16
Part I – User and Role Management Pedro Andrade [email protected] CERN Training Event 30 April 2009 Rome (Italy) www.d4science.eu

VRE - User And Role Management

  • Upload
    fao

  • View
    827

  • Download
    0

Embed Size (px)

DESCRIPTION

Slides presented at the D4Science VRE Management Training Event which took place on 30/04/2009 in Rome, Italy. More information: http://www.d4science.eu/node/213

Citation preview

Page 1: VRE - User And Role Management

Part I – User and Role Management

Pedro Andrade [email protected]

CERN

Training Event30 April 2009Rome (Italy)

www.d4science.eu

Page 2: VRE - User And Role Management

2

www.d4science.eu

Outline

Infrastructure UsersInfrastructure AccessUser RegistrationUser Management

Infrastructure RolesRoles Management

Practical Exercise

User and Role Management30 April 2009, Rome (Italy)

This session include several demos.All demos are based on the Production

Infrastructure Portal.

Page 3: VRE - User And Role Management

3

www.d4science.eu

Infrastructure Users

User and Role Management30 April 2009, Rome (Italy)

Page 4: VRE - User And Role Management

4

www.d4science.eu

Infrastructure Access

ny member of the Project:People from all activities of the projectThis includes NA5 people from user communitiesAccess the infrastructure with the project LDAP Account

ther members from User Communities:People from the users communities Not directly working in any project activityAccess the infrastructure using a special Portal Account

User and Role Management30 April 2009, Rome (Italy)

Page 5: VRE - User And Role Management

5

www.d4science.eu

User Registration – Project Member

ll members of the project should be registered in LDAP.

f not, accounts can be created by writing to:[email protected]

User and Role Management30 April 2009, Rome (Italy)

Page 6: VRE - User And Role Management

6

www.d4science.eu

User Registration – UC Member

xecuted using the “User Registration” interface and by mail.

ain steps are:1. User fills in the registration form2. VRE Manager receives the request by mail3. VRE Manager approves the request in the portal4. User is notified by mail

EMO 1 - “REGISTERING A NEW ACCOUNT”User and Role Management30 April 2009, Rome (Italy)

Page 7: VRE - User And Role Management

7

www.d4science.eu

User Management

xecuted using the “User Management” interface.

vailable functionality:1. Add user to VRE

for new registrations: automatically done at registrationfor existing users: manually from list

2. Remove user from VRE

ultiple users can be added/removed at the same time.

oles can also be associated when adding users.User and Role Management30 April 2009, Rome (Italy)

Page 8: VRE - User And Role Management

8

www.d4science.eu

Infrastructure Roles

Site Manager

VRE Designer

VREUser

VRE Manager

VO Admin

Data Manager

User and Role Management30 April 2009, Rome (Italy)

If needed in the future other roles

can be added

Page 9: VRE - User And Role Management

9

www.d4science.eu

Infrastructure Roles

frastructure is based on hardware provided by the project members. The nodes are managed by the Site Manager:

Deploy and maintain the nodesMake sure all nodes are certifiedAnnounce possible node downtimes Monitor the nodes status

Site Manager

VO Admin

VRE Designer

VREUser

VRE Manager

Data Manager

Page 10: VRE - User And Role Management

10

www.d4science.eu

ata collections staging by Data Manager.

Os creation and management by VO-Admin:

anagement of VO users and roles

eployment of VO services (Content, Metadata, Index, etc)

pproval of VO resources

Infrastructure Roles

Site Manager

VO Admin

VRE Designer

VREUser

VRE Manager

Data Manager

Page 11: VRE - User And Role Management

11

www.d4science.eu

Infrastructure Roles

he VRE Designer is a community member knowledgeable about the community needs for new VREs. The VRE Designer responsibilities are:

Define new VREs select collections, functionality, metadata formats, etc.

Send new VRE requeststo be approved by the VRE Manager

Site Manager

VO Admin

VRE Designer

VREUser

VRE Manager

Data Manager

Page 12: VRE - User And Role Management

12

www.d4science.eu

Infrastructure Roles

he VRE Manager is a community member knowledgeable about the infrastructure and the community resources. The VRE Manager responsibilities are:

Verification and Approval of VRE designsVRE DeploymentMaintenance of VREs resourcesManagement of VRE users and roles VRE Monitoring

Site Manager

VO Admin

VRE Designer

VREUser

VRE Manager

Data Manager

Page 13: VRE - User And Role Management

13

www.d4science.eu

Infrastructure Roles

he VRE User is a community member knowledgeable about the one specific area of the community domain. The VRE Manager responsibilities are:

To use the VRE ☺Search (full text, geospatial, etc)Browse results and contentAnnotateView and edit metadataReport Generation…

Site Manager

VO Admin

VRE Designer

VREUser

VRE Manager

Data Manager

Page 14: VRE - User And Role Management

14

www.d4science.eu

Roles Management

he management of the users and roles is based on VOMS.

xecuted using the “User Management” interface.

vailable functionality:1. Add role to user2. Remove role to user

ny users may have one or more roles associated.User and Role Management30 April 2009, Rome (Italy)

Page 15: VRE - User And Role Management

15

www.d4science.eu

Roles Management

M VOVRE Manager: VeronicaVRE Designer: Chiara

FCPPS VO:VRE Manager: Anton VRE Designer: Anton

ICIS VO:VRE Manager: Anton VRE Designer: Elijah

User and Role Management30 April 2009, Rome (Italy)

At VO level, the VRE roles have been configured as follows:

Page 16: VRE - User And Role Management

16

www.d4science.eu

Practical Exercise (for VRE Managers)

mulate the request of a new user to join an existing VRE:

1. (VRE User) fill the registration form2. (VRE Manager) approve the request3. (VRE User) verify the confirmation email

4. (VRE Manager) add VRE-User role to new user5. (VRE User) access the portal and login to the VRE6. (VRE Manager) remove VRE-User roles from user7. (VRE Manager) remove user from VRE

User and Role Management30 April 2009, Rome (Italy)