Leveraging OpenStack and Ceph for a Controlled-Access Data Cloud
Evan F. Bollig, Graham T. Allan, Benjamin J. Lynch, Yectli A. Huerta,, Mathew Mix, Edward A. Munsell, Raychel M. Benson, Brent Swartz

TL;DR
This paper describes the design and deployment of Stratus, a secure, cloud-based environment using OpenStack and Ceph to meet modern researchers' needs for scalable, controlled-access compute and storage resources.
Contribution
It introduces a novel cloud environment, Stratus, that integrates OpenStack and Ceph to provide secure, scalable, and compliant access to controlled data for researchers.
Findings
Successful implementation of tiered secure storage with controlled-access cache
Integration of live-migration and two-factor authentication features
Enhanced security and compliance with NIH data policies
Abstract
While traditional HPC has and continues to satisfy most workflows, a new generation of researchers has emerged looking for sophisticated, scalable, on-demand, and self-service control of compute infrastructure in a cloud-like environment. Many also seek safe harbors to operate on or store sensitive and/or controlled-access data in a high capacity environment. To cater to these modern users, the Minnesota Supercomputing Institute designed and deployed Stratus, a locally-hosted cloud environment powered by the OpenStack platform, and backed by Ceph storage. The subscription-based service complements existing HPC systems by satisfying the following unmet needs of our users: a) on-demand availability of compute resources, b) long-running jobs (i.e., days), c) container-based computing with Docker, and d) adequate security controls to comply with controlled-access data requirements.…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
