no unique identification

Slides:



Advertisements
Similar presentations
FI-WARE Testbed Access Control temporary solution.
Advertisements

Invoice Management Software Developed by Morbadevi Softwares Morbadevi Softwares®2014, All Rights Reserved.
WILEY GUIDE TO CREATING USER REGISTRATION ON WILEY ONLINE LIBRARY
Forms Authentication, Users, Roles, Membership Ventsislav Popov Crossroad Ltd.
By: Hassan Waqar.  A PROTOCOL for securely transmitting data via the internet.  NETWORK LAYER application.  Developed by NETSCAPE.
ASP.NET Web Application Security Hannes Preishuber ppedv AG
BUSINESS OPPORTUNITIES ESTABLISH INFORMATION CENTRE AND GROW YOUR BUSINESS WITH US.
An Authorization Service using.NET Passport ™ as underlying Authentication Scheme Bar-Hen Ron Hochberger Daniel Winter 2002 Technion – Israel Institute.
An Authorization Service using.NET Passport ™ as underlying Authentication Scheme Bar-Hen Ron Hochberger Daniel Winter 2002 Technion – Israel Institute.
Slide 1 of 28 Welcome to GSA’s Vendor and Customer Self Service (VCSS) course Section 2: VCSS Account Registration & Requesting Access This presentation.
New Student Orientation Registration System Stephen Nakamura EE496 Final Presentation Fall 2008.
How Clients and Servers Work Together. Objectives Learn about the interaction of clients and servers Explore the features and functions of Web servers.
Alcatel Identity Server Alcatel SEL AG. Alcatel Identity Server — 2 All rights reserved © 2004, Alcatel What is an Identity Provider?  
SACMAT02-1 Security Prototype Defining a Signature Constraint.
Access Control in IIS 6.0 Windows 2003 Server Prepared by- Shamima Rahman School of Science and Computer Engineering University of Houston - Clear Lake.
SHORT MERCHANT‘S GUIDE VERSION: MOKIPASS.
Login Screen This is the Sign In page for the Dashboard Enter Id and Password to sign In New User Registration.
12 th XBRL International Conference National Tax Agency JAPAN.
Configuring a Web Server. Overview Overview of IIS Preparing for an IIS Installation Installing IIS Configuring a Web Site Administering IIS Troubleshooting.
Getting started on informaworld™ How do I register my institution with informaworld™? How is my institution’s online access activated? What do I do if.
Login Screen This is the Sign In page for the Dashboard New User Registration Enter Id and Password to sign In.
Forms Authentication, Users, Roles, Membership Svetlin Nakov Telerik Corporation
Pc Naming Configuration 1.WEB REGISTER 2.FIXNAME 3.MCAFEE AGENT SETUP ITC Training: Session 2.
© NeoAccel, Inc. TWO FACTOR AUTHENTICATION Corporate Presentation.
Online Music Store MSE Project Presentation I Presented by: Reshma Sawant Major Professor: Dr. Daniel Andresen.
GSA’s Vendor and Customer Self Service (VCSS)
Company: Account Requests FMCSA Portal Prioritization Phase I Release, December 2010 v1.4.
PostalOne! / FAST Data Exchange - Vision 02/15/05.
COMP3121 E-Commerce Technologies Richard Henson University of Worcester November 2011.
1 CUSTOMER BACKROOM. 2 OUTLINE Accessing the Backrooms Administrative Interface Order Wizards Reseller Resources Retail Administrative Interface Order.
Computer Scoring Le Grand Concours 2011 and beyond.
TWSd - Security Workshop Part I of III T302 Tuesday, 4/20/2010 TWS Distributed & Mainframe User Education April 18-21, 2010  Carefree Resort  Carefree,
FP6 IT System 1 SESAM QUEST module ACCESS MANAGEMENT.
Slide 1 ASP Authentication There are basically three authentication modes Windows Passport Forms There are others through WCF You choose an authentication.
CollegeBoard SAT Online Course Student Registration.
Web Database Programming Week 7 Session Management & Authentication.
GOAL User Interactive Web Interface Update Pages by Club Officers Two Level of Authentication.
How to Request for “Patseer Patent Database” Password Gujarat Technological University.
X.509 Topics PGP S/MIME Kerberos. Directory Authentication Framework X.509 is part of the ISO X.500 directory standard. used by S/MIME, SSL, IPSec, and.
How to Deploy and Configure the Smart Net Total Care CSPC Collector
TrainingRegister® Training Management Software Maintain Permanent Training Records for Each Individual Monitor and Track Required Training Know Who Needs.
Enigma Mutiara Sdn Bhd Computer Based Learning (CBL) HSE Procedures.
ASSIGNMENT 2 Salim Malakouti. Ticketing Website  User submits tickets  Admins answer tickets or take appropriate actions.
How to Use The DCVB System Go to :
0 SAT Online - Student Registration What You Will Need In order to register, you must have: –A working account –Several possible user names* –A unique.
A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E MyAPNIC Project Features & Facilities Prototype Demo.
KERBEROS SYSTEM Kumar Madugula.
Database Form Processing Made Easy Chad Killingsworth Web Projects Coordinator.
IS 4506 Windows NTFS and IIS Security Features.  Overview Windows NTFS Server security Internet Information Server security features Securing communication.
Munix Bus WiFi Authentication, Log Management, Internet Security, Content Filter & VPN Service Internet Gateway & Business Intelligence
Website URL STEPS FOR SELF REGISTRATION
Welcome to the CardSaver VoIP Billing & Call Management Demonstration
Authentication Interact Cloud.
Secure Software Confidentiality Integrity Data Security Authentication
Step 1 Login on UHCP Site
Kerberos Kerberos is a network authentication protocol and it is designed to provide strong authentication for client server applications. It uses secret.
Installation & User Guide
NSE4-5.4 Dumps
Printer Admin Print Job Manager
MasteringPhysics and eText
Card Activation, CitiManager Registration and Website Navigation
Getting Started.
asset: Academic Survey System & Evaluation Tool
OSCAR/Surface How to register
Installation & User Guide
This is the Sign In page for the Dashboard
Management Application for all segments
Designing IIS Security (IIS – Internet Information Service)
Registering an Account
To Create ID on e-tendering Site Click “Register”
Presentation transcript:

no unique identification Before GASPAR every service (financial, personnel, student, etc) had its own database no unique identification 14-Sep-18 i.cionca

Steps preparing GASPAR HR service defines a unique ID (SCIPER) 14-Sep-18 i.cionca

Steps preparing GASPAR HR service defines a unique ID (SCIPER) CAMIPRO card used to grant acces to buildings – based on SCIPER and a PIN code 14-Sep-18 i.cionca

Steps preparing GASPAR HR service defines a unique ID (SCIPER) CAMIPRO card used to grant acces to buildings – based on SCIPER and a PIN code students’ identification (SAC) based on SCIPER 14-Sep-18 i.cionca

Steps preparing GASPAR HR service defines a unique ID (SCIPER) CAMIPRO card used to grant acces to buildings – based on SCIPER and a PIN code students’ identification (SAC) based on SCIPER personnel data (BOTTIN) uses SCIPER 14-Sep-18 i.cionca

Steps preparing GASPAR HR service defines a unique ID (SCIPER) CAMIPRO card used to grant acces to buildings – based on SCIPER and a PIN code students’ identification (SAC) based on SCIPER personnel data (BOTTIN) uses SCIPER several OSCAR interactive terminals with CAMIPRO card slots installed at EPFL 14-Sep-18 i.cionca

services HTTP GASPAR CAMIPRO SAC BOTTIN OSCAR SCIPER 14-Sep-18 i.cionca

GASPAR: how to register OSCAR identification= CAMIPRO+PINcode Crypted mail sent to GASPAR with SCIPER and pwd GASPAR 14-Sep-18 i.cionca

GASPAR: how to register web For already existing e-mail accounts: preregister via the web GASPAR 14-Sep-18 i.cionca

GASPAR: how to register web For already existing e-mail accounts: preregister via the web Request for confirmation GASPAR 14-Sep-18 i.cionca

GASPAR: how to register web For already existing e-mail accounts: preregister via the web confirmation GASPAR 14-Sep-18 i.cionca

GASPAR: how to register admin GASPAR 14-Sep-18 i.cionca

GASPAR: how to register GASPAR superuser GASPAR 14-Sep-18 i.cionca

web OSCAR GASPAR admin GASPAR superuser GASPAR 14-Sep-18 i.cionca For already existing e-mail accounts: preregister via the web identification= CAMIPRO+PINcode Crypted mail sent to GASPAR with SCIPER and pwd confirmation Request for confirmation GASPAR admin GASPAR superuser GASPAR 14-Sep-18 i.cionca

GASPAR: identification user’s name (firstname, lastname) and/or SCIPER plus GASPAR password SSL certificate Lost password? OSCAR terminal identification via CAMIPRO card and PIN code – choose a new password contact GASPAR administrator 14-Sep-18 i.cionca

base: e-mail, SSL certificates GASPAR: services base: e-mail, SSL certificates other: SW distribution, network management, students’ services (jobs, rooms, exams results), etc. 14-Sep-18 i.cionca

client application server 1. application URL (http://prest.epfl.ch) 14-Sep-18 i.cionca

client application server YES active sessions valid session Time stamp | SCIPER | IP valid session (SCIPER,IP) YES 2.2 update session 2.3 execute application (SCIPER,IP) client http://prest.epfl.ch 14-Sep-18 i.cionca

application server NO active sessions valid session (SCIPER,IP) Login GASPAR: user: pwd: 2.1 Redirect to GASPAR for identification 14-Sep-18 i.cionca

GASPAR YES application server active sessions Time stamp | SCIPER | IP access restricted to GASPAR’s IP server initiates session 3.1 authentication URL with client’s details (SCIPER, e-mail, unit, IP) valid client & acces rights YES 14-Sep-18 i.cionca

GASPAR YES application server valid client & acces rights 3.2 Redirect to application URL 14-Sep-18 i.cionca

client GASPAR YES application server NO YES 1. application URL http://prest.epfl.ch application server 1. application URL (http://prest.epfl.ch) NO valid session (SCIPER,IP) YES Login GASPAR: user: pwd: 2.2 update session 2.3 execute application (SCIPER,IP) 2.1 Redirect to GASPAR for identification GASPAR access restricted to GASPAR’s IP server initiates session (timestamp, SCIPER,IP) 3.1 authentication URL with client’s details (SCIPER, e-mail, unit, IP) valid client & acces rights YES application 3.2 Redirect to application URL 14-Sep-18 i.cionca

client GASPAR 1. GASPAR URL (https://gaspar.epfl.ch) 14-Sep-18 http://gaspar.epfl.ch 1. GASPAR URL (https://gaspar.epfl.ch) 14-Sep-18 i.cionca

GASPAR application server YES valid client application choice server initiates session access restricted to GASPAR’s IP 2. authentication URL with client’s details (SCIPER, e-mail, unit, IP) active sessions Time stamp | SCIPER | IP 14-Sep-18 i.cionca

GASPAR YES valid client 3. Redirect to application URL 14-Sep-18 i.cionca

client GASPAR application server YES 1. GASPAR URL http://gaspar.epfl.ch 1. GASPAR URL (https://gaspar.epfl.ch) valid client YES application server application choice server initiates session (timestamp, SCIPER,IP) access restricted to GASPAR’s IP 2. authentication URL with client’s details (SCIPER, e-mail, unit, IP) application 3. Redirect to application URL 14-Sep-18 i.cionca

GASPAR administrator of the unit controls users from one or several units manages: GASPAR registrations e-mail accounts access rights to all services manages Access Managers 14-Sep-18 i.cionca

GASPAR Acces Manager controls access rights to one or several services for all users from one or several units Access rights per person and service: access denied or granted (for 1,3,6,12 months or unlimited) 14-Sep-18 i.cionca

yes for the principle (simple HTTP authentication) Exporting GASPAR? yes for the principle (simple HTTP authentication) extra work needed to cope with local data structures 14-Sep-18 i.cionca