AARC2 JRA1 Update Nicolas Liampotis

Slides:



Advertisements
Similar presentations
AARC Overview Licia Florio, David Groep 21 Jan 2015 presented by David Groep, Nikhef.
Advertisements

Authentication and Authorisation for Research and Collaboration Pilots on the Integrated R&E AAI Paul van Dijk, Activity Lead Pilots.
Authentication and Authorisation for Research and Collaboration Licia Florio REFEDS Meeting The AARC Project I2 Technology Exchange.
Authentication and Authorisation for Research and Collaboration Licia Florio AARC Workshop The AARC Project Brussels, 26 October.
Authentication and Authorisation for Research and Collaboration David Kelsey AARC AHM Milan And mechanisms NA3 Task 4 – Scalable.
Authentication and Authorisation for Research and Collaboration Peter Solagna Milano, AARC General meeting Current status and plans.
Authentication and Authorisation for Research and Collaboration Peter Solagna Milano, AARC General meeting Report and plans Attribute.
Authentication and Authorisation for Research and Collaboration Peter Solagna Milano, AARC General meeting Current status and plans.
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos GRNET Proposed Pilots for Libraries and eGov.
JRA1.4 Models for implementing Attribute Providers and Token Translation Services Andrea Biancini.
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos Open Day Event: Towards the European Open.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evolution of AAI for e- infrastructures Peter Solagna Senior Operations Manager.
European Grid Initiative AAI in EGI Status and Evolution Peter Solagna Senior Operations Manager
David Groep Nikhef Amsterdam PDP & Grid AARC Authentication and Authorisation for Research and Collaboration an impression of the road ahead.
EGI-Engage EGI-Engage WP3 e-Infrastructure Commons Diego Scardaci EGI.eu/INFN 6/18/2016 EGI-Engage – First.
Authentication and Authorisation for Research and Collaboration Peter Solagna, Davide Vaghetti, et al. Topics for PY2 activities.
Authentication and Authorisation for Research and Collaboration Licia Florio AARC CORBEL Workshop The AARC Project Paris, 31 May.
Authentication and Authorisation for Research and Collaboration Peter Solagna, Nicolas EGI AAI integration experiences AARC Project.
Authentication and Authorisation for Research and Collaboration AARC/CORBEL Workshop for Life Sciences AAI AARC Draft Blueprint.
Authentication and Authorisation for Research and Collaboration On behalf of the MJRA1.2 scribes J Jensen.
Security in the wider world David Kelsey (STFC-RAL) GridPP37 – Ambleside 2 Sep 2016.
Introduction to AAI Services
Guidelines for attribute translation to X.509
David Kelsey STFC-RAL 4th WISE workshop, Nikhef 27 March 2017
Boosting AAI for research and collaboration
Cross-sector and user-centric AAI
The Policy Puzzle Many groups and (proposed) policies, but leaving many open issues AARC “NA3” is tackling a sub-set of these “Levels of Assurance” –
EGI Updates Check-in Matthew Viljoen – EGI Foundation
AARC Update What’s been happening in AARC which matters for GÉANT
User Community Driven Development in Trust and Identity
eduTEAMS platform for collaboration Niels Van Dijk
Wrap up Licia Florio AARC Coordinator
Identity Federations - Overview
Christos Kanellopoulos
AARC Strategy and Approach
CheckIn: the AAI platform for EGI
AAI Alignment Nicolas Liampotis (based on the work of Mikael Linden)
Federated Identity Management for Researchers (FIM4R)
Check-in Nicolas Liampotis
EGI-Engage Engaging the EGI Community towards an Open Science Commons
An AAI solution for collaborations at scale
Boosting AAI for research and collaboration
Updates on Training Andrea Biancini (AARC2.AHM)2 NA2 WP leader
The AARC Project Licia Florio (GÉANT) Christos Kanellopoulos (GRNET)
AARC2 JRA1 Nicolas Liampotis
The AARC Project Licia Florio AARC Coordinator GÉANT
Minimal Level of Assurance (LoA)
Solutions for federated services management EGI
Policy in harmony: our best practice
Leveraging the IGTF authentication fabric for research
Leveraging the IGTF authentication fabric for research
Thursday pilot session: 7-minutes
Policy and Best Practice … in practice
Meeting summary Licia Florio
AAI For Researchers Licia Florio AARC Project Coordinator GÉANT DI4R
Updated (VO) Community Security Policies
AARC Blueprint Architecture and Pilots
Supporting communities with harmonized policy
EUGridPMA Status and Current Trends and some IGTF topics March 2018 APGridPMA ISGC Meeting David Groep, Nikhef & EUGridPMA.
OIDC Federation for Infrastructures
Guest Identities – Milan workshop goals
AAI Architectures – current and future
David Kelsey (STFC-RAL)
Open Science: the crucial importance of metadata
Community AAI with Check-In
AAI in EGI Status and Evolution
JRA1: Integrated AAI Developments
Authentication and Authorisation for Research and Collaboration
Check-in Identity and Access Management solution that makes it easy to secure access to services and resources.
Presentation transcript:

AARC2 JRA1 Update Nicolas Liampotis Authentication and Authorisation for Research and Collaboration Nicolas Liampotis JRA1, AARC2 GRNET AARC2 2nd meeting, Amsterdam 21 November 2017

JRA1: Integrated AAI Developments Storyline Focus on the integration aspects of the blueprint architecture (BPA) Provide recommendations and guidelines for implementers, service providers and infrastructure operators on implementing scalable and interoperable AAIs across e-infrastructures and scientific communities Work in close collaboration with: NA2 NA3 SA1 AEGIS Work on the evolution of the BPA, with a focus on identity provider / service provider (IdP/SP) proxies scalable authorisation solutions for multi-service provider solutions for integrating with R&E federations and cross-sector AAIs

JRA1: Integrated AAI Developments Cast JRA1.1 Tools and Services for Interoperable Infrastructures – Diego, EGI Foundation) JRA1.2 Service Provider Architectures and Authorisation in Multi-SP Environments – Marcus, KIT JRA1.3 Models for the Evolution of the AAIs for Research Collaboration – Davide, GARR JRA1.4 Scalable VO platforms – Jens, STFC

JRA1: Integrated AAI Developments JRA1.1 status AARC-JRA1.4A: “Guidelines for expressing group membership and role information” Standardise the way group membership information is expressed Indicate the entity that is authoritative for each piece of group membership information Express VO membership and role information Support group hierarchies in group membership information Revision (201710) signed off by AEGIS

JRA1: Integrated AAI Developments JRA1.1 status “Guidelines for interoperable exchange of user and community information between AAIs” AARC2-JRA1.1A: Guidelines for interoperable exchange of user and community information between AAIs: Assurance information – Final draft AARC2-JRA1.1F: Guidelines for uniquely identifying users across infrastructures (ePUID + subject ID) – Final draft AARC2-JRA1.1X: Guidelines for exchanging home organisation and affiliation information between infrastructures – NEW

JRA1: Integrated AAI Developments JRA1.2 status AARC2-JRA1.2C: “Step-up requirements for SPs” Main use cases already collected in the doc Many discussions around the various assurance-related concepts and terms: components, profiles, etc.

JRA1: Integrated AAI Developments JRA1.3 status AARC2-JRA1.3A: “Guidelines for evaluating the combined assurance of linked identities” First version of the evaluation model already in place Polishing and extending the identified use cases still pending

JRA1: Integrated AAI Developments JRA1.4 status AARC2-JRA1.4A: “Roles, responsibilities and security considerations for VOs” technically support policies (e.g., involving VO security contacts in incidents relating to their VO) improved operations (e.g. delegating rights and responsibilities to deputies when the primary person in the role is not available) in a scalable manner Initial draft More contributions welcome! 

nliam@grnet.gr