Bill Yock University of Washington Coordinating Education and Research Communities to radically improve Identity and Access Management. Shel.

Slides:



Advertisements
Similar presentations
National HIT Agenda and HIE John W. Loonsk, M.D. Director of Interoperability and Standards Office of the National Coordinator Department of Health.
Advertisements

1 Leveraging Your Existing Campus Systems to Access Resource Partners: Federated Identity Management and Tales of Campus Participation EDUCAUSE 2006 October.
State of Indiana Business One Stop (BOS) Program Roadmap Updated June 6, 2013 RFI ATTACHMENT D.
June 10-15, 2012 Growing Community; Growing Possibilities Benn Oshrin, The Oshrinium, LLC Keith Hazelton, UW-Madison, Internet2 CIFER Community Identity.
Course: e-Governance Project Lifecycle Day 1
The Internet2 NET+ Services Program Jerry Grochow Interim Vice President CSG January, 2012.
TIER – before, now and after If you do not talk this will be a very long hour because we can only repeat the same stuff for so long… 1.
Presenter(s): Candace Soderston Matt Sargent Bill Yock Date:November 16, 2011 Time:2:30 to 3:30 pm Help Shape the Future of Open Source Identity and Access.
ARC and TRC Update to All Boards. Evolution of Rice.
CSG 1 TIER* Trust and Identity in Education and Research.
Thee-Framework for Education & Research The e-Framework for Education & Research an Overview TEN Competence, Jan 2007 Bill Olivier,
Introducing Open Platform for NFV Please direct any questions or comments to 1.
InCommon Policy Conference April Uses  In order to encourage and facilitate legal music programs, a number of universities have contracted with.
CIFER Community Identity Framework for Education and Research (CIFERproject.org) An agile, best-of-breed, community-governed, comprehensive IAM solution.
OSIAM4HE Proposed org structure Authored by the strategy and organization team.
SWITCHaai Team Federated Identity Management.
Identity Relationship Management The Next Evolution of Identity and Access Management for the Internet of Everything.
SCC Activities C. Tilton. Standards Are applied to SOMETHING Within some CONTEXT Something = ID Ecosystem Context = Use Cases 2.
CIFER Community Identity Framework for Education and Research (CIFERproject.org) An agile, best-of-breed, community-governed, comprehensive IAM solution.
InCommon Michigan State Common Solutions Group, January 2011 Matt Kolb
The InCommon Federation The U.S. Access and Identity Management Federation
Campaign Readiness Project Overview Enabling a structured, scalable approach to customer-centric campaigns.
Internet2 – InCommon and Box Marla Meehl Colorado CIO 11/1/11.
TFTM Interim Trust Mark/Listing Approach Paper Analysis of Current Industry Trustmark Programs and GTRI PILOT Approach Discussion Deck TFTM Committee.
INTEGRATION WITH OTHER IDM SOLUTIONS Remember… The primary goal of KIM was to build a service- oriented abstraction layer for Identity and Access Management.
Cyber Authentication Renewal Project Executive Overview June – minute Brief.
EHR System (EHR-S) Functional Requirements Implementation Guide: Laboratory Results Interface (LRI) Kickoff March 3 rd,
IAM REFERENCE ARCHITECTURE BRICKS EMBEDED ARCHITECTS COMMUNITY OF PRACTICE MARCH 5, 2015.
June 10-15, 2012 Growing Community; Growing Possibilities Dedra Chamberlin, UCSF/UC Berkeley Eric Westfall, Indiana University.
Presented by: Presented by: Tim Cameron CommIT Project Manager, Internet 2 CommIT Project Update.
COmanage and InCommon: Present and Future Activities and Interactions Heather Flanagan, COmanage Project Coordinator, Internet2.
Linking Tasks, Data, and Architecture Doug Nebert AR-09-01A May 2010.
Presenter(s): Candace Soderston Matt Sargent Bill Yock Date:November 16, 2011 Time:2:30 to 3:30 pm Help Shape the Future of Open Source Identity and Access.
Capacity Building Committee Architecture and Data Committee Meeting Seattle – July 2006.
VERMONT PRODUCT STEWARDSHIP COUNCIL (VTPSC) Meeting #1 SEPTEMBER 8, 2008.
June 10-15, 2012 Growing Community; Growing Possibilities Dedra Chamberlin, UCSF/UC Berkeley Eric Westfall, Indiana University.
The InCommon Federation The U.S. Access and Identity Management Federation
State of e-Authentication in Higher Education August 20, 2004.
CIFER (Community Identity Framework for Education and Research) Overview for Prospective Contributors ciferproject.org Bill Yock Director, Enterprise Information.
1 National Geospatial Advisory Committee NGAC Innovative Strategies for Geospatial Programs and Partnerships Subcommittee Update Subcommittee Members 
Kuali Research Administration IRB Dan Dwyer, Research Administration Information Services E. Ray Stinson, Office of Research Integrity and Assurance Cornell.
Internet2 and Cyberinfrastructure Russ Hobby Program Manager,
Lead from the front Texas Nodal 1 Texas Nodal Market Implementation ERCOT Board Of Directors – August 15, 2006 TPTF Meeting August.
Kantara Initiative Privacy Framework Overview and Value Proposition 13 May 2011.
What’s Happening at Internet2 Renee Woodten Frost Associate Director Middleware and Security 8 March 2005.
Project Presentation to: The Electronic Access Partnership July 13, 2006 Presented by: Tim Cameron, Meteor Project Manager The.
Welcome to Base CAMP: Enterprise Directory Deployment Ken Klingenstein, Director, Internet2 Middleware Initiative Copyright Ken Klingenstein This.
University of Washington Collaboration: Identity and Access Management Lori Stevens University of Washington October 2007.
June 10-15, 2012 Growing Community; Growing Possibilities Dedra Chamberlin, UC Davis Eric Westfall, Indiana University.
Kentucky’s Professional Growth and Effectiveness System.
Internet2 Strategic Directions October Fundamental Questions  What does higher education (and the rest of the world) require from the Internet.
Connect communicate collaborate Trust & Identity EC meets GÉANT 19 June 2014 Brussels Valter Nordh, NORDUnet Federation as a Service Task Leader Trust.
FROM PRINCIPLE TO PRACTICE: Implementing the Principles for Digital Development Perspectives and Recommendations from the Practitioner Community.
INTRODUCTION TO IDENTITY FEDERATIONS Heather Flanagan, NSRC.
Progress Report on the U.S. NSTIC Efforts Jack Suess – Delegate for Research, Development, Education & Innovation
University of Southern California Identity and Access Management (IAM)
LIGO Identity and Access Management
Update from the Faster Payments Task Force
Auditing Sustainable Development Goals
Ian Bird GDB Meeting CERN 9 September 2003
Higher Education’s Role in the Identity Ecosystem
InCommon Steward Program: Community Review
Summit 2017 Breakout Group 2: Data Management (DM)
Harvard CRM Service Strategy
What does the State GIS Coordinator do?
University of Southern California Identity and Access Management (IAM)
Agenda Purpose for Project Goals & Objectives Project Process & Status Common Themes Outcomes & Deliverables Next steps.
ORCID: ADDING VALUE TO THE GLOBAL RESEARCH COMMUNITY
MODULE 11: Creating a TSMO Program Plan
Presentation transcript:

Bill Yock University of Washington Coordinating Education and Research Communities to radically improve Identity and Access Management. Shel Waggener SVP, Internet2

What are the unique challenges in Education and Research and what activities are underway? What is an Identity Framework and why do we need one? Who is the Community and how can we work better together? So what is CIFER really? What are the Planned Outcomes and Execution Strategies?

Diverse ecosystems of technologies and applications Very sensitive data and complex regulatory requirements Growing federation and inter-federation needs Dynamically changing identity contexts

CAS, Shibboleth, Grouper, KIM, OpenReg, CPR, Identity Match, CoManage/CoCoA, InCert, uApprove, InCommon Assurance, CommIT, ORCID, OpenIDM, Syncope, iRODS, CILogon, u-Prove, FICAM, NSTIC IDESG, InCommon Federation, SimpleSAML.php, COManage, IRMA, PubCookie, InCommon Quilt, Kerberos, ConnID, OpenIDConnect, Oauth, OpenICF, SCIM, XACML, Social2SAML, MDX, Metadata Aggregator, ABC4Trust, NSTIC Scalable Privacy, KOM, OpenIdM, EduGain, Moonshot, … A partial list of education and research related open source projects and standards – not to mention the many commercial offerings!

Conceptual models to classify and organize Functional models for common definitions and use cases Standard API’s and protocols for ease of use and interoperability

Reference Implementations / Interop Improvements Design and Build / Integrate Components Embrace Standards / Create Toolkits and API’s

Growing cooperation amongst existing communities and projects Identity Management in Higher Education – A View of the Landscape A growing “Community of Practice” of IAM experts Work Groups organized around the CIFER Framework areas (API’s, P&I, Identity Registry, Access Management, Authentication)

Connecting the villages takes a lot of effort Need “seamful” experiences Minimize duplication of features Identify critical path opportunities and code Requires Global Cooperation and Collaboration Shib EduGAIN KIM Grouper Moonshot MFA CPR Other

Coordination Resource Augmentation Documentation Stewardship Interfaces & APIs Architectures Feature Roadmaps

Active Work Group participation Cross Work Group Coordination Committee formed Beginning of a functional framework Draft of Standard API’s Preliminary design of provisioning toolkits Preliminary design of identity matching toolkits Beginning of reference implementation test beds

Refine framework, establish baseline resources, develop overall plans Full Functional Model ID Match/Reconciliation toolkit Standard APIs Product Test Drives Build Product Strategy Maps $2 M – Institutional Angels, Individual Donations Establish Dev team, construct governance and integration tools, test and document capabilities Provisioning Toolkits IAM Console – Governance and Audit Enhanced Attribute Based Access Control $6M – Increased Institutional membership, Possible Grants Framework certification, Enable inter-federation services, Personal privacy Certification Mark service Federation policy management tools Personal privacy tools $1M / Yr – Membership fees, Certification Mark fees Startup FY14 Accelerate FY15 – FY16 Sustain FY17 & beyond Areas of Focus CIFER Deliverables Funding Needs / Strategies

CIFER Consortium Charter adopted by Kuali and Internet2 leadership to support planned outcomes Draft membership agreements in progress, preliminary pledges include InCommon to be Consortium Operator Internet2 increased investment ( AVP of Integration contribution of half-time FTE $120K, Grouper $240K) Kuali Rice Partners increased investment ( UW $240K, Iowa State $240K, Cornell $120K) Penn State Contribution of Central Person Registry (CPR)

Supporter Level Contributor Level Principal Level Eligible for “Readiness Assessment” support  Eligible for “Implementation Assistance” support  Eligible to sponsor new Work Groups  Eligible for Elected Board Seats  Eligible for Appointed Board Seats  Individual contributions of $20 eligible for cool logo ware and chance for prizes! Any IAM enthusiast eligible to participate in Working Groups! $1 / FTE Student $2 / FTE Student $5 / FTE Student

Readiness Assessment Program (*) For Supporting, Collaboration and Partner Members Implementation Assistance Program (*) For Collaboration and Partner Members only Survey that institutions fill out regarding current state of their IAM environment based on CIFER Framework criteria. CIFER IAM experts review and comment on recommendations for improvements based on institutional goals. Up to 40 hours of review, configuration and troubleshooting, by CIFER IAM experts, of any of the products available in the reference implementation test drive area that an adopting institution is attempting to deploy. (*) Actual program details to be defined and adopted by initial CIFER Consortium Board…

Join an open Work Group committee Become an Institutional Investor – Sign CIFER Consortium Membership Agreements Become an Individual Donor – Make a small donation, receive a cool CIFER t-shirt For more information and