Project CLASP: Common Login and Access rights across Services Plan Goal  Propose a detailed plan to reduce the number of login/passwords entered by users.

Slides:



Advertisements
Similar presentations
A centre of expertise in digital information management Developing a Quality Culture For Digital Library Programmes Author & Presenter Brian Kelly UKOLN.
Advertisements

© 2007 AT&T Knowledge Ventures. All rights reserved. AT&T and the AT&T logo are trademarks of AT&T Knowledge Ventures. Interactive Solutions & Design Group.
IS Theories & Practices Systems Architecture & Infrastructure IS 655: Supplementary Note 1 CSUN Information Systems.
Password? CLASP Project Update C5 Meeting, 16 June 2000 Denise Heagerty, IT/IS.
Password?. Project CLASP: Common Login and Access rights across Services Plan
Password?. Project CLASP: Common Login and Access rights across Services Plan
All Ireland Institute for Hospice and Palliative Care Process, criteria, structures…
Password? CLASP Phase 2: Revised Proposal C5 Meeting, 16 February 2001 Denise Heagerty, IT/IS.
Copyright © 2003 by The McGraw-Hill Companies, Inc. All rights reserved. Business and Administrative Communication SIXTH EDITION.
Secure Off Site Backup at CERN Katrine Aam Svendsen.
Chapter 3: The Project Management Process Groups
8 Systems Analysis and Design in a Changing World, Fifth Edition.
M.Sc Projects David Wilson M.Sc Projects Coordinator for Computing & Information Systems.
Writing Grant Proposals. I. Cover letter II. Proposal Summary III. Organizational Description IV. Problem Statement V. Project Objectives VI. Methods.
The R&M Task Group mandate is to: Develop specific recommendations on how social housing project reporting and monitoring could be improved and made more.
Project Management Design specifications
IS 460 Notes IS Strategic Planning By Thomas Hilton.
EE x12 Technical Reports Writing Lecture 7
1 Phases in Software Development Lecture Software Development Lifecycle Let us review the main steps –Problem Definition –Feasibility Study –Analysis.
Professional Certificate – Managing Public Accounts Committees Ian “Ren” Rennie.
GBA IT Project Management Final Project - Establishment of a Project Management Management Office 10 July, 2003.
Chapter 16 Structured Systems Analysis. Learning Objectives Know goals, plans, tasks, tools, & results of systems analysis Understand/appreciate costs.
Module N° 8 – SSP implementation plan. SSP – A structured approach Module 2 Basic safety management concepts Module 2 Basic safety management concepts.
BPR PHASE IV IMPLEMENTATION NOAA Business Process Re-Engineering Current Status: June 21, 2006 NESDIS Cooperative Institute Directors and Administrators.
University of Wisconsin System HRS Project Update to ITC November 19, 2010.
Requirements Specification for Lab3 COP4331 and EEL4884 OO Processes for Software Development © Dr. David A. Workman School of Computer Science University.
Product Documentation Chapter 5. Required Medical Device Documentation  Business proposal  Product specification  Design specification  Software.
The Future of Public Sector Quality Management with CAF The CAF External Feedback Procedure 2010.
Systems Development MBAA 609 R. Nakatsu. Overview of Today’s Lecture Why do IT projects succeed and fail? Two philosophies of systems development –Systems.
9/12/2006 TPTF MIS portal Update Pat Harris A portal is a web site or service that offers a broad array of resources and services such as , forums,
Managing EERE Web Projects Presenter: Allison Casey January 30, 2008.
1 Technical & Business Writing (ENG-315) Muhammad Bilal Bashir UIIT, Rawalpindi.
Analysis, Scoping and Costing. Analysis The purpose of analysis is to confirm the current needs of the business or marketplace. It defines – The current.
Introduction to Making Multimedia
System conversion project review project deliverable: the final report programmed reviews types of system maintenance information system obsolescence maintenance.
Example Template for Project Presentation
Chapter 15 Introduction to Systems Development. Learning Objectives Learn how information systems are developed Understand importance of managing SD process.
Password? CLASP Project FOCUS Meeting, 12 October 2000 Denise Heagerty, IT/IS.
JRA Execution Plan 13 January JRA1 Execution Plan Frédéric Hemmer EGEE Middleware Manager EGEE is proposed as a project funded by the European.
The Final Section: An Overview
Prosentient Systems DSpace © Prosentient Systems 2012 DSpace training Item submission.
Component 8 Installation and Maintenance of Health IT Systems Unit 4 Structured Systems Analysis and Design This material was developed by Duke University,
COMPETITIVE AND SUSTAINABLE GROWTH Research DG European Commission Expressions of interest / Dedicated call mechanism.
Computer Security Risks for Control Systems at CERN Denise Heagerty, CERN Computer Security Officer, 12 Feb 2003.
CERN - European Organization for Nuclear Research Beyond ACB – VPN’s FOCUS June 13 th, 2002 Frédéric Hemmer & Denise Heagerty- IT Division.
1 PRINCIPAL INVESTIGATOR USE OF THE ST ScI ELECTRONIC GRANTS MANAGEMENT SYSTEM January, 2001.
To be completed Your proposal  Your House style  Your site plan  Page plans (a draft layout for each of your five pages)  A design mock-up -  All.
Online Learning for Professional Certification: From Conception to Implementation Brent Epp Consultant, Student Services Program and Student Services Branch.
Grant Proposal for [Project Name]
ANALYSIS PHASE OF BUSINESS SYSTEM DEVELOPMENT METHODOLOGY.
E-Science Security Roadmap Grid Security Task Force From original presentation by Howard Chivers, University of York Brief content:  Seek feedback on.
CERN IT Department CH-1211 Genève 23 Switzerland t Services and Resources Web IT Services and Resources Web Pages A Proposal Tim Bell 1.
CERN - IT Department CH-1211 Genève 23 Switzerland t Operating systems and Information Services OIS Proposed Drupal Service Definition IT-OIS.
The Planning Phase Recognize the problem MIS steering committee 7. ManagerSystems analyst Define the problem Set system objectives Identify system constraints.
Password? CLASP Phase 2: Revised Proposal FOCUS, 3 May 2001 Denise Heagerty, IT/IS.
GEO Implementation Mechanisms Giovanni Rum, GEO Secretariat GEO Work Programme Symposium Geneva, 2-4 May 2016.
Innovation Ecosystems Fellowship Overview
Implementation Strategy July 2002
Version 0.1Assessment Method Overview - 1 Process Assessment Method An objective model-independent method to assess the capability of an organization to.
Client Needs Analysis & Competitors
CLINICAL INFORMATION SYSTEM
Introduction to Systems Analysis and Design
A01 DESIGN To be completed Your proposal  Your House style 
CHAPTER 4 PROPOSAL.
CHAPTER 4 PROPOSAL.
Project Management Process Groups
CLASP Project AAI Workshop, Nov 2000 Denise Heagerty, CERN
1 Stadium Company Network. The Stadium Company Project Is a sports facility management company that manages a stadium. Stadium Company needs to upgrade.
Proposals & Project Specifications
Employee engagement Delivery guide
Presentation transcript:

Project CLASP: Common Login and Access rights across Services Plan Goal  Propose a detailed plan to reduce the number of login/passwords entered by users to access services they are authorised to use

What’s in a name? The meaning of “clasp”:  An object used to join together two materials  To take in your hand  An acronym for “Common Login and Access rights across Services Plan”

Outline  Project Goal  Project Purpose  Background  Scope  Project Phases  Phase 1 Goals  Phase 1 Deliverables  Summary

Project CLASP Purpose For users both on and off the CERN site:  Investigate and propose a plan for implementing a common authentication mechanism for use by CERN services.  Investigate and propose a platform independent mechanism to provide controlled access to objects (e.g. systems, files, web pages) for authenticated users.

Background  The number of login/passwords has become a frustration for the user community  The number of services continues to grow  Initiatives towards a common login id and password synchronisation have been made  Windows 2000 and Linux 2000 provide an opportunity for further improvement  Technologies such as Kerberos v5, Certificates/PKI, LDAP are becoming mature  A Divisional Project is launched (CLASP)

Project Scope  Address computing services offered by IT and AS Divisions  Normal user access from in or outside CERN  Target W2000 and Linux for interactive (telnet, X), web, and file (NICE, AFS) access  Not a “security project”- but elimination of clear-text passwords is desirable  Not an “implementation project” - the result will be a proposal and detailed plan

The final proposal will include:  A proposed common authentication and authorisation mechanism  A plan for introducing the mechanism  A list of services covered  Recommendations for services not covered  An opt-out mechanism for special cases  A password (check & change) policy  An assessment of the impact on users and service providers both at CERN and other sites

Project Phases Phase 1:  Service Survey and Feasibility Study what do we have now and what is possible for the future Phase 2:  Final Proposal and Detailed Plan Phase 1 will define the steps required for Phase 2

Phase 1 Goals  Document the current login/password mechanisms used on IT and AS services  Assess the feasibility of Kerberos v5 and/or other technology as a common authentication mechanism for the planned Windows 2000 & Linux 2000 environments  Investigate possibilities for platform independent access control  Propose next steps, including personnel and budget estimates

Phase 1 Deliverables Two Documents:  Survey of login/password mechanisms used by services in IT and AS Division  Feasibility of Kerberos v5 and/or other technology as a base technology for meeting the project goal Success Criteria:  Acceptance by an open C5 meeting Timescale:  From Jan 2000 for months

Service Survey: Document Blueprint Purpose:  Document current login/password mechanisms for IT and AS services  Provide a basis to assess the impact of introducing a common authentication mechanism Planned Contents:  A table of services with a brief description of the login/password mechanism used People Involved:  Contributors: service managers  Audience: service providers and IT management  Reviewers: service managers  Editor: Denise Heagerty

Feasibility Study: Document Blueprint Purpose:  To allow a decision on the technology to be used as the basis for a common authentication mechanism  To document initial investigations and test results People Involved:  Contributors: members of teams working on CLASP, Linux, WIN2000, AFS, Web, LDAP, other specialists  Audience: service providers and IT management  Reviewers: service managers  Editor: Denise Heagerty

Feasibility Study: Document Blueprint (cont) Planned Contents:  A proposed base technology for common authentication and authorisation at CERN  Background information and justification  A list of services covered  A list of tests made and the results  A discussion of possibilities for platform independent access control  Proposed next steps, including personnel and budget estimates

Summary  Project purpose, scope and phases outlined  Phase 1: service survey and feasibility study parallel activities your collaboration is needed results will be documented and presented to C5 Timescale: From Jan 2000 for 3-6 months  Phase 2: final proposal and detailed plan expected contents outlined actions and resources required will be defined by Phase 1http://cern.ch/proj-clasp

Password?