CICI:UCSS:Securing an Open and Trustworthy Ecosystem for Research Infrastructure and Applications (SOTERIA)
CICI:UCSS:确保研究基础设施和应用的开放且值得信赖的生态系统(SOTERIA)
基本信息
- 批准号:2115148
- 负责人:
- 金额:$ 50万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2021
- 资助国家:美国
- 起止时间:2021-09-01 至 2024-08-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Managing a secure software environment is essential to a trustworthy cyberinfrastructure.Software supply chain attacks may be a top concern for IT departments, but they are also anaspect of scientific computing. The threat to scientific reputation caused by problematic softwarecan be just as dangerous as an environment contaminated with malware. The issue ofmanaging environments affects any individual researcher performing computational researchbut is more acute for multi-institution scientific collaborations as they often preside over complexsoftware stacks and must manage software environments across many distributed computingresources. Increasingly, these collaborations and individual investigators have turned to Linuxcontainer images (packing application software, operating system and other needed librariesinto one entity) for their platform portability and scientific reproducibility advantages. However, indoing so new software sources from both public and private repositories are introduced into thesupply chain, thus bringing new risks. The Securing an Open and Trustworthy Ecosystem forResearch Infrastructure and Applications (SOTERIA) project is an element within NSF's fabric ofcoordinated Cyberinfrastructure that helps collaborations avoid security pitfalls while reducingthe burden of scientific software management. SOTERIA aims to provide researchers withimproved discoverability, visibility, and traceability of their software environments.SOTERIA operates a container registry for open science. The registry has been customized tomeet the unique needs of the scientific environment, including associating the researcher’sidentity with container images, providing image security scanning and introspection (visibility),and integration with other digital object identification and archiving services. SOTERIA alsooperates a container distribution service with tools to trace image provenance through theecosystem. Finally, as the challenge of managing secure software environments goes farbeyond container security, SOTERIA provides training and education on best practices tailoredto researchers.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
管理安全的软件环境对于值得信赖的网络基础架构至关重要。软件供应链攻击可能是IT部门的主要问题,但他们也对科学计算进行了分析。有问题的软件引起的科学审查威胁与被恶意软件污染的环境一样危险。管理环境的问题会影响任何执行计算研究的个人研究人员,但对于多机构科学合作而言,他们经常主持复杂的软件堆栈,并且必须管理许多分布式计算资源的软件环境。这些合作和个人调查人员越来越多地转向LinuxContainer图像(包装应用程序软件,操作系统和其他所需的库为一个实体),以实现其平台可移植性和科学可重复性的优势。但是,将公共和私人存储库的新软件来源引入供应链中,从而带来了新的风险。确保开放且值得信赖的生态系统用于研究基础架构和应用程序(Soteria)项目是NSF协调的网络基础设施结构中的一个要素,可帮助协作避免安全陷阱,同时减少科学软件管理的燃烧。 Soteria的目的是为研究人员提供其软件环境的可发现性,可见性和可追溯性。Soteria为开放科学运行一个容器注册表。该注册表已被定制为Tomeet的科学环境的独特需求,包括将研究人员的身份与容器图像相关联,提供图像安全扫描和内省(可见性),以及与其他数字对象识别和归档服务的集成。 Soteria还使用具有工具来操纵容器分配服务,以通过Theecosystem跟踪图像出处。最后,随着管理安全软件环境的挑战是Farbeyond集装箱安全性的,Soteria提供了针对研究人员量身定制的最佳实践的培训和教育。该奖项反映了NSF的法定任务,并被认为是通过基金会的智力优点和更广泛影响的评估来评估的审查标准。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

暂无数据
数据更新时间:2024-06-01
Robert Gardner其他文献
Crews, Camps, and Communities: Place and Belonging in Jam Festival Scenes
工作人员、营地和社区:果酱节场景中的位置和归属
- DOI:10.1108/s0163-23962016000004701110.1108/s0163-239620160000047011
- 发表时间:20162016
- 期刊:
- 影响因子:0
- 作者:Robert GardnerRobert Gardner
- 通讯作者:Robert GardnerRobert Gardner
Big Data Tools as Applied to ATLAS Event Data
应用于 ATLAS 事件数据的大数据工具
- DOI:
- 发表时间:20172017
- 期刊:
- 影响因子:0
- 作者:I. Vukotic;Robert Gardner;Lincoln BryantI. Vukotic;Robert Gardner;Lincoln Bryant
- 通讯作者:Lincoln BryantLincoln Bryant
The Creation and Evolution of the US ATLAS Shared Analysis Facilities
美国ATLAS共享分析设施的创建和演变
- DOI:
- 发表时间:20242024
- 期刊:
- 影响因子:0
- 作者:Ofer Rind;Douglas Benjamin;Lincoln Bryant;C. Caramarcu;Robert Gardner;Farnaz Golnaraghi;Christopher Hollowell;Fengping Hu;David Jordan;Judith Stephen;Ilija Vukotic;Wei YangOfer Rind;Douglas Benjamin;Lincoln Bryant;C. Caramarcu;Robert Gardner;Farnaz Golnaraghi;Christopher Hollowell;Fengping Hu;David Jordan;Judith Stephen;Ilija Vukotic;Wei Yang
- 通讯作者:Wei YangWei Yang
共 3 条
- 1
Robert Gardner的其他基金
Collaborative Research: IRNC: Testbed: FAB: FABRIC Across Borders
合作研究:IRNC:测试平台:FAB:FABRIC 跨境
- 批准号:20291762029176
- 财政年份:2020
- 资助金额:$ 50万$ 50万
- 项目类别:Continuing GrantContinuing Grant
Collaborative Research: Data Infrastructure for Open Science in Support of LIGO and IceCube
合作研究:支持 LIGO 和 IceCube 的开放科学数据基础设施
- 批准号:18414871841487
- 财政年份:2018
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
CIF21 DIBBs: EI: SLATE and the Mobility of Capability
CIF21 DIBB:EI:SLATE 和能力流动性
- 批准号:17248211724821
- 财政年份:2017
- 资助金额:$ 50万$ 50万
- 项目类别:Continuing GrantContinuing Grant
CC*IIE Networking Infrastructure: A Performant and Reliable Science DMZ for National and International Collaboration
CC*IIE 网络基础设施:用于国内和国际合作的高性能且可靠的科学 DMZ
- 批准号:14407851440785
- 财政年份:2014
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
Acquisition of TeraPort: A Grid Enabled Analysis Platform with Optical Connectivity
收购 TeraPort:具有光连接功能的网格分析平台
- 批准号:03212530321253
- 财政年份:2003
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
Formulation and Analysis of Deterministic Models of Predation Among Acarine Populations
螨种群捕食确定性模型的制定和分析
- 批准号:03161920316192
- 财政年份:2003
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
ITR/AP: Grid Telemetry
ITR/AP:电网遥测
- 批准号:02419390241939
- 财政年份:2002
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
ITR/AP: Grid Telemetry
ITR/AP:电网遥测
- 批准号:01133430113343
- 财政年份:2001
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
Collaborative Research: Quantitative Hierarchical Models for Fossil and Recent Marine Assemblages
合作研究:化石和近期海洋组合的定量分层模型
- 批准号:95066069506606
- 财政年份:1996
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
Mathematical Sciences: Control Structures
数学科学:控制结构
- 批准号:94090379409037
- 财政年份:1994
- 资助金额:$ 50万$ 50万
- 项目类别:Continuing GrantContinuing Grant
相似海外基金
CICI: UCSS: Human-Centered Cybersecurity in Robotic Surgery (HCCRS) - Coordinating the Human and Cyber Infrastructure for Cybersecurity
CICI:UCCSS:机器人手术中以人为中心的网络安全 (HCCCS) - 协调网络安全的人力和网络基础设施
- 批准号:23198912319891
- 财政年份:2023
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
CICI: UCSS: Trusted Resource Allocation in Volunteer Edge-Cloud Computing Workflows
CICI:UCSS:志愿者边缘云计算工作流程中的可信资源分配
- 批准号:22328892232889
- 财政年份:2023
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
CICI:UCSS: ARMOR: Secure Querying of Massive Scientific Datasets
CICI:UCSS: ARMOR:海量科学数据集的安全查询
- 批准号:22328132232813
- 财政年份:2023
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
CICI: UCSS: Building a Community of Practice for Supporting Regulated Research
CICI:UCSS:建立支持监管研究的实践社区
- 批准号:24098592409859
- 财政年份:2023
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant
CICI: UCSS: Enhancing the Usability of Vulnerability Assessment Results for Open-Source Software Technologies in Scientific Cyberinfrastructure: A Deep Learning Perspective
CICI:UCSS:增强科学网络基础设施中开源软件技术漏洞评估结果的可用性:深度学习视角
- 批准号:23193252319325
- 财政年份:2023
- 资助金额:$ 50万$ 50万
- 项目类别:Standard GrantStandard Grant