Gaming e-Infrastructures to improve Interfederation Readiness

Slides:



Advertisements
Similar presentations
Data Quality and Related Issues – A Discussion Dave De Young NOAO.
Advertisements

Innovation through participation eduGAIN federation operator training eduGAIN interfederation service /18 Valter Nordh, NORDUnet / GU 1.
Innovation through participation eduGAIN federation operator training Operations Team, OT, how to join eduGAIN /18 Valter Nordh, NORDUnet / GU.
Federated Identity Management for Researchers – A quick overview from GÉANT BoF TNC May 2014 Dublin.
Updates Licia Florio, TERENA REFEDS Meeting 5 Sept 2012.
EduGAIN – Are we there yet? Lukas Hämmerle (ghost writer, Brook Schofield) FIM4R, Helsinki – 2 October 2013.
Europe Latin America Collaborative e ‑ Infrastructure for Research Activities A Model for Federated Services Brook Schofield, TERENA ● Sofia, Bulgaria.
1 Issues in federated identity management Sandy Shaw EDINA IASSIST May 2005, Edinburgh.
Agenda Project beginnings and funding. Purpose of the federation. Federation members. Federation protocols. Special features in our federation. Pilot.
AIM Roadmap Service Provider Seminar David Orrell Senior Architect October 2010.
SWITCHaai Team Federated Identity Management.
Innovation through participation Interfederation through eduGAIN - steps and challenges eduGAIN interfederation service Federated Identity Systems.
The ReFEDS/GÉANT Code of Conduct (CoC) An Approach to Compliance with the EU Data Protection Directive Steve Carmody April 23, 2012.
InCommon as Infrastructure: How Recommended Practices and Federation Features Help Scale Federated Identity Management Michael R. Gettes, Carnegie Mellon.
SAML Right Here, Right Now Hal Lockhart September 25, 2012.
Updates Licia Florio, TERENA REFEDS Meeting 5 Sept 2012.
Belnet Federation Belnet – Loriau Nicolas Brussels – 12 th of June 2014.
Kalmar Union, a Conferedation of Nordic Identity Federations TNC2009 Mikael Linden, CSC Andreas Solberg, UNINETT.
ELCIRA and eduGAIN: Practical aspects of interfederation for academic collaboration Brook Schofield, TERENA ● TICAL2013, Cartagena, Colombia ● 8 th July.
ShibGrid: Shibboleth access to the UK National Grid Service University of Oxford and STFC.
Test your IdP
Diego R. Lopez, RedIRIS TF-EMC2, Umea SIR, FedSSH and more to come…
Federated Identity Management for HEP David Kelsey HEPiX, IHEP Beijing 18 Oct 2012.
+ Challenges in the VO Space Heather Flanagan (Spherical Cow Group) REFEDS meeting; 4 October 2015 Cleveland, OH, US.
Networks ∙ Services ∙ People Thomas Bärecke Journée Fédération, Paris Collaboration européenne GÉANT SA5 03/07/2015 SA5 T5 team
Connect communicate collaborate Trust & Identity EC meets GÉANT 19 June 2014 Brussels Valter Nordh, NORDUnet Federation as a Service Task Leader Trust.
Networks ∙ Services ∙ People Brook Schofield Greenhouse Kickoff, Amsterdam I can’t code…and so can you! Wednesday 30 th September 2015 GÉANT.
Federated Identity Fundamentals Ann Harding, SWITCH Cambridge July 2014.
Open Collaboration Exchange Alexander Blanc, Niels van Dijk, Jocelyn Manderveld, Remco Poortinga - van Wijnen VAMP 2013, Espoo.
Networks ∙ Services ∙ People Licia Florio TNC, Lisbon Consuming identities across e- Infrastructures 16 June 2015 PDO GÈANT.
Designing Identity Federation Policy, the right way Marina Vermezović, Academic Network of Serbia TNC2013 conference 4 May 2013.
Authentication and Authorisation for Research and Collaboration Taipei - Taiwan Mechanisms of Interfederation 13th March 2016 Alessandra.
Authentication and Authorisation for Research and Collaboration Licia Florio IGTF Meeting The AARC Project Amsterdam, 8 September.
Access Policy - Federation March 23, 2016
CoCo and R&S in the UK federation
Cross-sector and user-centric AAI
International Growth of Federations & eduGAIN
The Policy Puzzle Many groups and (proposed) policies, but leaving many open issues AARC “NA3” is tackling a sub-set of these “Levels of Assurance” –
Mechanisms of Interfederation
AARC Update What’s been happening in AARC which matters for GÉANT
Bring the WLCG federation Home
eduTEAMS platform for collaboration Niels Van Dijk
Identity Federations - Overview
David Kelsey STFC-RAL 2nd WISE workshop, XSEDE16, Miami 18 July 2016
TF-EMC2 - eduGAIN update
OpenID Connect Identity Federations at lightning speed
Federated Identity Management for Researchers (FIM4R)
Are you ready for a federated security incident?
GÉANT 4-2 JRA3 T1 Something with Federations and Campus VC
Building the TERENA Greenhouse
Incident Response Hannah Short Sirtfi and Beyond
Incident Response for Federated Identities
Europe Latin America Collaborative e‑Infrastructure for Research Activities Status of Latin American AAI Brook Schofield, TERENA ● CHAIN-REDS TNC2013.
GÉANT 4-2 JRA3 T1 and T2 Federations and Campus (CaFe) e-Infrastructures and Service Providers (RASP) Daniela Pöhn JRA3 T1 LRZ/DFN-AAI Technology Exchange.
Policy in harmony: our best practice
Sustainability and Operational models
Collaboration Tools and Agreements for Global Communities TNC16, ….
Policy and Best Practice … in practice
Group Discussion by Conversation
Updated (VO) Community Security Policies
AARC Blueprint Architecture and Pilots
Supporting communities with harmonized policy
EUGridPMA Status and Current Trends and some IGTF topics March 2018 APGridPMA ISGC Meeting David Groep, Nikhef & EUGridPMA.
GÉANT 4-2 JRA3 Daniela Pöhn JRA3 T1 LRZ/DFN-AAI
Starting at a New College
Tom Barton (WG Chair) University of Chicago and Internet2
Baseline Expectations for Trust in Federation
WP6 – EOSC integration J-F. Perrin (ILL) 15th Jan 2019
David Orrell, Adam Snook. REFEDS 40, Tallinn
Check-in Identity and Access Management solution that makes it easy to secure access to services and resources.
Presentation transcript:

Gaming e-Infrastructures to improve Interfederation Readiness Brook Schofield eduGAIN Product Manager (or something like that). NORDUnet 2016 Conference Helsinki, Finland – 20th September 2016 The evolution of identity federations over the past 10 years has culminated in REFEDS and the GÉANT Harmonisation activity developing a suite of best practices and improvements for SAML Identity Providers, Service Providers, VOs and the eInfrastructure projects. The uptake of these hasn't been universal and the adoption of some developments have been rather disappointing. While the collective wisdom of the federated community believes these practices are a good idea - how can we enable widespread adoption of these practices and ensure their support is visible to the wider community. REFEDS created some New Years Resolutions to engage the federation community behind a few simple practices as a first step in this direction. This presentation will show how eduGAIN has been working to present the adoption of these (and other) best practices, highlight areas for improvement and push e-infrastructures toward their acceptance. How far are we away from universal interfederation? Who's succeeding and who is falling behind?

In the beginning: eduGAIN in 3 easy steps Federations Image: http://www.tshirtlaundry.com/assets/images/photos/UnderpantsGnome12_2009.jpg Page: http://www.tshirtlaundry.com/The-Underpants-Gnome_p_1441.html http://www.tshirtlaundry.com/The-Underpants-Gnome_p_1441.html

Early days of eduGAIN eduGAIN Member Joining eduGAIN Candidate Federation Known Federation

eduGAIN Initial Growth eduGAIN Member Joining eduGAIN Candidate Federation Known Federation

REFEDS New Year’s Resolutions 2016

#1 & #6 relate to Attributes – Lukas will cover that soon!

Keep your software up to date! Our community software is great! We find bugs! …and fix them.

SAML2 is over 10 years old! The SAML 2.0 protocol celebrated its 10th anniversary on 15th March 2015. Despite this 10 year period, there are still many entities in federations using SAML 1. eduGAIN SAML1.0 – 1 IdP / 694 SPs SAML1.1 – 1798 IdPs / 1048 SPs

Participation is not just for federations! Opt-in vs Opt-out What ever you choose… … understand why you made that choice!

Discovery.REFEDS.org

Olympic Medal Tally – Rio 2016

Olympic Medal Tally – Rio 2016

eduGAIN & Federation Status March 2016 38 eduGAIN Members 5 Joining eduGAIN 8 Candidate Federations 10 Known Federations Big growth in new federations – many have aspirations to join eduGAIN and interfederate.

eduGAIN & Federation Status (% of entities) 15% 29% 78% 0.3% March 2016 38 eduGAIN Members 5 Joining eduGAIN 8 Candidate Federations 10 Known Federations Australia: 1/252= Brazil: 127/162=78% USA: 482/3192 5720=8.4% (check this for eduGAIN content) UK: 3131

Raft of code quality tools JS: bitHound, Code Climate PHP, Python, Ruby/Rails: Scrutinizer-CI, Codacy, Code Climate Scala, CSS: Codacy …and more!

Gamed Leif Johansson to see if it works! Convinced LeifJ to use landscape.io to check code quality of pyFF.io Quality rose from 76% to 83% in one night! 3am bedtime Additional tools now in use.

Combination of Security Practices that can be assessed or asserted. SIRTFI Combination of Security Practices that can be assessed or asserted. Opportunity wider assessment using tools: SSL Labs Security Assessment Software Fingerprinting Metadata Description of SAML support Incident Response Readiness …more metrics.

Who's succeeding and who is falling behind?

eduGAIN September 2016 38 eduGAIN Members 9 Candidate Federations 6 Joining eduGAIN 9 Candidate Federations 12 Known Federations

Brook.Schofield@GEANT.org