Https://aarc-project.eu Authentication and Authorisation for Research and Collaboration Heiko Hütter, Martin Haase, Peter Gietz, David Groep AARC 3 rd.

Slides:



Advertisements
Similar presentations
Federated Identity Management for Researchers – A quick overview from GÉANT BoF TNC May 2014 Dublin.
Advertisements

LIVEABLE CITIES Liveable Cities and Towns; Contributing to the Thematic Strategy on the Urban Environment (Session B4) Allen Creedy, ethics etc…
FP7 Preparations ISTC meeting 31 March Content FP7 preparation approach and timetable Context for FP7 and for ICT in FP7 Research in New Financial.
South Africa’s S&T partnership with the European Union From FP4 to Horizon 2020 Daan du Toit Senior S&T Representative to the EU.
Benchmarking as a management tool for continuous improvement in public services u Presentation to Ministry of Culture of the Russian Federation u Peter.
Business Services in Europe: Raising the Game Norman Rose Vice-Chairman High Level Group on Business Services & Chairman European Business Services Round.
Networks ∙ Services ∙ People John DYER TF-MSP Video Conference Community Procurement Support Building on the SPOT-ON Proposal Smart Procurement,
EGI-Engage EGI-Engage Engaging the EGI Community towards an Open Science Commons Project Overview 9/14/2015 EGI-Engage: a project.
Procurement Innovation for Cloud Services in Europe CERN – 14 May 2014 Bob Jones (CERN) This document produced by Members of the Helix Nebula consortium.
AARC Overview Licia Florio, David Groep 21 Jan 2015 presented by David Groep, Nikhef.
Federated Identity Management for HEP David Kelsey WLCG GDB 9 May 2012.
EMI INFSO-RI SA2 - Quality Assurance Alberto Aimar (CERN) SA2 Leader EMI First EC Review 22 June 2011, Brussels.
CISB444 - Strategic Information Systems Planning Chapter 3 : Developing an IS/IT Strategy: Establishing Effective Processes Part 2.
Authentication and Authorisation for Research and Collaboration Licia Florio (GÉANT) Christos Kanellopoulos (GRNET) Service orientation.
PARIS21/CARICOM Workshop on NSDS, Trinidad and Tobago, July 2009 NSDS Overview Presentation by PARIS21 Secretariat.
This document produced by Members of the Helix Nebula Partners and Consortium is licensed under a Creative Commons Attribution 3.0 Unported License. Permissions.
Authentication and Authorisation for Research and Collaboration Pilots on the Integrated R&E AAI Paul van Dijk, Activity Lead Pilots.
| Collaboration at Rural Business Approach.
Authentication and Authorisation for Research and Collaboration Licia Florio REFEDS Meeting The AARC Project I2 Technology Exchange.
Authentication and Authorisation for Research and Collaboration Licia Florio AARC Workshop The AARC Project Brussels, 26 October.
Authentication and Authorisation for Research and Collaboration David Kelsey AARC AHM Milan And mechanisms NA3 Task 4 – Scalable.
Authentication and Authorisation for Research and Collaboration Niels van Dijk AARC General Meeting Authentication and Authorisation.
Authentication and Authorisation for Research and Collaboration Peter Solagna Milano, AARC General meeting Report and plans Attribute.
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos GRNET Proposed Pilots for Libraries and eGov.
Authentication and Authorisation for Research and Collaboration Mikael Linden AARC all hands Milan Authentication and Authorisation.
Authentication and Authorisation for Research and Collaboration Michał Jankowski, Maciej Brzeźniak AARC General Meeting, Milan.
Authentication and Authorisation for Research and Collaboration Milan, Italy Training and Outreach Authentication and Authorisation.
JRA1.4 Models for implementing Attribute Providers and Token Translation Services Andrea Biancini.
Jacques Bus Head of Unit, DG INFSO-F5 “Security” European Commission FP7 launch in the New Member States Regional on-line conference 22 January 2007 Objective.
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos
Building Strong Library Associations | Sustaining Your Library Association BSLA Stakeholders Workshop Yaounde, Cameroon, April 2012 Managing Relationships.
Authentication and Authorisation for Research and Collaboration David Groep AARC All Hands meeting Milano Policy and Best Practice.
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos Open Day Event: Towards the European Open.
NREN Trust and Identity Strategy Ann Harding, SWITCH Cambridge July 2014.
Networks ∙ Services ∙ People Thomas Bärecke Journée Fédération, Paris Collaboration européenne GÉANT SA5 03/07/2015 SA5 T5 team
19-20 October 2010 IT Directors’ Group meeting 1 Item 6 of the agenda ISA programme Pascal JACQUES Unit B2 - Methodology/Research Local Informatics Security.
Networks ∙ Services ∙ People Nicole Harris UK federation meeting eduGAIN, REFEDS and the UK 23 June 2015 Project Development Officer GÉANT.
Networks ∙ Services ∙ People Marina Adomeit FIM4R meeting Virtual Organisation Platform as a Service VOPaaS Nov 30, 2015, Austria Task Leader,
Authentication and Authorisation for Research and Collaboration Licia Florio REFEDS Meeting AARC and AARC2 Vienna, 1 st December.
EUDAT receives funding from the European Union's Horizon 2020 programme - DG CONNECT e-Infrastructures. Contract No EPOS and EUDAT.
WP9– Evaluation, roadmap & development plan Rupert Lueck EMBL – 26 June
Authentication and Authorisation for Research and Collaboration Bari, Italy Training and Outreach Authentication and Authorisation.
David Groep Nikhef Amsterdam PDP & Grid AARC Authentication and Authorisation for Research and Collaboration an impression of the road ahead.
Networks ∙ Services ∙ People Andrea Biancini #TNC15, Porto, Portugal Implementing Grouper to federate user authorization Federated Authorization.
NERC Innovation Oil & Gas Challenging Environments Workshop 17 th October 2014.
Open Collaboration Exchange Alexander Blanc, Niels van Dijk, Jocelyn Manderveld, Remco Poortinga - van Wijnen VAMP 2013, Espoo.
RCUK International Funding Name Job title Research Councils UK.
Authentication and Authorisation for Research and Collaboration Licia Florio AARC CORBEL Workshop The AARC Project Paris, 31 May.
Authentication and Authorisation for Research and Collaboration Licia Florio AARC f-2-f Meeting One Year of AARC Utrecht, 24 May.
Authentication and Authorisation for Research and Collaboration David Kelsey AARC AHM Utrecht NA3 Task 4 – Scalable Policy Negotiation.
Authentication and Authorisation for Research and Collaboration AARC/CORBEL Workshop for Life Sciences AAI AARC Draft Blueprint.
Making the future happen Some remarks from the perspective of the Reykjavik-Group Chair full report:
Authentication and Authorisation for Research and Collaboration Brussels Training and Outreach Authentication and Authorisation.
Authentication and Authorisation for Research and Collaboration Taipei - Taiwan Mechanisms of Interfederation 13th March 2016 Alessandra.
Bled, 18 th June 2008 eCollaboration: Overcoming Boundaries through Multi channel collaborations Workshop on Services.
Authentication and Authorisation for Research and Collaboration Licia Florio IGTF Meeting The AARC Project Amsterdam, 8 September.
Authentication and Authorisation for Research and Collaboration On behalf of the MJRA1.2 scribes J Jensen.
Networks ∙ Services ∙ People Di4R Network. Services. People. GÉANT 28 th September, Krakow.
The Policy Puzzle Many groups and (proposed) policies, but leaving many open issues AARC “NA3” is tackling a sub-set of these “Levels of Assurance” –
Steven Newhouse EGI-InSPIRE Project Director, EGI.eu
Federated Identity Management for Researchers (FIM4R)
EGI-Engage Engaging the EGI Community towards an Open Science Commons
Sustainability and Operational models
Policy and Best Practice … in practice
EGI Webinar - Introduction -
AARC Blueprint Architecture and Pilots
Common Authentication and Authorisation Service for Life Science Research Mikael Linden, ELIXIR Finland.
Common Solutions to Common Problems
Juan Gonzalez eGovernment & CIP operations
WP6 – EOSC integration J-F. Perrin (ILL) 15th Jan 2019
Presentation transcript:

Authentication and Authorisation for Research and Collaboration Heiko Hütter, Martin Haase, Peter Gietz, David Groep AARC 3 rd AHM meeting Sustainability of services Sustainability and Operational models May 25 th, 2016 Presented by DavidG, NA3 coordinator 1

From AARCs perspective a number of services / architectures (SA1 pilots) should be sustained, e.g. The AARC CILogin-like TTS Pilot (see later slides for more details) The Collabora Cloud Suite Pilot (Libre Office Text, Calculation and Presentation Tools in the Cloud) Library Pilot In general there are three possible strategies to achieve a sustainable operation of a service developed within a research project: 1.Find an established public sector organization to operate the service 2.Achieve a sustainable “project-funding” / found an organization to operate the service 3.Find a private sector organization to operate the service 2 The Strategy of sustaining Services for Research

Despite having some advantages like same people have the opportunity to continue their efforts no transaction costs (know how, code,...) no (possible) interruptions... this is quite hard to achieve. Stakeholders (project partners, funding agencies,...) of the project typically don’t suspect such a move – a project is even defined as something with a defined end time. There are no well established (political) mechanisms for such efforts. In general the cost isn’t worth the effort. 3 1) Achieve a sustainable “project-funding” / found an organization to operate the service

In many cases it is possible to find an organization with a mission that aligns to the solutions the respective service provides. Often times these partners are already part of the research consortium developing the service (or pilot in our case) for obvious reasons. If you can make a strong case and convince such an organization to overtake the service after the end of the project, this is the best possible solution as already in-place sustainable public funding mechanisms get reused to sustain the service and very low transaction costs are expected (especially if the organization is already part of the research project). But there are some obstacles to overcome Service operation is different from Service development. Most research facilities focus only on development as this is part of the research (for very comprehensible reasons – there are no funding structures for operation in place,...) Apart from the established funding there is no way for the public organization to use other turnover sources => the service operation gets departed from given budget. 4 2) Find an established public sector organization to operate the service

Very critical to find the right partner early to get the right balance of compromise (clash of cultures). Apart from some general criteria (e.g. what profit margin and RoI does the possible partner expect how aligned is his vision and mission with the respective service operation how long does the partner already exist on the market... there are also some service specific criteria to check before deciding on a cooperation. To convince the private partner to take over the service it is key to have a small time to market (if it’s a valuable business plan, he should be able to ship before someone else does something similar) high expected RoI based on reliable estimations. 5 3) Find a private sector organization to operate the service

The good news: To achieve both, a short time to market and a high RoI, you simply should follow good / best practices for service development. E.g. Documentation (not only user documentation but also Administrator, Operator and Supporter documentation!) Provide and consider scaling studies Have a strong focus on user experience (the better the user experience the lower the support effort) Have Backup and Recovery built in the service (If already clear) integrate the business model into the service This is common knowledge but still many research projects focus on feature completeness until the last project day over these critical factors. Without those tackled it’s going to be hard to get a business partner take over the service. 6 3) Find a private sector organization to operate the service

Review current pilot status regarding maturity evaluate possible strategies evaluate possible partners engage with respective task team to ensure possible service operation maturity involve possible parters to start possible cooperation and develop migration plans 7 Roadmap to find the right strategies for the AARC pilots

Identify current set of policies and practices in use in R&E federations Which of the capabilities are crucial for the use cases to be successful? What specific recommendations should we make to federations (and eduGAIN) such that the use cases will ‘work’ across Europe, and we support the SA1 pilots based on them? Evolve sustainability models – AARC will not live forever, nor will it run any services! Translation services Guest identity providers Attribute authorities ‘Develop models that enable collaboration across infrastructures and domains to be successful beyond the life time of AARC’ Which pilots and activities should have a specific plan? How to we get engagement? 8 ‘Every task should have a sustainability strategy’

Some pilot federations interviewed Received data on Legal Aspects, SAML Metadata in the federation, Service Providers, Identity Providers, and Further services Results show that especially the situation wrt. to guest IdPs needs more focus currently extending questionnaire to cover more data on guest IdPs, Attribute Authorities, and attribute translation services to try to find out whether fedOps would be open to connect to the SA1 pilots (i.e. similar production systems) aligning work pertaining to the other data with GN4-1 SA1 T1.3 9 Service operational model - Federations Questionnaire

Identify current set of policies and practices in use in R&E federations Which of the capabilities are crucial for the use cases to be successful? What specific recommendations should we make to federations (and eduGAIN) such that the use cases will ‘work’ across Europe, and we support the SA1 pilots based on them? Evolve sustainability models – AARC will not live forever, nor will it run any services! Translation services Guest identity providers Attribute authorities ‘Develop models that enable collaboration across infrastructures and domains to be successful beyond the life time of AARC’ Which pilots and activities should have a specific plan? How to we get engagement? 10 ‘Every task should have a sustainability strategy’

Thank you Any Questions? © GÉANT on behalf of the AARC project. The work leading to these results has received funding from the European Union’s Horizon 2020 research and innovation programme under Grant Agreement No (AARC). 11