Grid PP Security VOMS Server Holds Experiment As

  • Slides: 11
Download presentation
Grid. PP Security VOMS Server Holds Experiment A's list of members, and what subgroup

Grid. PP Security VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. VOMS Server Expt B Expt C Site, with CPU and disk resources Grid. Site services in C/C++/Scripts g. Lite Java Security based services Requests to sites Automated software install, update and site configuration tools Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. Decisions made on the basis of XML policies in GACL or XACML languages, or lists of allowed users Globus/LCG legacy services Site updates Certification Authority Access Control Software developers Site operators and administrators Security Vulnerability and Policy development and co-ordination

Users and sites Site, with CPU and disk resources

Users and sites Site, with CPU and disk resources

Certification authorities Site, with CPU and disk resources Certification Authority Run by the UK

Certification authorities Site, with CPU and disk resources Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute.

Virtual organisations VOMS Server Holds Experiment A's list of members, and what subgroup and

Virtual organisations VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. VOMS Server Expt B Expt C Site, with CPU and disk resources

Vulnerabilities and policy VOMS Server Holds Experiment A's list of members, and what subgroup

Vulnerabilities and policy VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. VOMS Server Expt B Expt C Site, with CPU and disk resources Software developers Security Vulnerability and Policy development and co-ordination

Updates and local policy VOMS Server Holds Experiment A's list of members, and what

Updates and local policy VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. VOMS Server Expt B Expt C Site, with CPU and disk resources Site updates Automated software install, update and site configuration tools Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. Software developers Site operators and administrators Security Vulnerability and Policy development and co-ordination

Access control VOMS Server Holds Experiment A's list of members, and what subgroup and

Access control VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. VOMS Server Expt B Expt C Site, with CPU and disk resources Decisions made on the basis of XML policies in GACL or XACML languages, or lists of allowed users Site updates Automated software install, update and site configuration tools Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. Access Control Software developers Site operators and administrators Security Vulnerability and Policy development and co-ordination

Grid. Site VOMS Server Holds Experiment A's list of members, and what subgroup and

Grid. Site VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. VOMS Server Expt B Expt C Site, with CPU and disk resources Grid. Site services in C/C++/Scripts Site updates Automated software install, update and site configuration tools Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. Software developers Access Control Decisions made on the basis of XML policies in GACL or XACML languages, or lists of allowed users Site operators and administrators Security Vulnerability and Policy development and co-ordination

Java Security VOMS Server Holds Experiment A's list of members, and what subgroup and

Java Security VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. VOMS Server Expt B Expt C Site, with CPU and disk resources Grid. Site services in C/C++/Scripts g. Lite Java Security based services Site updates Automated software install, update and site configuration tools Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. Software developers Access Control Decisions made on the basis of XML policies in GACL or XACML languages, or lists of allowed users Site operators and administrators Security Vulnerability and Policy development and co-ordination

Globus/LCG services VOMS Server Holds Experiment A's list of members, and what subgroup and

Globus/LCG services VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. VOMS Server Expt B Expt C Site, with CPU and disk resources Grid. Site services in C/C++/Scripts g. Lite Java Security based services Access Control Decisions made on the basis of XML policies in GACL or XACML languages, or lists of allowed users Globus/LCG legacy services Site updates Automated software install, update and site configuration tools Certification Authority Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. Software developers Site operators and administrators Security Vulnerability and Policy development and co-ordination

Now we can make a request! VOMS Server Holds Experiment A's list of members,

Now we can make a request! VOMS Server Holds Experiment A's list of members, and what subgroup and role affiliations they have. Issues digital Attribute Certificates to users, and group membership lists to sites. VOMS Server Expt B Expt C Site, with CPU and disk resources Grid. Site services in C/C++/Scripts g. Lite Java Security based services Requests to sites Automated software install, update and site configuration tools Run by the UK Grid Operations Support Centre. Issues annual certificates to service and users. Photo ID and identify verified by local contacts at user's institute. Decisions made on the basis of XML policies in GACL or XACML languages, or lists of allowed users Globus/LCG legacy services Site updates Certification Authority Access Control Software developers Site operators and administrators Security Vulnerability and Policy development and co-ordination