Verifying student status with

Slides:



Advertisements
Similar presentations
Evolution of Parametric Analysis within Rolls-Royce Purchasing
Advertisements

First create and sign up for a blue host account Through the help of Blue Host create a WordPress website for the business After you created WordPress.
Innovation through participation eduGAIN federation operator training eduGAIN policy eduGAIN training in Vienna Oct 2011
Electronic Data Interchange (EDI)
SWITCHaai Team Federated Identity Management.
Use case: Federated Identity for Education (Feide) Identity collaboration and federation in Norwegian education Internet2 International Workshop, Chicago,
© Australian Access Federation Inc. P RIVACY AND T HE A USTRALIAN A CCESS F EDERATION Presented by: Terry Smith 1 st June 2010 Supported by the Australian.
Innovation through participation Interfederation through eduGAIN - steps and challenges eduGAIN interfederation service Federated Identity Systems.
AARC Overview Licia Florio, David Groep 21 Jan 2015 presented by David Groep, Nikhef.
Internet2 – InCommon and Box Marla Meehl Colorado CIO 11/1/11.
Belnet Federation Belnet – Loriau Nicolas Brussels – 12 th of June 2014.
Social Identity Working Group Steve Carmody. Agenda Intro to Using Social Accounts Status and Recent News –Current UT Pilot –Current InCommon Pilot with.
Kalmar Union lessons: Findings in federation harmonisation REFEDS Mikael Linden, CSC.
INTRODUCTION: THE FIRST TRY InCommon eduGAIN Policy and Community Working Group.
Innovation through participation eduGAIN interfederation service for research and education Cern FedID workshop in RAL, UK 2-3 Nov 2011 Mikael Linden,
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos GRNET Proposed Pilots for Libraries and eGov.
AUSTRALIAN ACCESS FEDERATION. Who we are Shared service for R&E Provide the trusted authentication framework for:  Universities  Education  Research.
Brown University Leveraging Social Identities Steve Carmody CSG, May 15, 2013.
Growth. Interfederation PKI is globally scalable Unfortunately, its not locally deployable… Federation is locally deployable Can it.
Understanding deployment issues on the Supply Chain Ann Harding, SWITCH, Nicole Harris, TERENA Cambridge July 2014.
Federated Identity Fundamentals Ann Harding, SWITCH Cambridge July 2014.
Chapter Twenty Two: Transorganizational Change. Learning Objectives for Chapter Twenty Two To understand the rational behind transorganizational interventions.
Enabling Secure Multi-Organization Collaboration Andrew Porter IT Director, Enterprise Architecture Merck & Co., Inc.
How to right-size your product launch process depending on company scale and resources Jordan Jacobs.
GENERAL REMARKS Guidelines and suggestions for GSVC pitch decks Goal of the Presentation Illustration of the business in a concise way Visual support for.
TOPIC : PROJECT MANAGER
Social Enterprise – What does it mean for you ?
Access Policy - Federation March 23, 2016
Regaining Control of Your Consulting Practice
The EGI AAI “CheckIn” Service
User Community Driven Development in Trust and Identity
InAcademia.org Simple affiliation validation for Academia
A Talent Acquisition Blueprint: The State of Recruiting in 2022
Microsoft Education Better outcomes, proven results, trusted technology Name, title.
Use case: Federated Identity for Education (Feide)
OMG, Another Simple, Lightweight Authentication Service???
eduTEAMS platform for collaboration Niels Van Dijk
Géant-TrustBroker Dynamic inter-federation identity management
RELIANCE JIO.
Business-to-Business marketing as a key factor for increasing service revenue in China By Joni Yau Nov 29,2008.
Organization and Knowledge Management
CLARIN Federated Identity Vision
Anjali Yakkundi, Analyst
GakuNin: Federated Identity Management Activities in Japan
Chapter 2: Introduction to Electronic Commerce
[Product/ Service Name]
Through the Eyes of Data
Managing global accounts
AARC2 JRA1 Nicolas Liampotis
GÉANT project update eduTEAMS - AAI as a Service for Collaborative organisations Introduction Status Pilots New Features – input requested InAcademia –
InAcademia Simple Validation Service Niels van Dijk
Shibboleth Implementation in EZproxy
Address: 223/224 Global Business Park, Chandigarh, Mob: Phone:
Global Social Venture Competition Pitch Deck
Advanced Management Control and Sustainable Development
Transorganizational Change
Organization Development and Change
PASSHE InCommon & Federated Identity Workshop
Customer Relationship Management (CRM)
Service Development at Aalto University Key Enabler for Aalto's Academic Mission Mari Svahn.
Example Use Case for Attribute Authorities and Token Translation Services - the case for eduGAIN Andrea Biancini.
Share Growth Revenue Efficiency Profit Shareholder Value
Building Better Bridges An Integrated Content Marketing Practice By Jay Jablonski, MBA This presentation may not be shared, used or reproduced without.
Tools to Address Challenges in Local Authority Waste Management
Developing the power sector in Federal Nepal Main lessons from international experience Kathmandu, November 06, 2018.
Leader’s Role in Process Improvement
Baseline Expectations for Trust in Federation
eIDAS-enabled Student Mobility
What is InAcademia? An affiliation validation service
Check-in Identity and Access Management solution that makes it easy to secure access to services and resources.
Presentation transcript:

Verifying student status with John Scullen (Australian Access Federation) Harry Lalor (SheerID)

Is there anything you can do to help? We have a problem... … verifying customers as students so we can give them discounted flights is slow and expensive. Is there anything you can do to help? ASX100 listed company. Kind of a big deal for AAF $3.50 AUD for International Student Identity Card and at least a week of latency in the process US subsidiary (Student Universe) already connected using SheerID. Wanted to integrate using SheerID for consistency

Context AAF SheerID Research and education focus Grey area around commercial service providers in AAF Some in the federation, some we declined Australian Privacy Act Concerns over disclosing personally identifiable information (PII) to service providers without the individual’s consent SheerID Clients with global footprint require localized service delivery Strict adherence to Privacy Laws Localized content and service Understand and respect cultural norms Current relationship with students and our clients, not with HEIs Need partners with long standing ties with Academic community Commercial, not R&S designation, made SP status awkward for some Federations

Rationale AAF Shares costs between participants Improves sustainability Recurring revenue stream Income has few strings attached Shares in the success of aggregators / merchants as they grow Backing from the AAF Board SheerID AAF - trusted partner to HEIs in Australia Full support of our client and AAF Service solved for commercial status within R&S framework Consistent attribute release from HEIs to SheerID

Before: AAF core attributes { "auEduPersonSharedToken": "ZsiAvfxa0BXULgcz7QXknbGtfxk" "displayName": "Jack Dougherty" "eduPersonAffiliation": "student; member" "eduPersonScopedAffiliation": "student@uq.edu.au; member@uq.edu.au" "o": "The University of Queensland" "mail": "j.dougherty@uq.edu.au" "sn": "Dougherty" "givenName": "Jack" "homeOrgainsation": "uq.edu.au" "eduPersonPrincipalName": "dougherty@uq.edu.au" … } All IdPs and SPs agree to exchange a dozen or so core attributes More information than most commercial services need PII leakage

After: VerifID verification response { "user": { "identifier": "really_long_opaque_persistent_identifier", "faculty": false, "student": true, "staff": false, "employee": false, "member": true, "affiliate": false, "alum": true, "library-walk-in": false }, "verification_id": "some_random_hard_to_guess_string", "verification_timestamp": "2018-12-20T09:29:28.146500Z" }

The Solution - Technical Architecture AAF SAML Federation OAuth2 flow Commercial services requiring affiliation verification

The Solution - Commercial Model Pay-per-verification Same price for everyone (direct or via an aggregation service) Collection of a verification result is the trigger for charging Charge incurred regardless of the student status a negative result is still a confirmation of the customer’s current status Common terms and conditions for all subscribers retrieval of the verification result is the charge trigger. we deliberately put this at the end of the chain to avoid charging for failed transactions (eg. student aborts, student can’t login to IdP)

Why not InAcademia? Currently European focused Relies on eduGAIN AAF IdPs must opt in. Only 30% connected at this stage. Commercial arrangements still to be clarified Get in touch with InAcademia if you’re looking to verify European students

Learnings Technical development is relatively easy… agile approach - worked with customers to refine the solution and technical workflows launched MVP and refined … sorting out the commercial arrangements is harder Joint development generated a better outcome than either of us could have conceived on our own SheerID Knowledge of key drivers for merchants Understanding of the value of a verification Volume projections to help develop a business case AAF Understanding of university processes and nuances Technical expertise to deliver a solution