TF-Mobility update Klaas.Wierenga@surfnet.nl TF-EMC2, Barcelona 9 September 2005.

Slides:



Advertisements
Similar presentations
Joining eduroam Wireless Roaming for Education and Research.
Advertisements

Connect. Communicate. Collaborate eduroam: a managed European service Miroslav Milinović, Srce, Zagreb, Croatia eduroam SA, GÉANT2 NORDUnet 2008, Espoo,
Connect. Communicate. Collaborate eduroam: towards a managed European service Miroslav Milinović, Srce, Zagreb, Croatia eduroam SA, GÉANT2 Wi-Fi Workshop,
Terena Mobility Taskforce update Klaas Wierenga SURFnet.
Licia Florio EUNIS05, Manchester 1 Eduroam EUNIS Conference, June Licia Florio.
Eduroam-ng TF-Mobility, Barcelona, 6 September 2005.
Why eduroam sucks, and how to fix it.
TF Mobility Group 22nd September A comparison of each national solution was made against Del C – “requirements”, the following solutions were assessed.
802.1X Configuration Terena 802.1X workshop the Netherlands, Amsterdam, March 30 th Paul Dekkers.
Copyright JNT Association 2006 The JANET Roaming Service.
Presentation Culture around the Corner Tuesday 7th of June 2005 Martijn Arts ZaPPWeRK.
EduRoam ESA workshop 17 December 2004 Utrecht.
Eduroam – Roam In a Day Louis Twomey, HEAnet Limited HEAnet Conference th November, 2006.
Network Access and 802.1X Klaas Wierenga SURFnet
High-quality Internet for higher education and research Federated network access with Klaas Wierenga SURFnet Ljubljana, April.
High-quality Internet for higher education and research eduroam EuroCAMP, Porto, November 9, 2005
EduRoam: movilidad por Europa... y España Toledo, 29 de octubre de 2004
Deliverable H: the interoperability testbed design Klaas Wierenga SURFnet.
Deploying eduroam Deyan Stoykov, BREN E-infrastructure Autumn Workshops 8 September, 2014.
Wireless Roaming for Higher Education and Research
Lecture 12: WLAN Roaming Communities EDUROAM TM. eduroam TM eduroam (education roaming) is the secure, world-wide roaming access service developed for.
What about 802.1X? An overview of possibilities for safe access to fixed and wireless networks Amsterdam, October Erik Dobbelsteijn.
Uday O. Ali Pabrai, CISSP, CHSS Chief executive, HIPAA Academy Health care & HIPAA Security Remediation.
Wireless ambitions Frans Panken I2 Spring meeting 24 april 2012.
EduRoam Australia Project Experience in location independent wireless networking with international collaboration with TERENA EduRoam Project 19 th APAN.
Project Overview Flying Freedom Per Heselius & Martin Hedenfalk.
Eduroam Louis Twomey HEAnet Library Services Day 20 th November 2014.
Education roaming Secure Wireless Service for Research and Education.
Interworking (802.11u) Scott Armitage.
RIPE69 – MAT-WG – Wednesday, 5 November 2014 Brook Schofield, GÉANT Association eduroam: The Value of WLAN measurements for the R&E.
Connect. Communicate. Collaborate First steps in federation peering: eduGAIN and eduroam Diego R. Lopez - RedIRIS.
High-quality Internet for higher education and research Paul Dekkers April 4th, Turkey.
Michal Procházka, Jan Oppolzer CESNET.
A Practical Guide for Joining EduRoam EuroCAMP Torino A Practical Guide for Joining EduRoam 4 March 2005 Version 1.6.
Scenario 1 Internet WAN LAN1 LAN2 LAN3 LAN4
High-quality Internet for higher education and research AAI from the NREN perspective Schiphol, October 17, 2005
Improved Access Point Selection MobiSys2006. Outline INTRODUCTION FIELD STUDY VIRGIL EVALUATION CONCLUSION.
802.1X in SURFnet 22 May 2003.
May 17, 2006TNC 2006, Catania1 eduroam.us: past, present, future Philippe Hanset University of Tennessee, Knoxville.
Connect. Communicate. Collaborate Federated peering the NREN way: eduGAIN and eduroam Diego R. Lopez (RedIRIS) Klaas Wierenga (SURFnet)
Presentation Culture around the Corner Thursday 14th of April 2005 Martijn Arts ZaPPWeRK.
Connect. Communicate. Collaborate TERENA Networking Conference, 7 june 2005 Eduroam: past, present, and future.
Security for (Wireless) LANs 802.1X workshop 30 & 31 March 2004 Amsterdam.
Workshop roaming services: eduroam / govroam
Connect. Communicate. Collaborate Deploying Authorization Mechanisms for Federated Services in the eduroam architecture (DAMe)* Antonio F. Gómez-Skarmeta.
Authentication and Authorisation in eduroam Klaas Wierenga, AA Workshop TNC Lyngby, 20th May 2007.
Deploying Authorization Mechanisms for Federated Services in eduroam Klaas Wierenga, EuroCAMP Helsinki, 17&18th April 2007.
19 May 2003 © The JNT Association Terena Technical Advisory Council Terena Mobility Task Force
Introduction & use-cases FedAuth IETF78 Maastricht, July 27, 2010
OmniRAN IEEE 802 OmniRAN Architecture Proposal Date: Authors: NameAffiliationPhone Yonggang Bo.
Mobile + Wi-Fi = Wirefree Wirefree eduroam + 4G LTEWi-Fi as a Service eduroam footprint + services European mobile data procurement GN3+ SA7-T5 Wirefree.
© 2003, Cisco Systems, Inc. All rights reserved. FWL 1.0— © 2003, Cisco Systems, Inc. All rights reserved.
WISECURE Exam CCNP Wireless WISECURE Exam
Overlapping eduroam networks operated by different organizations
10 Years of eduroam (from an idea to a product)
Chairman – ICT Directors forum RENU, Uganda
Client-Server & Peer-to-Peer Networks
TERENA Organisation A not-for-profit association of European National Research and Education Networks Based in Amsterdam, The Netherlands Membership: 36.
Module 10: Managing and Monitoring Network Access
First steps in federation peering: eduGAIN and eduroam
Network Selection Issues
Welcome To : Group 1 VC Presentation
The DAMe’s First Steps: eduroam and NAS-SAML
NREN’s Business Model for Wireless
UT Gert Meijerink Service Departement for Information Technology, Library and Education (ITBE) TERENA 2004.
SurfCFCC Secure Wireless Access For Students, Faculty, and Staff.
GN2 JRA5 Roaming and Authorisation Jürgen Rauschenbach, DFN-Verein
Mark Spencer - James Dickerson
Wireless Campus project
Introduction to the WatchGuard AP Device
Presentation transcript:

TF-Mobility update Klaas.Wierenga@surfnet.nl TF-EMC2, Barcelona 9 September 2005

eduroam: roaming network access Supplicant Authenticator (AP or switch) RADIUS server University A RADIUS server University B User DB User DB Gast piet@university_b.nl SURFnet Employee VLAN Commercial VLAN Central RADIUS Proxy server Student VLAN Trust based on RADIUS plus policy documents (or at least it will be ;-) 802.1X (VLAN assigment) signaling data

Status ~20 countries ~400 institutions Next targets: USA, Japan, Taiwan, Belgium…

Trouble in paradise? AA traffic goes through all intermediate entries Static routes All or nothing authentication Usability Managing and monitoring

Towards a real service (in close cooperation with GN2 JRA5) Managing and monitoring of the infrastructure and the usage Make it easy to find an eduroam hotspot Set standards for SSIDs, ciphers etc. eduroam client And then there is a bit of policy making….

Towards p2p trust? Seperate the trust fabric from the authentication flow Possible candidates: Diameter, DNSsec, Radsec/DNSroam

Eduroam-ng? P2P communication

Mix and match P2P communication