COmanage: Vision & Strategy July 2010, COmanage Dev Call.

Slides:



Advertisements
Similar presentations
automated single login access to Novell storage resources
Advertisements

Implementing Tableau Server in an Enterprise Environment
The Internet2 NET+ Services Program Jerry Grochow Interim Vice President CSG January, 2012.
Microsoft Dynamics AX Technical Conference 2013
Orientation October 15, 2003 Atlanta. T he Intermediary Network is a group of leading education and workforce development organizations working together.
A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network.
Technology Steering Group January 31, 2007 Academic Affairs Technology Steering Group February 13, 2008.
May 22, 2002 Joint Operations Group Discussion Overview Describe the UC Davis Security Architecture Describe Authentication Efforts at UC Davis Current.
Identity and Access Management IAM. 2 Definition Identity and Access Management provide the following: – Mechanisms for identifying, creating, updating.
Esri UC2013. Technical Workshop. Technical Workshop 2013 Esri International User Conference July 8–12, 2013 | San Diego, California Building Secure Applications.
SOFTWARE AS A SERVICE PLATFORM AS A SERVICE INFRASTRUCTURE AS A SERVICE.
Microsoft Identity and Access Solutions Market Trends and Futures
SOA – Development Organization Yogish Pai. 2 IT organization are structured to meet the business needs LOB-IT Aligned to a particular business unit for.
Apereo Grouper Seminar Part 2 – Penn and Grouper Chris Hyzer University of Pennsylvania and Internet2.
CISTI Source & SiteSearch OCLC User Meeting 2001 Danielle Langlois & Carol Serroul May 9, 2001.
Introduction To Windows Azure Cloud
BfB: Supporting Collaboration with Infrastructure.
Genesys Meeting Center End-User Technical Troubleshooting Guide (v1
External Identity and Authorization in GENI. Topics Federated identity and virtual organizations ABAC Creating and transporting attributes.
SharePoint and SharePoint Online: Today and what's next? Presented by Luke Abeling – IT Platforms.
11-July-2011, SURFnet Heather Flanagan, COmanage Project Coordinator Benn Oshrin, COmanage Developer Scott Koranda, U. Wisconsin – Milwaukee and LIGO.
OFC 200 Microsoft Solution Accelerator for Intranets Scott Fynn Microsoft Consulting Services National Practices.
Portal Strategies and Issues at Georgetown Common Solutions Group Winter Meeting Duke University January 10, 2001.
Deploying SharePoint Products and Technologies for Enterprise Collaboration Microsoft IT group’s Centrally Hosted Collaboration Solution.
Federated Identity and the International Research Community Dr Ken Klingenstein Director, Internet2 Middleware and Security.
Windows Azure Conference 2014 Deploy your Java workloads on Windows Azure.
AAI-enabled VO Platform “VO without Tears” Christoph Witzig EGI TF, Amsterdam, Sept 15, 2010.
VO and Internet2 Middleware. Presenter’s Name Topics Motivations for Internet2 Middleware work Federated identity and InCommon Other IdM Groups, privileges,
Shibboleth Update Michael Gettes Principal Technologist Georgetown University Ken Klingenstein Director Interne2 Middleware Initiative.
Module 11: Implementing ISA Server 2004 Enterprise Edition.
Portal for ArcGIS An Introduction
Running List of Comanage Framework Stuff. Parked issues Discussion of how to share the work of domesticating apps - real important to do soon, but the.
Using Grouper and Signet for Access Management Kathryn Huxtable GPN Annual Meeting 30 May 2008
Grouper Training - Admin Connectors Chris Hyzer Internet2 University of Pennsylvania This work licensed under a Creative Commons Attribution-NonCommercial.
Social Identity Working Group Steve Carmody. Agenda Intro to Using Social Accounts Status and Recent News –Current UT Pilot –Current InCommon Pilot with.
ArcGIS Server for Administrators
Collaborative Platforms. Collaborations and Virtual Organizations IdM is a critical dimension of collaboration, crossing many applications.
COmanage and InCommon: Present and Future Activities and Interactions Heather Flanagan, COmanage Project Coordinator, Internet2.
ISMT E-200: Trends in Enterprise Information Systems Project: GLOCO – Integrated Corporate Portal Part 2 Technical Specification Team Members: Joyce Torres.
Shibboleth: An Introduction
ISMT E-200: Trends in Enterprise Information Systems Project: GLOCO – Integrated Corporate Portal Part 2 Technical Specification Team Members: Joyce Torres.
Solutions using Microsoft Content Management Server 2002 Connector for SharePoint Technologies Sue Corke Mark Harrison Microsoft UK.
Intro to Datazen.
Portals and Web Standards Lessons Learned and Applied David Cook Copyright The University of Texas at Austin This work is the.
Federated Identity Management for HEP David Kelsey HEPiX, IHEP Beijing 18 Oct 2012.
Running List: Comanage Stuff Framework – Services - Appliance.
~60 staff 1.Collaborators around the world 2.Supports communities of collaborators external to Internet2 3.Community uses wiki, mailing lists, instant.
INFORMATION TECHNOLOGY SERVICES UT Virtualization in ASMP Technical Architecture.
ALL INFORMATION PRESENTED AS WELL AS ALL SESSIONS ARE MICROSOFT CONFIDENTIAL AND UNDER YOUR NON-DISCLOSURE AGREEMENT (NDA) AND\OR TECHNOLOGY PREVIEW.
Networks ∙ Services ∙ People Mandeep Saini TNC15, Porto, Portugal Virtual organisation Authorisation Management Practices in Research and.
Grid as a Service. Agenda Targets Overview and awareness of the obtained material which determines the needs for defining Grid as a service and suggest.
Configuring SQL Server for a successful SharePoint Server Deployment Haaron Gonzalez Solution Architect & Consultant Microsoft MVP SharePoint Server
| 1 EBSCOadmin EBSCO Support EDS Wiki Renata Wlodarczyk | EBSCO.
L’Oreal USA RSA Access Manager and Federated Identity Manager Kick-Off Meeting March 21 st, 2011.
Collaboration and Federated Identity Two powerful forces being leveraged – the rise of federated identity – the bloom in collaboration tools, most particularly.
COmanage working group Internet2 Fall Member Meeting 2010.
Using Your Own Authentication System with ArcGIS Online
eduTEAMS platform for collaboration Niels Van Dijk
Power BI Security Best Practices
Dynamic Web Page A dynamic web page is a kind of web page that has been prepared with fresh information (content and/or layout), for each individual viewing.
RMS Architecture EMS Partner Bootcamp TechReady 18 9/17/2018
Dynamic DNS support for EGI Federated cloud
Enterprise Application Stores
Page Replacement.
Consent in action Consent management in practice
Community AAI with Check-In
JAAS AuthN Tokens in uPortal and Beyond
Microsoft Virtual Academy
Check-in Identity and Access Management solution that makes it easy to secure access to services and resources.
Presentation transcript:

COmanage: Vision & Strategy July 2010, COmanage Dev Call

Brand Products Requirements Reference Architecture Gap Analysis Priorities Next Steps 2 – © 2010 Internet2 Agenda

VO Infrastructure Leverages Federated Identity Implemented In Multiple Products Technology and A Way Of Life 3 – © 2010 Internet2 COmanage Brand

COmanage as a Service COmanage in a Box COmanage Integration Consulting – Assistance for DIY shops COmanage VO Management System – Basically Frontend, Provisioning – Foundational Technology for CaaS, CiaB – Recommended for DIY shops But if you're not running it, then you're not running a COmanage instance COmanage Application Domestication Services 4 – © 2010 Internet2 COmanage Products

Standards and Guidelines – Federated Authentication – External (+federated) Group Management – Provisioning, Deprovisioning – UI Integration For some definition of “integration” Portalesque? Just a link? Registry of Domesticated Applications 5 – © 2010 Internet2 Domestication Requirements

Extrapolated from material to date Need to talk to VOs to get better req's 6 – © 2010 Internet2 VOMS Requirements

Add Person as CO aaS Admin Remove Person as CO aaS Admin Provision VO Deprovision VO Provision App to VO Deprovision App from VO Request Add Person to VO Directory Add Person to VO Directory Remove Person from VO Directory Add VO Admin Role to Person Remove VO Admin from Person Create VO Group Remove VO Group Add Person to VO Group Remove Person from VO Group Dynamic (group based) Person Provisioning to VO Applications Dynamic Person Deprovisioning from VO Applications 7 – © 2010 Internet2 VOMS Requirements (Imagined) Ad Hoc Person Provisioning to VO Applications Ad Hoc Person Deprovisioning from VO Applications Login to VO Portal Login to VO Applications View VO Public Content View Person History Reporting Provision Cluster Resources (Hardware, VM, etc) IP Address Registration/Management Application Upgrades OS Upgrades Backups

8 – © 2010 Internet2 COmanage Reference Architecture

9 – © 2010 Internet2 COmanage Reference Architecture VOMS Dev Shib Dev (eg) Vendor + CADS Grouper Dev (eg)

Frontend (Console) – Confluence isn't it – Stanford BYO isn't it either – Random “my idea”s probably not it either – Gather requirements, evaluate options Drupal, uPortal, etc OpenSocial, JSR[12]68, etc DIY … VOMS (Middleware) 10 – © 2010 Internet2 Gap Analysis

User Discovery & Invitation – Better Discovery Service – How to invite someone to a VO Federated Group Management – Exchange protocol Group data presumably needs to be cached, so provisioning, update, and deprovisioning rather than (or in addition to) on-demand query – Data ownership issues? VO Groups built (partly) on Institutional Groups 11 – © 2010 Internet2 Gap Analysis

Provisioning/Deprovisioning – To SPML or Not To SPML – To SPML and Not To SPML Domestication Guidelines Domestication Registry Domesticated Apps Marketing Materials – Whitepapers – Demos – Web Site 12 – © 2010 Internet2 Gap Analysis

Adoption of Branding Gather VO Requirements VOMS Architecture – Reference Architecture – Console Design – Middleware Design Standards – Federated Groups – Provisioning – Domestication 13 – © 2010 Internet2 Priorities (Cross Product)

Lightweight Two Browser – Demonstrate group membership add/delete and impact on application 14 – © 2010 Internet2 Priorities (Demo)

Figure out technology – Prototype CaaS – Design to be folded in with a larger offering (should it happen) – Penn State / ESWN Figure out business model and logistics – Scalable, sustainable hosted service for small to medium VOs – Built on VOMS platform – I2 / InCommon 15 – © 2010 Internet2 Next Steps: CaaS

None, really Put this on hold pending use case / requirements – (Other than demos for Ken) 16 – © 2010 Internet2 Next Steps: CiaB

Figure out what exactly we can do for the larger VOs – Best practices, whitepapers, marketing – VOMS infrastructure Console + Middleware – Penn State + COmanage Dev 17 – © 2010 Internet2 Next Steps: CIC

Gather functional requirements – Penn State + COmanage Dev Initial design for cross-product components – Frontend / Console Invitation/Registration (uApprove?) – Look at New Discovery Service – Middleware Component – Provisioning / Deprovisioning – Federated Group Management? – COmanage Dev + Grouper Dev + ACAMP 18 – © 2010 Internet2 Next Steps: VOMS

Domestication Standards / Guidelines / Requirements / etc – COmanage Dev + Dutch Registry of Domesticated Applications – COmanage Dev + Dutch 19 – © 2010 Internet2 Next Steps: CADS

Agree on model – COmanage Dev Overhaul internet2.edu/co and wiki – Set up comanage.internet2.edu – Add a Gap Analysis page – Also clean up JIRA and move this list there – COmanage Dev Solidify lightweight, interim demo – COmanage Dev Fix the logo so the gears can actually turn – COmanage Dev 20 – © 2010 Internet2 Next Steps: Branding & Sales