University of Texas System

Slides:



Advertisements
Similar presentations
How Identity and Access Management Can Help Your Institution Touch Its Toes Renee Woodten Frost Internet2 and University of Michigan Kevin Morooney The.
Advertisements

Paul Caskey Technology Architect June 21, 2007 The University of Texas System Federated Identity Management Initiative
Identity Federation Rules and Process Linda Elliott President, PingID Network Electronic Authentication Partnership Washington, DC February 12, 2004.
Federated Digital Rights Management Mairéad Martin The University of Tennessee TERENA General Assembly Meeting Prague, CZ October 24, 2002.
Data Ownership Responsibilities & Procedures
Starting Your Roadmap: Concepts and Terms Paul Caskey, The University of Texas System Copyright Paul Caskey This work is the intellectual property.
Federations in Texas Barry Ribbeck University of Texas Health Science Center at Houston.
Identity Management: Some Basics Mark Crase, California State University Office of the Chancellor CENIC - March 9, 2011.
Agenda Project beginnings and funding. Purpose of the federation. Federation members. Federation protocols. Special features in our federation. Pilot.
Identity & Access Management DCS 861 Team2 Kirk M. Anne Carolyn Sher-Decaustis Kevin Kidder Joe Massi John Stewart.
UC Irvine’s Pre-Shib Attribute Setup PH / QI Directory Provides Authoritative Attribute Store –Had both Faculty / Staff and Student Information UCI’s Campus.
Information Resources and Communications University of California, Office of the President UCTrust Implementation Experiences David Walker, UCOP Albert.
Research Services and Reputation Management at Dartmouth: Libraries in the Mix David Seaman OCLC Research San Francisco, 3 June 2015.
The Business of Identity Management Barry R. Ribbeck Director Systems Architecture & Infrastructure Rice University
1 Governance in Identity Management Federations Clair Goldsmith, Ph.D. The University of Texas System Administration.
Identity Management What is it? Why? Responsibilities? Bill Weems Academic Computing University of Texas Health Science Center at Houston.
CAMP Integration Reflect & Join A Case Study The University of Texas Health Science Center at Houston William A. Weems Assistant Vice President Academic.
Credential Provider Operational Practices Statement CAMP Shibboleth June 29, 2004 David Wasley.
Welcome to CAMP Identity Management Integration Workshop Ann West NMI-EDIT EDUCAUSE/Internet2.
NMI-EDIT Outreach: The first five years. Topics for Today  NMI-EDIT background  Activities  Outcomes  Resources.
SWITCHaai Team Federated Identity Management.
Information Technology Assessment Review Presented to the Board of the State Center Community College District.
State of Information Technology Presentation for Faculty Council November 14, 2013 Mike Carlin Vice Chancellor for IT and CIO.
A case study of Shibboleth deployment within the U.T. System June 26, 2006 Paul Caskey University of Texas System Copyright Paul Caskey 2006 Not Your Father’s.
New Jersey Digital Video Initiative 1 NJ Digital Video Initiative: NJVid Grace Agnew, Associate University Librarian for Digital Library Systems, Rutgers.
The InCommon Federation The U.S. Access and Identity Management Federation
Identity Management Practical Issues Associated with Sharing Federated Services UT System Identity Management Federation William A. Weems The University.
Internet2 – InCommon and Box Marla Meehl Colorado CIO 11/1/11.
Australian Access Federation and other Middleware Initiatives Presented at TF-EMC2, Prague 4 Sep 2007 Patty McMillan, The University of Queensland.
Federations 101: The U.T. System Identity Management Federation Internet2 Member Meeting Fall 2006 Paul Caskey.
NSF Middleware Initiative Renee Woodten Frost Assistant Director, Middleware Initiatives Internet2 NSF Middleware Initiative.
FEDERATIONS Clair Goldsmith, Ph.D., Associate Vice Chancellor and CIO September 27,
Integrated Institutional Identity Infrastructure: Implications and Impacts RL “Bob” Morgan University of Washington Internet2 Member Meeting, May 2005.
3 Nov 2003 A. Vandenberg © Second NMI Integration Testbed Workshop on Experiences in Middleware Deployment, Anaheim, CA 1 NMI R3 Enterprise Directory Components.
Intra- to Inter-institutional Use of Shibboleth Bruce Vincent, Stanford University June 28, 2006.
Federated Identity in Texas Paul Caskey The University of Texas System HEAnet National Conference Kilkenny, Ireland 13 November 2008.
Welcome to Base CAMP: Enterprise Directory Deployment Ken Klingenstein, Director, Internet2 Middleware Initiative Copyright Ken Klingenstein This.
1 Internet2 Middleware update Main source Based on I2 Member meeting, Oct 2000 (trip report.
University of Washington Collaboration: Identity and Access Management Lori Stevens University of Washington October 2007.
NSF Middleware Initiative and Enterprise Middleware: What Can It Do for My Campus? Renee Woodten Frost Internet2/University of Michigan.
Bringing it All Together: Charting Your Roadmap CAMP: Charting Your Authentication Roadmap February 8, 2007 Paul Caskey Copyright Paul Caskey This.
NMI-EDIT and Rice University Federated Identity Management: Managing Access to Resources in Texas Barry Ribbeck Director System Architecture and Infrastructure.
Collaborative Findings for BCE CRM Final Meeting 26th March 2010, York Group 2.
Introduction to Shibboleth Attribute Delivery for Campuses New to Shibboleth Paul Caskey The University of Texas System.
01 October 2001 “...By Any Other Name…”. Consequences and Truths (Ken) The Pieces and the Processes (Bob) Directories (Keith) Shibboleth and SAML (Scott)
INTRODUCTION TO IDENTITY FEDERATIONS Heather Flanagan, NSRC.
NSF Middleware Initiative and Enterprise Middleware: What Can It Do for My Campus? Mark Luker, EDUCAUSE Copyright Mark Luker, This work is the intellectual.
Leveraging Campus Authentication to Access the TeraGrid Scott Lathrop, Argonne National Lab Tom Barton, U Chicago.
1 EDUCAUSE Mid-Atlantic Regional Conference Top Strategies for Working with Stakeholders: Synopses of Recommendations from the Identity Management Summit.
Tom Barton, Senior Director for Integration, University of Chicago
Shibboleth Architecture
Shibboleth Integration Fairfield University
California State University CSUconnect Federation
John O’Keefe Director of Academic Technology & Network Services
InCommon Steward Program: Community Review
GakuNin: Federated Identity Management Activities in Japan
Building a National Access Management Infrastructure
The French federation Eurocamp 2007 Helsinki
Some data about the CBIC Federation
PASSHE InCommon & Federated Identity Workshop
U.T. System Federated Identity Management Update
Protecting Network Assets
Identity & Access Management
Session 1.5a New ways to organise the activities in the European Institutions and on the Member States administrations, as a consequence of e-Government.
Overview of The U.T. System Identity Management Federation
Supporting Institutions Towards a Shibbolized Infrastructure
HIPAA Policy & Procedure Strategies
Pam Matthews, FHIMSS Director of Business Information Systems Business Information Systems is focused around administrative and financial information.
Agenda Why a sponsored program space survey is required.
InCommon Collaboration Activities: New Partners
Presentation transcript:

University of Texas System IT TAKES A VILLAGE CAMPUS A Federation Story June 27, 2006 Paul Caskey University of Texas System Copyright Paul Caskey 2006

Agenda Background Why bother? Where are we at? Who does what? Things to consider Where are we heading?

Background 16 Institutions 9 academic 6 health 1 System Administration 16 unique organizations, budgets, problems, ideas Leadership sees increased collaboration as a strategic objective

Why bother? Increasing importance of Identity Management UT System Strategic Leadership Council’s Statement of Direction for Identity Management Need for a secure collaborative infrastructure New applications need higher LoA Increased regulation / oversight Opportunity to consider consistent set of IdM standards and practices for UT System institutions

SLC Statement of Direction “The University of Texas System Information Technology Strategic Leadership Council agrees that deployment of a robust, secure, interoperable infrastructure for identity management in support of inter-institutional collaboration is a strategic goal. This infrastructure will be based upon the available standards and best practices: LDAP (Lightweight Directory Access Protocol) compliant directory services, eduperson schema as promulgated by EDUCAUSE and Internet2, utperson schema (to be developed), inter-institutional access control utilizing Internet2 Shibboleth, and consistent institutional definitions and identity management trust policies for students, faculty, and staff as well as sponsored affiliates.”

Where are we at? NMI-EDIT ETR Grant Shibboleth Install-fest Policies and procedures documents (Charter, Member Agreement, FOP, MOP, Attributes, Fees – https://idm.utsystem.edu/utfed) Pilot Federation Five federated applications currently in production (several more under development throughout the system)

Who does what? Which services reside where? Who determines required LoA for applications? How is an IdP’s LoA determined? Who supports the end users and applications? Who audits IdP practices and what standards are used? What is the role of governance?

Things to Consider Before Flipping the Switch On… Policy work is very slow, but critical – start early Identifiers Privacy Content copyright Don’t underestimate the difficulty of application integration with new infrastructure or legacy infrastructure Consider new support models Communication and coordination are key Keeping everyone motivated and involved can be quite a challenge

Where are we heading? https://idm.utsystem.edu/IdentityMgmtpage3.pdf

The Immediate Future Pilot to Production Federation by 9/1 Still to do: Publish utPerson LDAP object class Upgrade IdPs to Shibboleth 1.3 Work with institutional MOP compliance contacts on education and remediation Establish federation organizations (Ops, Tech, and Policy) Develop audit plan Develop support plan Develop disaster recovery plan

The Long-Term Future When infrastructure is mature, shared services on a grand scale become much more feasible licensing benefits? support benefits? administration benefits? cost reduction/avoidance Shared LMS applications Shared HR / Benefits applications Grid computing Plus, the myriad of smaller applications that can easily plug right in to the infrastructure

THE UNIVERSITY OF TEXAS SYSTEM Questions Thank You pcaskey@utsystem.edu