Meeting 12/01/2022
Participants:
Ryan Prout, Sergey, Randall, Seth
Discussed data management options:
- Accessing OLCF data from outside
The idea is to expose OLCF storage via MinIO (https://docs.olcf.ornl.gov/services_and_applications/slate/use_cases/minio.html). We would do this per project. To access from outside - need to skip the NCCS auth frontend. Then MinIO should be able to verify OIDC tokens using OLCF internal user manager service (they provide an API).
We agreed to try to deploy MinIO, Ryan would help Mark with that and also with making an exception for auth and talking to the relevant people about user manager API. Someone (Sergey?) would need to write a plugin (or whatever it is called) for MinIO to work with our token.
- Accessing CADES cloud - since ONYX/SLATE machines are classified as a moderate resource (workstations) and not open research, one cannot open a firewall between ONYX and CADES. So, a SAFER request should be sent for each service to open access from 128.219.133.0/25