Speaker
Andreas Haupt
(Deutsches Elektronen-Synchrotron (DE))
Description
All the currently available Gridengine implementations don't provide any authenticated access with the default setup. This opens a big and easily exploitable security hole which might be considered severe especially in multi-community clusters.
This talk will describe in detail the attack vector available in such setups. It will furthermore give a step-by-step guide to activate the certificate-based authentication in Gridengine (the so called "CSP mode") based on the experience at DESY.
Author
Andreas Haupt
(Deutsches Elektronen-Synchrotron (DE))