Conveners
Network, Security, Infrastructure & Operations
- David Groep (Nikhef)
Network, Security, Infrastructure & Operations
- Gang Chen (Institute Of High Energy Physics)
Network, Security, Infrastructure & Operations
- Jim Basney (NCSA)
Network, Security, Infrastructure & Operations
- David Kelsey (STFC-RAL)
Network, Security, Infrastructure & Operations
- Joy Chan (TWNIC)
Exploring trust for Communities
Building trust for research and collaboration
When exploring the (sometimes) intimidating world of Federated Identity, research communities can reap considerable benefit from using common best practices and adopting interoperable ways of working. EnCo, the Enabling Communities task of the GEANT 4-3 Trust and Identity Work Package, provides the link...
IRIS is STFC’s federated national digital research infrastructure program, enabling science activities supported by STFC. We have seen the threat of a cybersecurity attack against digital research infrastructures grow in recent years. This is now acute, evidenced by high profile attacks against the research and education sector in the last year. It is timely, therefore, to reflect on the...
The threat faced by the research and education sector from determined and well-resourced cyber attackers has been growing in recent years and is now acute. A vital means of better protecting ourselves is to share threat intelligence - key Indicators of Compromise of an ongoing incidents including network observables and file hashes - with trusted partners. We must also deploy the technical...
As many MPI and GPU computing requirements are raised from experiments, the computing center of IHEP founded the Slurm cluster in 2017 and started the parallel computing services afterwards. Since then, users and applications of the Slurm cluster are increased from time to time. By the end of 2021, there are 16 applications and 160 users served by more than 6200 CPU cores and 200 GPU cards...
IHEP is a multi-disciplinary comprehensive research institution which is hosting or attending about 15 experiments around high energy physics, including LHAASO, BES, JUNO, HEPS, DYW, ALI, ATLAS, CMS, LHCb etc.
Corresponding to the multiple experiments, in the computing system, the multiple scenarios have to be considered and the proper technologies should be suitable for the different...
The [INDIGO IAM][1] is an Identity and Access Management service first developed in the context of the INDIGO-Datacloud Horizon 2020 project and currently maintained and developed by INFN. IAM supports user authentication via local username and password credentials as well as SAML Identity Federations, OpenID Connect providers and X.509.
The INDIGO IAM has seen adoption within a number of...
With the start of the global COVID-19 pandemic in 2019 we all experienced an unexpected shift of our daily life and business to the virtual. With that, collaborating services, such as videoconferencing tools or wikis started to become an integral part of our life. In order to access such tools in the higher Research and Education (R&E) space, federated access and single sign on is commonly...
Token-based technologies are attracting attention in order to realize authentication and authorization in distributed high-performance computing infrastructure for research. The purpose of this paper is to describe the design and implementation of the next authentication and authorization system in High Performance Computing Infrastructure (HPCI) in Japan.
Following the end of GSI (Grid...
Setting up on premise Security Operations Center (SOC) services can carry a serious initial hardware investment. To make this important piece of security more accessible, at Nikhef we have been leveraging ex worker nodes to provide a platform for a reliable elasticsearch cluster and highly available SOC services.
Over the last 1,5 year, we have experimented with various ways of deploying...
In order to resist complex cyber-attacks, IHEPSOC is developed and deployed in the Institute of High Energy Physics of the Chinese Academy of Sciences (IHEP), which provides a reliable network and scientific research environment for IHEP. It has become a major task to integrate cutting-edge cyber-attacks detection methods for IHEPSOC to improve the ability of threat detection. Malicious...
As the scale of equipment continues to grow and the computing environment becomes more and more complex, the difficulty of operation and maintenance of large-scale computing clusters is also increasing. Operation and maintenance methods based on automation technology cannot quickly and effectively solve various service failures in computing clusters. It is urgent to adopt emerging technologies...
The University of Jammu is a very big regional University having 7 Campuses which are separated by 400 kilometers. Managing network connectivity is a big challenge. The existing network was setup in 2004 and now the user requirements especially due to the present scenario of pandemic as well as ONLINE classes as well as work from home scenario makes it a challenge.
With the emergence of New...
High energy physics experiment has the characteristics of remote construction. It is often necessary to transfer a large number of experimental data from high energy physics experiment equipment to data center with the help of network link. The network links supporting the data transmission of high energy physics experiments often have the characteristics of sharing. The data from different...
The business application often suffers from poor performance, when it happens, business always suspect network problems, while network administrators feel innocent because the network seems fine from both the device running states and the network traffic monitoring. We do the research on IHEP network performance analysis combining the business performance monitoring. By connecting the network...
Since the start of the Large Hadron Collider (LHC) in 2008, the Worldwide LHC Computing Grid (WLCG) has been serving the needs of the largest LHC experiments’ detectors - ATLAS, CMS, LHCb, and ALICE. The volume of the data coming from these experiments every year exceeds 90 PB per year, and the rate of the raw data reaches 100 GB/s, which requires the best approaches in computing and storage...