving. Whitepaper

THE GLOBUS PROJECT. White Paper. GridFTP. Universal Data Transfer for the Grid

NSave Table of Contents

VMware AirWatch: Directory and Certificate Authority

WLM1200-RMTS User s Guide

AccessData. Forensic Toolkit. Upgrading, Migrating, and Moving Cases. Version: 5.x

XSEDE New User Training. Ritu Arora November 14, 2014

SOCIAL IDENTITIES IN HIGHER ED: WHY AND HOW WITH REAL-WORLD EXAMPLES

Visualization for Scientists. We discuss how Deluge and Complexity call for new ideas in data exploration. Learn more, find tools at layerscape.

GlobalSearch Security Definition Guide

Citrix Analytics Data Governance Collection, storage, and retention of logs generated in connection with Citrix Analytics service.

Cloud Computing. An introduction using MS Office 365, Google, Amazon, & Dropbox.

Zen Internet. Online Data Backup. Zen Vault Express for Mac. Issue:

Privileged Identity App Launcher and Session Recording

Quick Start Guide. Version R94. English

FileCatalyst HotFolder Quickstart

VMware AirWatch Content Gateway Guide for Windows

Quick Start Guide TABLE OF CONTENTS COMMCELL ARCHITECTURE OVERVIEW COMMCELL SOFTWARE DEPLOYMENT INSTALL THE COMMSERVE SOFTWARE

Iomega EZ Media & Backup Center Users Guide D

How to connect to the University of Exeter VPN service

VMware vsphere Data Protection Evaluation Guide REVISED APRIL 2015

Exam4 Reminders & Frequently Asked Questions

JCCC Virtual Labs. Click the link for more information on installing on that device type. Windows PC/laptop Apple imac or MacBook ipad Android Linux

Transcription:

COMPUTE CANADA GLOBUS PORTAL Fast, user-friendly data transfer and sharing Jason Hlady University of Saskatchewan WestGrid / Compute Canada February 4, 2015

Why Globus? I need to easily, quickly, and reliably move or mirror portions of my data to other places. Compute Canada HPC Cluster Campus filesystem Lab server Personal laptop or workstation I need to easily and securely share my data with my colleagues at other institutions. I need a good way to store / backup / archive my research data.

Globus highlights Software-as-a-Service (SaaS) Compute Canada has partnered with Globus, a not-for-profit organization from University of Chicago/Argonne National Labs Globus operates the file transfer service for Compute Canada 24 CC sites connected File transfer and replication Reliable Secure high-performance File sharing Share files with collaborators who do not have Compute Canada accounts

Compute Canada Globus Portal

Getting a Globus Account Create a Globus account Separate and distinct from your Compute Canada account: could be same username, or different Identifies you to the Globus service Globus is hosted in the United States Potentially personally-identifying information, i.e. your Globus username and password, stored in USA Research data does NOT travel through Globus: Globus brokers point-to-point connection between source and destination Globus is currently English-only

Logging in to Globus Use Globus account name and Globus Password

Data transfer Fire-and-forget transfers Automatic fault recovery Data Source 2 Globus moves and replicates files Data Destination Powerful GUI, CLI, APIs Built-in security 1 User initiates transfer request 3 Globus notifies user

Data transfer: high performance Globus uses GridFTP for high-speed, reliable, secure data transfer GridFTP is an extension of the standard File Transfer Protocol (FTP) GSI Security: uses Grid Security Infrastructure (GSI) for authentication and encryption of transferred files Parallel transfers: supports multiple TCP streams to take advantage of fast networks for faster transfers Automatic TCP optimization: automated performance tuning Fault tolerance: tolerates network / server failure, supports automatic restart

Data transfer: fire-and-forget Start data transfer of many files using web browser/globus: No need to maintain terminal connection to server, or to webpage Transfers queued and handled by Globus Globus emails you when transfer completed successfully

Data transfer: fault recovery Once transfer is initiated, Globus monitors and automatically restarts failed or stalled transfers When a problem is encountered part-way through the transfer, Globus resumes from the point of failure does not retransmit all of the data specified in the original request; only what remains to be transferred No need to babysit data transfer Very useful for transferring larger numbers of files or directories

Data transfer: supported features Mirroring Options available to mimic rsync and/or mirroring transfer only new/changed files delete files on destination if don t exist on source Keep file dates consistent at both ends File verification at both ends Checksums checked for matching before and after file transfer; if they don t match, entire file retransferred until it succeeds Encryption Typically results in slower performance

Globus Endpoints Endpoints: locations you can transfer to / from using Globus: a logical address for a GridFTP server, similar to a domain name for a web server. username#endpointname Endpoints can be configured on a variety of systems: Compute Canada systems / clusters Local research servers Scientific instrument workstations Researcher desktops / laptops Research IT infrastructure around the world All Compute Canada systems can be found under computecanada#systemname

Activating Endpoints To activate an endpoint for transfer, you must prove that you are a valid user on that system Use appropriate regional consortium account name and password to activate a Compute Canada system s endpoint For example, to activate endpoint in WestGrid (e.g. computecanada#silo), use WestGrid username and password Authentication and authorization handled by Compute Canada using myproxy-oauth On endpoint activation, Globus redirects user to Compute Canada consortium-level webpage for authentication/authorization Your consortium username and password does NOT go through Globus

Activating Endpoints OAuth MyProxy Globus redirects to Compute Canada operated authentication page Activate endpoint with consortium username and password After authentication, you are returned to the Globus transfer page with the endpoint now active

Activating Endpoints OAuth MyProxy

Transfer demo

Globus Connect Personal A client for communicating with other GridFTP servers / Globus endpoints, using your local computer creates your own endpoint to transfer data to and from your computer uses GridFTP for high performance transfers Available for Mac, Linux, Windows https://www.globus.org/globus-connect-personal

Globus Connect Personal Demo Download, install, configure Globus Connect Personal on laptop or desktop Follow detailed instructions on CC website https://computecanada.ca/en/globus-portal Activate endpoint on laptop/desktop Initiate transfers between Globus endpoints, including your laptop/desktop

Sharing Share large data with any user / group Shared directly from where data currently resides 1 User A selects file(s) to share, selects user or group, and sets permissions 2 Globus tracks shared files; no need to move files to cloud storage! Data Source 3 User B logs in to Globus and accesses shared file(s)

Sharing Sharing enables collaborators to access files from within your Compute Canada account on a CC system EVEN IF the collaborators do not have an account on the system you are sharing from Files can be shared with any Globus users, anywhere in the world You can set Globus permissions for who reads/writes which can be overwritten by the site s Globus permissions which are in turn overwritten by the operating system s permissions e.g. you can t share /root on a system you can t share files you don t have access to you can t set write if the system administrators don t allow it Contact globus@computecanada.ca

Sharing Demo

Sharing Caveats Sharing files entails a certain level of risk By creating a share, you are opening up access to files to others that (up to now) have been in your exclusive control Make sure you have permission to share the files, if you are not the data s owner Make sure you are sharing with only those you intend to Verify the person you add to the access list is the person you think; there are often people with the same or similar names Remember that Globus usernames are not linked to Compute Canada usernames Use the email address of the person(s) you wish to share with, unless you have the exact account name

Sharing Caveats If you are sharing with a group you do not control, make sure you trust the owner of the group They may add people to their group who are not authorized to access your files If granting write access, make sure that you have backups of important files on the shared endpoint Users of the shared endpoint may delete or overwrite files Those users can do anything that you yourself can do to a file Restrict sharing to a subdirectory, rather than your toplevel home directory

Future Directions Single Sign-on / integration of CC and Globus accounts Improved bilingualism for Globus service

Summary Portal: https://globus.computecanada.ca Documentation: https://computecanada.ca/en/globus-portal https://computecanada.ca/fr/globus-portal Support: Email globus@computecanada.ca Email support@westgrid.ca