Fedcloud-tf:CloudscapeVDemo
This Wiki entry describes the planned demonstration at Cloudscape V in Brussels (see FCTF Outreach section).
Demonstration script
- Check GOGDB for available Cloud endpoints
- --> demonstrates information system
- https://goc.egi.eu/portal/
- Check Nagios/SAM for status
- --> demonstrates monitoring
- https://fedcloud-mon.egi.eu
- Look up the image on the Marketplace
- --> demonstrate VM distribution and endorsement
- http://marketplace.egi.eu/metadata
- using rOCCI client, deploy a number of WeNMR instance on selected RPs
- --> federated consistent access using OCCI
- tentative RPs: INFN, JUELICH, GWDG, CESNET, CESGA, Cyfronet, In2P3
- refer to WeNMR page for info on this demo phase
- Go to the accounting page
- --> demonstrate that we account for Cloud compute consumption
- http://goc-accounting.grid-support.ac.uk/cloudtest/cloudsites.html
- http://goc-accounting.grid-support.ac.uk/cloudtest/vmshour.html
- http://goc-accounting.grid-support.ac.uk/cloudtest/vms.html
TODOs
rOCCI client
DONE Get rOCCI client
- Install Java JRE or JDK
- Get Executable JAR file from rOCCI people.
Action GWDG - provide direct download links to executables/ exec jar files on the project page
Need to make sure that I use the Client VM, not the Server VM, but that is a detail.
--> Can't do that for now. This impacts the startup times - currently 18s for "java -jar occi.jar --help"
STUCK rOCCI client and my Grid certificate
Trouble getting rOCCI client to understand my Grid certificate.
Background: I have used X.509 certificates plenty of times, but not the way gLite seem to do it.
I exported my certificate plus private key into a PKCS#12 file and fed that to rOCCI - and he choked. Documentation says I should export as .PEM, but pem files usualy do not include the private key.
Integration with local security infrastructure would be nice, i.e. Java keystores, Mac OS keychain or any other OS platform specifics. Otherwise, plain PKCS#12 support does it too - there should be support for it in Ruby.
Getting started with client
VO support
Get my Grid Certificate registered in Fedcloud VO
Test-run OCCI commands against selected RPs
SAM / Monitoring
Make sure the production SAM is used: https://fedcloud-mon.egi.eu
Accointing
GOC DB
GocDB CA certificate
Certificate is not trusted. Where do I conveniently get the CA certificatge to add that to my stack?