Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
45 commits
Select commit Hold shift + click to select a range
2715add
updated index.md
tyson-swetnam Jun 23, 2023
364e250
Update mkdocs.yml
clizarraga-UAD7 Sep 15, 2023
2107992
Uploaded Soteria documentation files
clizarraga-UAD7 Sep 15, 2023
45ed424
Rename docs/Globus.md to docs/Soteria/Globus.md
clizarraga-UAD7 Sep 15, 2023
ea161e7
Rename docs/SoteriaAccess-Mac.md to docs/Soteria/SoteriaAccess-Mac.md
clizarraga-UAD7 Sep 15, 2023
57439b2
Rename docs/SoteriaAccess-Windows.md to docs/Soteria/SoteriaAccess-Wi…
clizarraga-UAD7 Sep 15, 2023
2c93493
Rename docs/UAHPC_Soteria.md to docs/Soteria/UAHPC_Soteria.md
clizarraga-UAD7 Sep 15, 2023
35f8018
Update mkdocs.yml
clizarraga-UAD7 Sep 15, 2023
b317089
Update index.md
clizarraga-UAD7 Sep 15, 2023
3c62538
Update UAHPC_Soteria.md
clizarraga-UAD7 Sep 15, 2023
6ad82d3
Update mkdocs.yml
clizarraga-UAD7 Sep 16, 2023
a2fd8b3
Update index.md
clizarraga-UAD7 Sep 16, 2023
41333a5
Update mkdocs.yml
clizarraga-UAD7 Sep 16, 2023
348526f
updated mkdocs with CyVerse Health Tutorial
CosiMichele Jan 23, 2024
c3b4947
moving pages around, formatting
CosiMichele Jan 23, 2024
3001923
formatting mid session save
CosiMichele Jan 24, 2024
c992eec
reorg files
CosiMichele Apr 22, 2024
7412cfd
fixed logo issue
CosiMichele Apr 22, 2024
1258cc3
cyverse demo fix
CosiMichele Apr 22, 2024
fde6e3f
fixed links, need to fix images
CosiMichele Apr 22, 2024
e7b3614
index banner fix
CosiMichele Apr 23, 2024
0902f33
index links fix
CosiMichele Apr 23, 2024
ff1406a
soteria info
CosiMichele Apr 23, 2024
83dc410
file movement, addition of sections, typos
CosiMichele Apr 23, 2024
4019a0e
cleaned up documentation and links
CosiMichele Apr 23, 2024
55711c5
CyVerse pages needs lifting
CosiMichele Apr 25, 2024
f490ae6
refreshed cyverse health info pt 1
CosiMichele Apr 26, 2024
4586b50
fixed soteria request page
CosiMichele Apr 29, 2024
50160d4
refresched access instructions
CosiMichele Apr 29, 2024
04f3468
added installation note
CosiMichele Apr 29, 2024
b67eb12
removed mac, win instructions (as Cisco update now works for both)
CosiMichele Apr 29, 2024
c4cc452
need to add HPC information
CosiMichele Apr 29, 2024
34c43e1
updated hpc instructions (rstudio)
CosiMichele Apr 30, 2024
8e40291
reworked HPC documentation
CosiMichele Apr 30, 2024
ad7b79d
globus updated
CosiMichele Apr 30, 2024
aa5a876
fixed box with link
CosiMichele Apr 30, 2024
7368116
refreshed menus and cyerse health tut
CosiMichele Jun 19, 2024
bca3295
rewrote data transfer paragraph
CosiMichele Jun 19, 2024
62e9c52
added data management with DE section
CosiMichele Jun 19, 2024
a759259
cleaned up transfers
CosiMichele Jun 19, 2024
59c0acb
removed metadata portion
CosiMichele Jun 19, 2024
d253549
cleaned up additonal links, added teams head
CosiMichele Jun 19, 2024
79bb7ef
updated App tutorial and teams
CosiMichele Jun 20, 2024
f38b37f
typo fix
CosiMichele Jul 8, 2024
f2a629c
removed line
CosiMichele Jul 8, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
169 changes: 169 additions & 0 deletions docs/access/access_hpc.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,169 @@
![](../assets/cover.png){width="340"}

---

# **The Secure Research Enclave and HPC Cluster**

This user manual will guide you through the high-performance computing (HPC) features and functionalities of Soteria. The HPC cluster is equipped with multiple compute nodes (CPU) and two GPU nodes available for specific needs.

To access Soteria, you can utilize the OnDemand graphical user interface, which provides a user-friendly interface for seamless interaction with the enclave.

We hope this manual assists you in making the most of Soteria's capabilities while ensuring the confidentiality and security of your research data.

---

## Prerequisites: Accessing Soteria and Cluster Resources

### Accessing the Soteria Enclave

!!! Info "*Please refer to the [Obtaining Soteria Access via VPN](access_vpn.md) for Soteria access details.*"

**Trainings**: Once your Soteria request form has been reviewed and approved, you will receive an email with the subject "*UA Soteria Access Request Approved*". This email will contain the next steps to take, including detailed instructions to get Soteria access and establish a VPN connection.

!!! Warning "Required Trainings"

The trainings that Soteria requires completion of are:

- HIPAA Essentials
- UA Information Security Awareness Training
- Insiders Threat Training

These can be accessed at [uaccess.arizona.edu](https://uaccess.arizona.edu/) or [edgelearning.arizona.edu](https://edgelearning.arizona.edu/).

**Access to Soteria**: After completing the required trainings, you will be notified via email when you have been granted access to the Soteria VPN. The Soteria VPN is crucial for maintaining HIPAA compliance and distinguishes Soteria usage from standard HPC clusters. Please note that Soteria access can only be established when connected to the VPN.

- [Obtaining the Cisco VPN](access_vpn.md/#downloading-cisco-vpn)
- [Connecting to the Soteria enclave](access_vpn.md/#connecting-to-the-soteria-enclave)

!!! Info "Additional Instructions"

Ensure that the computer you will use to access Soteria services meets the following requirements:

- Keep your Operating System and applications updated.
- Use strong passwords (easy to remember, multiple character, letter, number combinations).
- Do not use a shared computer with other users.
- Maintain up-to-date antivirus software.

### Cluster Resources

Please refer to the regular [HPC documentation](https://uarizona.atlassian.net/wiki/spaces/UAHPC/overview) to learn how to use the HPC system. During the early testing phase, the time and space allocations will be similar to those of the HPC clusters, with a time allocation of 150,000 hours.

The Soteria cluster consists of the following resources:

- **Compute**:
- 4 Standard CPU nodes (`r1u26n1`, `r1u27n1`, `r1u28n1`, `r1u29n1`)
- Each CPU node has 94 cores and 512GB RAM memory available.
- 2 GPU Nodes (`r1u30n1`, `r1u32n1`)
- Each GPU node has access to 94 cores and 512GB RAM memory available.
- Access to 4 V100 GPUs.
- **Storage**:
- Your Soteria account will come with space available in the `/home` and `/groups` directories, where you can store your research data. Currently, these directories do not have a quota limit.

---

## Accessing the HPC Soteria Enclave and GUI Applications

!!! Info "*To access the HPC Soteria enclave, please ensure that you are connected to the Soteria VPN as explained in the previous section.*"

To access GUI applications, follow these steps after connecting to the Soteria VPN:

1. Open your preferred web browser.
2. Visit the following URL: [**https://ondemand-hipaa.hpc.arizona.edu**](https://ondemand-hipaa.hpc.arizona.edu/). Log in using your UA credentials.
3. The available GUI applications on Soteria are **:simple-rstudio: RStudio**, **:material-chart-bell-curve: Matlab**, **:simple-jupyter: Jupyter**, **:material-apps-box: Stata** and an **:octicons-device-desktop-16: Interactive Desktop**.

??? Warning "First time logging in? Home directory not found?"

If this is your first logging onto the OnDemand Soteria service, it is likely that you're going to be greeted with the following message:

<figure markdown="span">
![](../assets/HPC/hpc-00.png){width="650"}
</figure>
If that is the case, follow the onscreen instructions:

1. Open the shell (which will automatically create your home folder).
2. Reload the page.

Once that is done, you should be greeted with the OnDemand home page.

<figure markdown="span">
![](../assets/HPC/hpc-01.png){width="650"}
</figure>

### Connecting to the Applications

!!! Tip "The following section uses RStudio as an example, however, these same instructions are applicable to **:material-chart-bell-curve: Matlab**, **:simple-jupyter: Jupyter**, **:material-apps-box: Stata** and the **:octicons-device-desktop-16: Interactive Desktop**."

1. Once you access the OnDemand interface, navigate to the "Interactive Apps" dropdown menu.
2. Select the desired application from the options, in this case "RStudio server" was chosen.
<figure markdown="span">
![](../assets/HPC/hpc-02.png){width="650"}
</figure>
3. Apply the necessary resources and enter your laboratory/research group in the "PI Group" field.
<figure markdown="span">
![](../assets/HPC/hpc-03.png){width="700"}
</figure>
4. Connect to the requested node by clicking "Connect to RStudio Server".
<figure markdown="span">
![](../assets/HPC/hpc-04.png){width="700"}

!!! Info "Choosing the **:octicons-device-desktop-16: Interactive Desktop** gives you access to more."

The :octicons-device-desktop-16: Interactive Desktop gives you access to the ability to load **modules**. Modules are pre-installed software that are not loaded upon starting the Application/terminal but users can load at any point during the node uptime.

Once logged into the :octicons-device-desktop-16: Interactive Desktop, users can open the Terminal and execute `module avail` to see what software are available. To load the software, users can then do `module load <software>`; The loaded software will then be available until the :octicons-device-desktop-16: Interactive Desktop is terminated.

For a list of `module` commands, please refer to the [official UA HPC documentation page](https://uarizona.atlassian.net/wiki/spaces/UAHPC/pages/75990663/Accessing+Software).
<figure markdown="span">
![](../assets/HPC/7.jpg){width="650"}
<figcaption> Example of `module load <software>` where the user loads and launches Matlab through `module load matlab` and `matlab` within the :octicons-device-desktop-16: Interactive Desktop session. </figcaption>
</figure>


### Command Line Access

To access Soteria through your computer's command line, you can use SSH (Secure Shell) with the following instructions:

1. Open your preferred terminal application on your local machine.
2. Use the SSH command to connect to Soteria. The hostname for Soteria command line access is: `shell.cougar.hpc.arizona.edu`. Enter the following command, replacing `<netid>` with your actual NetID:
```
ssh <netid>@shell.cougar.hpc.arizona.edu
```
3. You will be prompted to enter your password. Please provide your password associated with your NetID. Make sure you have authorized access to use Soteria. All user activity may be monitored and reported.
4. After successfully logging in, you will see a message similar to the following:
```
Authorized uses only. All activity may be monitored and reported.
Last login: Tue Apr 30 13:14:23 2024 from shell.cougar.hpc.arizona.edu
Authorized uses only. All activity may be monitored and reported.
[cosi@taub ~]$
```
The `taub` is a login node, and it provides the same functionality and follows the same policies as other HPC clusters.

5. Please note that modules are available on Soteria's compute nodes but not on the login node. You can use the **`interactive`** command to request a session on a compute node, and jobs can be submitted using the standard **`sbatch`** command.

For more detailed information on running jobs with SLURM and utilizing Soteria's capabilities, please refer to the [UA HPC documentation on "Running Jobs with Slurm"](https://uarizona.atlassian.net/wiki/spaces/UAHPC/pages/75989875/Running+Jobs+with+Slurm).

If you do not have access to a command line, the OnDemand service allows you to start a cluster with Shell Access. On the menu at the top of the OnDemand dashboard select Clusters > Shell Access. A new tab should open giving you CLI capabilities.

<figure markdown="span">
![](../assets/HPC/hpc-07.png){width="700"}
</figure>

---

## Transferring and Accessing Data via Globus

Globus is a recommended tool for efficiently transferring data to and from the Soteria environment. It provides a reliable and secure data transfer mechanism. To learn more about using Globus, please refer to the following link: [**Globus Documentation**](https://uarizona.atlassian.net/wiki/spaces/UAHPC/pages/75989646/Globus).

!!! Note "Soteria Endpoint for Globus: '`UA HPC HIPAA Filesystems`'"

**File Paths:** When working with Soteria, you can access your files using the following file paths:

1. Filexfer Nodes:
- **`/hipaa/groups/<pi_netid>`**: This path allows access to the shared group directories associated with your PI's NetID.
- **`/hipaa/home/<uxx>/<your_netid>`**: This path provides access to your personal home directory under your NetID.

2. When connected to a Soteria login or compute node:
- **`/groups/<pi_netid>`**: This path corresponds to the shared group directories associated with your PI's NetID.
- **`/home/<uxx>/<your_netid>`**: This path corresponds to your personal home directory under your NetID.

By utilizing these file paths, you can efficiently access and manage your data within the Soteria environment.
2 changes: 2 additions & 0 deletions docs/hpc.md → docs/access/access_hpc.md.old
Original file line number Diff line number Diff line change
@@ -1,3 +1,5 @@
# NOTE: THIS PAGE IS ONLY FOR BACKUP PURPOSES #

![](images/cover.png){width="340"}

![](images/Antakya_Arkeoloji_Muzesi_1250308_nevit.jpg){width="400"}
Expand Down
84 changes: 84 additions & 0 deletions docs/access/access_mac.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,84 @@
![](../../assets/cover.png){width="340"}

---

<img align="right" src="https://user-images.githubusercontent.com/131712709/235216212-9be492ec-eba0-41c0-b643-863eee12199b.png" width="400">




<div id="user-content-toc">
<ul>
<summary><h1 style="display: inline-block;">Soteria Access User Manual (Mac)</h1></summary>
</ul>
</div>



## Background

Soteria is a secure and collaborative platform designed for health sciences research. It enables researchers to analyze personally identifiable and protected health information while adhering to compliance guidelines. By providing cutting-edge software and web-based applications, Soteria ensures data security throughout the research lifecycle, allowing multiple research groups to work together effectively while meeting regulatory requirements.


## Request Access to Soteria

1. Establish a primary PI or sponsoring faculty member and have them indicate that you are a team member on Soteria.
2. Open <https://soteria.arizona.edu/> and click **Request Access**.


<p align="center">
<img src="https://user-images.githubusercontent.com/131712709/235225922-d1a9630b-2dac-4abf-afc0-64c80a1cd435.png" width="380">
</p>


3. Fill out the form with your user and project information. Once submitted you will receive an automated email indicating completion of the request.
4. Once approved, you will receive a secondary automated email, UA Soteria Access Request Approved indicating required trainings. Log into Edge Learning (<https://edgelearning.arizona.edu/>) to sign up and complete all of the required trainings.

## Download and Set up Cisco VPN

1. Download the VPN software by following the link (<https://vpn.arizona.edu/+CSCOE+/logon.html#form_title_text>) . You will be prompted to log in. Use the default connections. Enter your NetID, Password and NetID +Method (ex: "push").

<p align="center">
<img align="center" src="https://user-images.githubusercontent.com/131712709/235227282-ac99a356-c4ec-4fe4-819d-50adffddec75.png" width="330">
</p>

2. Follow the prompts to download and install Cisco AnyConnect VPN.

<p align="center">
<img align="center" src="https://user-images.githubusercontent.com/131712709/235227654-0ef0b5b4-a804-420b-a224-9d1201fe2da8.png" width="168">
</p>

<p align="center">
<img align="center" src="https://user-images.githubusercontent.com/131712709/235228623-21aebabc-ab40-4372-b53b-ede0bd4521bc.png" width="600">
</p>

3. Open Cisco AnyConnect VPN on your desktop.
4. The first connection must be to: vpn.arizona.edu. Type into the pop-up and click **connect**.

<p align="center">
<img align="center" src="https://user-images.githubusercontent.com/131712709/235229386-dc171283-9707-4e97-ba2d-e9fdc3750877.png" width="350">
</p>

5. Sign in as before, using the default group. Enter your NetID, Password and NetID +Method (ex: "push").

<p align="center">
<img align="center" src="https://user-images.githubusercontent.com/131712709/235229698-895b0740-954d-40f3-bcb8-d2a717439126.png" width="350">
</p>

6. Click **Disconnect**

<p align="center">
<img align="center" src="https://user-images.githubusercontent.com/131712709/235229897-48add640-9da0-4ebd-864a-b0f44f9bd959.png" width="350">
</p>

You are now ready to connect to your Soteria VPN.

## Connect to Soteria VPN

1. If it does not auto-populate, connect to the Soteria VPN using: vpn.arizona.edu/soteria. Again, enter your NetID, Password and NetID +Method (ex: "push") to sign in.

<p align="center">
<img align="center" src="https://user-images.githubusercontent.com/131712709/235230138-0aa04bd3-7b8f-4a3f-bf1d-076766e8db94.png" width="350">
</p>

2. Accept the pop-up notification. The Cisco Icon in the system tray (bottom right) of your desktop, will now display a lock, indicating a successful connection.
84 changes: 84 additions & 0 deletions docs/access/access_vpn.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,84 @@
![](../../assets/cover.png){width="340"}

---

# **Accessing Soteria via VPN**

## Request Access to Soteria

Access to Soteria is administrated by the [Controlled and Regulated Research Services Program (CRRSP) team](https://medicineit.arizona.edu/compliance-and-security/hipaa-phi/approved-phi-solutions#:~:text=of%20my%20emails%3F-,Controlled%20and%20Regulated%20Research%20Services%20Program%20(CRRSP),-%3A). Prior to being admitted permission to use the secure enclave, prospective users must request access to Soteria first. The following 4 steps will highlight the process.

1. Establish a primary PI or sponsoring faculty member and have them indicate that you are a team member on Soteria.
2. Navigate to [soteria.arizona.edu](https://soteria.arizona.edu/), and from the *Get Started* dropdown menu click **Request Access**. Alternatively, you can click **Request Access** on the top right of the screen.

<figure markdown="span">
[![](../../assets/SoteriaAccess/access_vpn_01.png){ width="800"}](https://soteria.arizona.edu/)
</figure>
3. This will open the Request Access page. Click **Apply for Soteria Access** and Fill out the form with your user and project information. Once submitted you will receive an automated email indicating completion of the request.

<figure markdown="span">
[![](../../assets/SoteriaAccess/access_vpn_02.png){ width="800"}](https://soteria.arizona.edu/get-started/request-access)
</figure>
4. Once approved, you will receive a secondary automated email (title: *UA Soteria Access Request Approved*) indicating that you've been approved access and the required trainings needed to use Soteria. Log into [Edge Learning](https://edgelearning.arizona.edu/) to sign up and complete all of the required trainings.

!!! Warning "Required Trainings"

The trainings that Soteria requires completion of are:

- HIPAA Essentials
- UA Information Security Awareness Training
- Insiders Threat Training

These can be accessed at [uaccess.arizona.edu](https://uaccess.arizona.edu/) or [edgelearning.arizona.edu](https://edgelearning.arizona.edu/).

## Downloading Cisco VPN

!!! Warning "In order to access the Cisco VPN download page and other University of Arizona services including Soteria, one must have a functional [UA NetID](https://netid-portal.iam.arizona.edu/) with <u>Duo authentification enabled</u>."

??? Tip "First time using a VPN?"

If this is your first time using a VPN, we suggest reading [this general guide on connecting and using the VPN service](https://cbc.arizona.edu/vpn-instructions) from the UA Chemistry & Biochemistry Department or watching this short video from the Nursing department:

<figure>
<iframe src="https://player.vimeo.com/video/415856895?h=ca3796f8fe" width="640" height="360" frameborder="0" allow="autoplay; fullscreen; picture-in-picture" allowfullscreen></iframe>
<p><a href="https://vimeo.com/415856895">Getting Started with UArizona VPN - Windows</a> from <a href="https://vimeo.com/wildcatnursing">UA College of Nursing</a> on <a href="https://vimeo.com">Vimeo</a>.</p>
</figure>

!!! Info "Operating Systems"
These instructions are applicable to **macOS** and **Windows** Operating Systems as Cisco will automatically detect your hardware. If you are using a Linux machine, please refer to the official [Cisco AnyConnect documentation](https://www.cisco.com/c/en/us/support/docs/smb/routers/cisco-rv-series-small-business-routers/kmgmt-2597-Installing-AnyConnect-Linux-Ubuntu-desktop-User-Interface.html) on the topic. Although obtaining the software and intallation instructions might differ, connecting will follow the same method.

If you have not done so yet, go to the download page of the the Cisco VPN software at [vpn.arizona.edu](https://vpn.arizona.edu/). Log in using your UA NetID information and download the VPN according to your Operating System. Download and install Cisco VPN.

<figure markdown="span">
[![](../assets/SoteriaAccess/access_vpn_03.png/){ width="800"}](https://vpn.arizona.edu/)
</figure>

## Connecting to the Soteria Enclave

When opening Cisco VPN you will be greeted with the following log in window.

<figure markdown="span">
![](../assets/SoteriaAccess/access_vpn_04.png)
</figure>

The typable field will allow you to type any VPN host associated to the University of Arizona. By default, you should be able to select *UA SSL VPN*. However, in order to connect to the Soteria VPN, you will need to insert the following URL: **vpn.arizona.edu/soteria**. In the future, the field should autopopulate to **Soteria**. Upon clicking **Connect** a second window will open, where you can insert your UA NetID, Password and NetID +Method (e.g.,: "push") to sign in.

<figure markdown="span">
![](../assets/SoteriaAccess/access_vpn_05.png)
</figure>

??? Tip "First time connecting to Soteria and having trouble? You may have to connect to the UA VPN."

In the typable field, type **vpn.arizona.edu** and Connect. Follow the connection instructions and establish connection first. Then disconnect from the UA VPN, and then connect to the Soteria VPN. Cisco *might* need to establish the connection first.

When you see the following popup, **accept** the message and you will be connected to the Soteria enclave.

<figure markdown="span">
![](../assets/SoteriaAccess/access_vpn_06.png)
</figure>

The Cisco VPN icon will show a lock in front, meaning that the connection is working, secured and metered. You can now proceed to using he various services within the safe Soteria enclave!

<figure markdown="span">
![](../assets/SoteriaAccess/access_vpn_07.png)
</figure>
Loading