Certificate Service Survey Summary

Slides:



Advertisements
Similar presentations
Privacy By Design Sample Use Case
Advertisements

Omni eControl. New Features in Version 2.x - Manage Mixed Networks: eDirectory, Active Directory, GroupWise, Exchange eControl Version 2.0 New Features.
REDCap Treatment Randomization Module
ITS NCID Next Generation (NG) Project Overview April 21, 2010.
Support Case Management API – Benefits and Availability
By: Hassan Waqar.  A PROTOCOL for securely transmitting data via the internet.  NETWORK LAYER application.  Developed by NETSCAPE.
Secure Sockets Layer eXtended (SSLX) Next Generation Internet Security Overview Presentation April 2011.
Environmental Council of States Network Authentication and Authorization Services The Shared Security Component February 28, 2005.
DESIGNING A PUBLIC KEY INFRASTRUCTURE
6/2/2015Information Technology Standing Committee of the IMO 1 Digital Certificate Initiative Guy Springgay Holiday Inn - Oakville.
Sentry: A Scalable Solution Margie Cashwell Senior Sales Engineer Sept 2000 Margie Cashwell Senior Sales Engineer
Windows Server 2012 R2 Capabilities for BYOD Scenario Yuri Diogenes Senior Knowledge Engineer Data Center, Devices & Enterprise Client – CSI Team’s Page:
Public Key Infrastructure from the Most Trusted Name in e-Security.
Matt Steele Senior Program Manager Microsoft Corporation SESSION CODE: SIA326.
Purpose Intended Audience and Presenter Contents Proposed Presentation Length Intended audience is all distributor partners and VARs Content may be customized.
AAF Middleware update February Presented by Terry Smith Technical Manager and Heath Marks Manager.
Extending the Discovery Environment: Tool Integration and Customization.
Demos!. Demo 1: Dropbox-like Behavior Syndicate producerconsumer.
1 Multi Cloud Navid Pustchi April 25, 2014 World-Leading Research with Real-World Impact!
Exploring InCommon Getting Started with InCommon: Creating Your Roadmap.
OASIS ebXML Registry Standard Open Forum 2003 on Metadata Registries 10:30 – 11:15 January 20, 2003 Kathryn Breininger The Boeing Company Chair, OASIS.
Internet2 – InCommon and Box Marla Meehl Colorado CIO 11/1/11.
Lecture 23 Internet Authentication Applications modified from slides of Lawrie Brown.
InCommon as Infrastructure: How Recommended Practices and Federation Features Help Scale Federated Identity Management Michael R. Gettes, Carnegie Mellon.
SAML Right Here, Right Now Hal Lockhart September 25, 2012.
CTO My SelfStudy Application Overview Sep 25, 2005.
Computer Security: Principles and Practice First Edition by William Stallings and Lawrie Brown Lecture slides by Lawrie Brown Chapter 22 – Internet Authentication.
Quality Indicators for Secondary Transition (QuIST) – Webinar #5 April 21, 2010 Presented by: Center for Change in Transition Services Cinda Johnson, Wendy.
System for Administration, Training, and Educational Resources for NASA SATERN Overview for Users December 2009.
Evolution of the Open Science Grid Authentication Model Kevin Hill Fermilab OSG Security Team.
Federal Acquisition Service U.S. General Services Administration eOffer/eMod Training eOffer/eMod Training Keonia Cobbins Systems Development Office of.
Susan G. Komen Central Wisconsin Affiliate Komen Grants eManagement System GeMS Community Grants Application Training October 2015.
Comité Réseau des Universités News from CRU activities: Identity federation, eduroam, PKI, SCS, Sympa, security policies cru.fr 7th.
Who’s watching your network The Certificate Authority In a Public Key Infrastructure, the CA component is responsible for issuing certificates. A certificate.
Unlimited SSL and personal certificates at one annual fixed fee.
Access and Information Protection Product Overview Andrew McMurray Technical Evangelist – Windows
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evolution of AAI for e- infrastructures Peter Solagna Senior Operations Manager.
CaGrid 1.0 Security Infrastructure Stephen Langella, Scott Oster, Shannon Hastings, David Ervin, Joshua Phillips, Vinay Kumar, Tahsin Kurc, Joel Saltz.
The IEEE-SA Standards Process Dr. Bilel Jamoussi IEEE Standards Education Committee.
1 Services Area highlights and priorities APNIC Member Meeting 29 February 2008 APNIC 25, Taipei Guangliang Pan.
Agenda  Microsoft Directory Synchronization Tool  Active Directory Federation Server  ADFS Proxy  Hybrid Features – LAB.
How to complete and submit a Final Report through Mobility Tool+ Technical guidelines Authentication, Completion and Submission 1 Antonia Gogaki IT Officer.
Enabling the Modern Workstyle with Windows 10 & Azure Active Directory Venkatesh Gopalakrishnan 2016 Redmond Summit | Identity Without Boundaries May 25,
Authentication and Authorisation for Research and Collaboration Taipei - Taiwan Mechanisms of Interfederation 13th March 2016 Alessandra.
11 | Managing User Info Jeremy Foster Michael Palermo
Follow OCG Learning Twitter Facebook LinkedIn
Web SSO with Cloud Resources using AD Federation Services
REDCap General Overview
Summary of VCU Student Satisfaction Fall 2012
Service Delivery Dashboard: FY17 Overview
Supplier Portal Self-Registration
Community Survey Report
InCommon Steward Program: Community Review
Securing the Network Perimeter with ISA 2004
LCG/EGEE Incident Response Planning
Roadmap Q217 APIs Provide APIs for Code Signing on Demand service.
Riding the Wave of Innovation
Introduction How to combine and use services in different security domains? How to take into account privacy aspects? How to enable single sign on (SSO)
Certificate Management
Setting Up and Supporting Clients Using Employee Development in ADP Workforce Now [Developer: Use this slide if you are not using audio. You can add.
Welcome to our first session!
NAAS 2.0 Features and Enhancements
Public Key Infrastructure from the Most Trusted Name in e-Security
Course Title: Keycode Retrieval System (KRS) –
UK Access Management Federation
Device Registration and Multi-Factor Authentication
Tioga Tae Kwon Do Student Management System
Reinhard Scholl, GTSC-7 Chairman
Modern benefits administration and HR software, supported by us.
CFR Enhancement Session
Presentation transcript:

Certificate Service Survey Summary Trust & Identity, Internet2 April 2018

Summary The survey identified these top three most challenging tasks: Domain Control Validation (DCV), wrangling the Extended Validation agreement, and submitting requests using the Comodo Certificate Manager (CCM) tool Multifactor Authentication is widely deployed among certificate survey respondents; to a lesser extent it is integrated with their campus Identity Provider (IdP). Allowing certificate service admins to use MFA with the IdP continues as a priority for a secure deployment Top requested enhancements include deploying an Automated Certificate Management Environment (ACME), providing federated SSO for user certificate self-enrollment, and improvements to the API While satisfaction with support continues to be more positive than negative, improvements are needed Top training requests are: installing a signed certificate, the EV certificate process, and DCV

Survey Overview Survey distributed on February 8, 2018, to cert-users@incommon.org and participants@incommon.org Closed on February 26, 2018 Closely mirrored the survey distributed in 2016, with additional feature choices and questions regarding MFA/SSO. Goals: Highlight areas of satisfaction and opportunities for improvement On slides indicating “top” answers, categories receiving under 5 responses were not included

Survey Participants

Participant Highlights 2016 Results: 164 Responses 76 anonymous 88 named Total subscribers: 388 2018 Results: 166 Responses 66 anonymous 100 named Total subscribers: 422

Institution Classification

Service Role

Role at Institution

Survey Respondents: Current Subscribers

Organizations with an Identity Provider (IdP) Registered in the InCommon Federation

Multi Factor Authentication (MFA)

MFA: Current State

MFA: Current State & Preferences

Certificates

Top Types of Certificates Deployed

Top Current Service Features in Use

Lifecycle Management

Most Challenging Tasks

Other Challenging Task Themes Lacking ACME. Challenges with the API. Lack of notification for items in approval queues. The wizard.

Training

Top Training Interests

Desired Enhancements

2018 Enhancement Priorities

Support

Have you ever needed and contacted support for the InCommon Certificate Service?

Top Areas of Requested Support

When Requesting Support, Did you Feel You Knew Where to Request Support?

Top Methods of Contacting Support

After Contacting Support, Were your Issues Satisfactorily Resolved?

Are you satisfied with the Reliability and Availability of the InCommon Certificate Service?

Satisfaction with Comodo Certificate Manager Web Interface

Overall Satisfaction with Comodo Features

Summary of Suggestions to Improve the Certificate Service ACME and associated documentation. Add functionality to approve multiple SSL certificates at once.  Share case studies of schools who do a particular function well. Offer a webinar to highlight features.