Today Introducing IAMUCLA ISIS to Shibboleth Migration Demo: Shibboleth in Action Demo: IAMUCLA Support Site Shibboleth Architecture Demo: Configure Shibboleth Service Provider Outlines session proceedings Introduce the team
IAMUCLA = Identity & Access Management @ UCLA IAMUCLA = EDIMI + more … because no one could remember what EDIMI meant
IAMUCLA – Identity & Authentication UTIPP EDIMI Project Begins Migrate from ISIS to Shibboleth Develop access management plans Update Enterprise Directory Federations UCLA Logon launches ED enters limited production ISIS 5 launches Shibboleth enters production ED enters production URSA integrates with ISIS and provides UCLA Logon provisioning 2004 2005 2006 2007 2008 2009 2010
IAMUCLA Web Single Sign-On (ISIS) Groups Management (Grouper) Permission Management (Signet) (Shibboleth) UCLA Logon Enterprise Directory
IAMUCLA – Access Management Deploy Grouper & Signet Replace DACSS Set up and pilot Grouper & Signet CITI endorses 2nd phase Project renamed IAMUCLA UTIPP EDIMI Project Begins UCLA Logon launches ED enters limited production ISIS 5 launches Shibboleth enters production ED enters production URSA integrates with ISIS and provides UCLA Logon provisioning Migrate from ISIS to Shibboleth Develop access management plans Update Enterprise Directory Federations 2004 2005 2006 2007 2008 2009 2010
ISIS/Shibboleth: Web Single Sign-On IAMUCLA URSA RATS MyUCLA Travel Express Financial Web Reports many other web apps ISIS/Shibboleth: Web Single Sign-On User logs in using UCLA Logon ID ED delivers user identity, groups, and permissions data via Shibboleth Enterprise Directory Manages permissions once Groups and Permission Management Tools and replicates the same permissions data to non-web systems
From ISIS to Shibboleth Standards-based platform Adopted by UC – UCTrust Rapidly gaining industry suppurt – Microsoft Dreamspark Easier integration Federation support Shibboleth – http://shibboleth.internet2.edu UCTrust – http://www.ucop.edu/irc/itlc/uctrust/ Dreamspark - https://downloads.channel8.msdn.com/
From ISIS to Shibboleth 2008 New applications use Shibboleth Migrating existing applications is voluntary 2009 All Applications need to migrate ISIS Support Ends December 2009
https://spaces.ais.ucla.edu/iamucla