TF-EMC2 – Internet2 update Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist, University of Colorado at Boulder.

Slides:



Advertisements
Similar presentations
The Art of Federations. Topics Federations of what… Federated identity versus federations Federations in other sectors – business, gov, ad hoc R&E Federations.
Advertisements

Towards Common Identity Services Tom Barton University of Chicago.
From Authentication to Privilege Management to the Attribute Economy: Marketing runs amok…
The Internet2 NET+ Services Program Jerry Grochow Interim Vice President CSG January, 2012.
Federated Identity, Shibboleth, and InCommon Tom Barton University of Chicago © 2009 The University of Chicago.
Interfederation subgroup of InCommon Technical Advisory Committee (TAC) spaces.internet2.edu/display/incinterfed.
Internet2 and other US WMD Update. Topics Update on non-merger, Newnet (and the control plane), InCommon and other feds “Product” update – Shib, Grouper,
Drive-By Dialogues. Presenter’s Name Topics The Long Strange Trip of I2 – NLR Merger A Brief Comment on Optical Networking Middleware Developments Security.
A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network.
Fed-Ed Dec 08: Updates on Federations Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist, University of Colorado at.
Agenda Project beginnings and funding. Purpose of the federation. Federation members. Federation protocols. Special features in our federation. Pilot.
Presenter’s Name InCommon Approximately 80 members and growing steadily More than two million “users” Most of the major research institutions (MIT joining.
A Model for Enterprise Group and Affiliation Management RL “Bob” Morgan University of Washington CAMP, June 2005.
Technical Overview of Kuali Rice UC Davis, Information & Educational Technology January 2009.
The InCommon Federation The U.S. Access and Identity Management Federation
Shib in the present and the future Ken Klingenstein Director, Internet2 Middleware and Security.
Interfederation RL “Bob” Morgan University of Washington and Internet2 Digital ID World 2005 San Francisco.
Accelerating Events in Internet Identity and Privacy Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist, University.
BfB: Supporting Collaboration with Infrastructure.
External Identity and Authorization in GENI. Topics Federated identity and virtual organizations ABAC Creating and transporting attributes.
11-July-2011, SURFnet Heather Flanagan, COmanage Project Coordinator Benn Oshrin, COmanage Developer Scott Koranda, U. Wisconsin – Milwaukee and LIGO.
Federations: success brings new challenges Ken Klingenstein Director, Internet2 Middleware and Security.
AARC Overview Licia Florio, David Groep 21 Jan 2015 presented by David Groep, Nikhef.
Access Management with Grouper Tom Barton University of Chicago.
Federated Identity and the International Research Community Dr Ken Klingenstein Director, Internet2 Middleware and Security.
Australian Access Federation and other Middleware Initiatives Presented at TF-EMC2, Prague 4 Sep 2007 Patty McMillan, The University of Queensland.
Federations 101: The U.T. System Identity Management Federation Internet2 Member Meeting Fall 2006 Paul Caskey.
AAI-enabled VO Platform “VO without Tears” Christoph Witzig EGI TF, Amsterdam, Sept 15, 2010.
Federated Identity: What It Brings to Open Government Dr Ken Klingenstein Director, Internet2 Middleware and Security.
2005 © SWITCH Perspectives of Integrating AAI with Grid in EGEE-2 Christoph Witzig Amsterdam, October 17, 2005.
Stuff, including interfederation stuff Dr Ken Klingenstein, Director, Middleware and Security, Internet2.
Middleware, Ten Years In: Vapority into Reality into Virtuality Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist,
EMI AAI Strategy & Plans John White / Helsinki Institute of Physics Federated Identity Systems for Scientific Collaborations Workshop , CERN,
Running List of Comanage Framework Stuff. Parked issues Discussion of how to share the work of domesticating apps - real important to do soon, but the.
Social Identity Working Group Steve Carmody. Agenda Intro to Using Social Accounts Status and Recent News –Current UT Pilot –Current InCommon Pilot with.
Collaborative Platforms. Collaborations and Virtual Organizations IdM is a critical dimension of collaboration, crossing many applications.
COmanage and InCommon: Present and Future Activities and Interactions Heather Flanagan, COmanage Project Coordinator, Internet2.
Integrated Institutional Identity Infrastructure: Implications and Impacts RL “Bob” Morgan University of Washington Internet2 Member Meeting, May 2005.
Kuali Rice A basic overview…. Kuali Rice Mission First and foremost to provide a consistent development framework and common middleware layer for Kuali.
Comité Réseau des Universités News from CRU activities: Identity federation, eduroam, PKI, SCS, Sympa, security policies cru.fr 7th.
The InCommon Federation The U.S. Access and Identity Management Federation
Shibboleth Update Eleventh Federal & Higher Education PKI Coordination Meeting (Fed/Ed Thursday, June 16, 2005.
INTRODUCTION: THE FIRST TRY InCommon eduGAIN Policy and Community Working Group.
Kuali Rice: General Overview Brian McGough Kuali Rice Project Manager Kuali Lead Architect Director, Enterprise Software, IU May 13, 2008.
The Feds and Shibboleth Peter Alterman, Ph.D. Asst. CIO, E-Authentication National Institutes of Health.
Middleware Futures Internet2 Member Meeting Arlington VA, April 2006 RL “Bob” Morgan, University of Washington and Internet2.
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos GRNET Proposed Pilots for Libraries and eGov.
Federated Identity in Texas Paul Caskey The University of Texas System HEAnet National Conference Kilkenny, Ireland 13 November 2008.
Running List: Comanage Stuff Framework – Services - Appliance.
Internet2 and Cyberinfrastructure Russ Hobby Program Manager,
Transforming Government Federal e-Authentication Initiative David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide Policy.
Welcome to Base CAMP: Enterprise Directory Deployment Ken Klingenstein, Director, Internet2 Middleware Initiative Copyright Ken Klingenstein This.
Federated Identity in the Global Landscape. Presenter’s Name Topics Federated identity basics International deployments and issues National, local and.
Growth. Interfederation PKI is globally scalable Unfortunately, its not locally deployable… Federation is locally deployable Can it.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evolution of AAI for e- infrastructures Peter Solagna Senior Operations Manager.
The Policy Side of Federations Kenneth J. Klingenstein and David L. Wasley Tuesday, June 29, CAMP Shibboleth Implementation Workshop.
Networks ∙ Services ∙ People Marina Adomeit FIM4R meeting Virtual Organisation Platform as a Service VOPaaS Nov 30, 2015, Austria Task Leader,
INTRODUCTION TO IDENTITY FEDERATIONS Heather Flanagan, NSRC.
Networks ∙ Services ∙ People Licia Florio TNC, Lisbon Consuming identities across e- Infrastructures 16 June 2015 PDO GÈANT.
Authentication and Authorisation for Research and Collaboration Heiko Hütter, Martin Haase, Peter Gietz, David Groep AARC 3 rd.
Designing Identity Federation Policy, the right way Marina Vermezović, Academic Network of Serbia TNC2013 conference 4 May 2013.
June 23, 2016 Organizational Overview. 2 Automation Federation Background A fragmented community of automation professional associations and societies.
Federal Initiatives in IdM Dr. Peter Alterman Chair, Federal PKI Policy Authority.
Shibboleth Roadmap
Federation Systems, ADFS, & Shibboleth 2.0
Fed-Ed Dec 08: Updates on Federations
Topics The simple life The Simple Life GUI The full IdM life
Context, Gaps and Challenges
Overview and Development Plans
NSF Middleware Initiative: GridShib
Presentation transcript:

TF-EMC2 – Internet2 update Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist, University of Colorado at Boulder

Topics Internet2 Stuff Middleware Other middleware and apps activities in the US Kuali Rice / KIM US Gov

Internet2 Network wars with NLR have subsided DCN remains an expensive and uncertain service 100GE the new thrill New governance mechanisms, but little effect yet

Internet2 Middleware Core products include Shib, Grouper Plans for privilege management evolving Maybe some add-ons to Grouper Maybe a stand-alone library ala Signet Maybe… COmanage about to go beta and seems to be an obvious approach GUI work important; engagement with Fluid Basic domesticated applications include Confluence, Drupal, Sympa, etc.

Shibboleth Thanks to the Swiss, Hungary, Sweden, etc for the code development Geneva does SAML and will, with configuration guidance, function as a Shib IdP and SP 2.1 on the street Delegation and portal integration next in the roadmap

InCommon Update Growth is quite strong; doubled in size for the fifth year straight… Potential size estimates (pre-interfederation) could grow > 5,000; revenue stream…. MoU for federal agencies to join in the works Silver profile approved Federation soup in the US is increasing in complexity Major planning effort on the future of InCommon now underway, including governance, community served, pricing and packaging principles, business models

Grist for InCommon background Comparison to other national R&E federations Budget, basics Strength-weakness-opportunities-threats analysis Status of soup Growth and expense/revenue projections Effect of interfederation and soup on projections Other business opportunities

Principles to be established Community served Business opportunities Governance and representation Pricing and packaging principles – membership models, working with soup, etc. Charge by cost or charge by value The relationship between InCommon and Internet2

CAMPs 2009 Feb – Arizona – Institutional Identity – registrars and IT folks June - ? Base Camp – getting starting with group and privilege management Advanced Camp – either Integration of Institutional and Social Identity API’s for basic IdM Workflow and priv management

Kuali Open Source Major Enterprise Apps Kuali Financials Kuali Student Kuali Grant Management – Coeus Kuali Library Systems Often catalyzed by grant funding but operated by community source and development Have a lot of interest but have yet to prove themselves

Rice and KIM Rice is the unifying middleware for the Kuali applications, and now much more. It includes workflow, service buses, etc. KIM is the Kuali Identity Management part of Rice But since the the Kuali apps are of different generations, Rice isn’t simple And KIM is urgent And many schools have implemented Shib and Grouper…

US Gov EAuthentication is back and is new and improved Model is to “do that stuff like InCommon” (form community of interest federations) and do something inter-federation NIST is undergoing some revisions; R&E has emerged as the key user community

A Partial List of Important Things on the R&E Federated Space Learning the business of federations (business models, governance structures, membership models, etc) and sharing that knowledge R Coordination of interfederation basic technical approaches (from InfoCard and attribute management strategies to metadata tagging and services to, gasp, monitoring and diagnostics) TF Coordination of interfederation basic policy issues (from overlapping or competing members to common policy frameworks to legal structures between federations, orphanages) R Application enablement, from DKIM to video TF Federated operator standards, best practices, audits, etc. R Support of virtual organizations in science, humanities, etc. R eGov Interactions ? + LA LOA profiles ? +LA Common membership agreement formats R Standardized member POP R

A Partial List of Important Things on the R&E Federated Space Outreach of model to other vertical sectors (eg. Medical, Telecomm and ISP’s) LA Outreach of R&E feds to other emerging national feds nobody Short-term multi-fed metadata R + Ken Long-term solutions to dynamic metadata, etc. TF Effective attribute standards/mapping processes R+ TF Coordination of attributes ->English in uApprove, Autograph, InfoCard, etc. R+TF Convening and hosting REfeds and TAC

Places where talking could happen REfeds Liberty Alliance REfeds TAC (possible) EMC2 ECAM/MACE ISOC Geant/eduGAIN ??

Other items Privman venue EDDY Bob Hit the refresh button frequently…