Federal Identity Management Overview and Current Status Dr. Peter Alterman, Chair Federal PKI Policy Authority
2 EAF Graphically EAF Executive Business & Legal Rules, FPKI Cert Policies Fed PKI OA XCert and MOA LOA 1,2 LOA 3,4 Interop Lab SAML Spec. CAF Policy Operations Providers FPKIPA
3 Components of EAF Organized around Assurance Levels –1, 2 for assertion-based credentials SAML Emphasis on SAML interoperability tools on the operational level Business and Legal rules imposed on Apps and credential providers alike –3, 4 for crypto-based PKI predominates Serviced by Federal PKI Policy Authority and Federal PKI Operational Authority Major growth area for Federal Apps in first round
4 Simplified Diagram of Federal PKI Federal Bridge CA C4 CA E-Gov CAs (3) Common Policy CA Cross- Certified gov PKIs Cross- Certified External PKIs eAuth CSPs Shared Service Provider PKIs (Common Policy OID And root Cert)
5 FPKI Policy Authority Org. Chart Policy Authority Cert Policy WG PD-Val WG Tech WG E-Auth PMO FICC FBCA Op Auth Charter Bylaws Criteria & Methodology Document Policies Federal CIO Council SSP WG
6 EAF Interoperability Status Interfederation Interoperability Work Group completed policy work Technical Interoperability with Shibboleth suite completed InCommon interfederation proposal delivered to EAF Initial Meeting late March Second Meeting today (4/25)
7 Requirements for Interfed Interop Evolving Technical interop solved, future going forward hand-in-hand Policy interop under discussion, Will require evolved IdM from university inCommon + members
8 Related Work Built 1.0 usPerson profile, ongoing work Building SAML 2.0 spec and implementation plan
9 Resources