Drive-By Dialogues. Presenter’s Name Topics The Long Strange Trip of I2 – NLR Merger A Brief Comment on Optical Networking Middleware Developments Security.

Slides:



Advertisements
Similar presentations
The Basics of Federated Identity. Overview of Federated Identity and Grids Workshop Session 1 - for all Basics and GridShib Session 2 – more for developers.
Advertisements

The Art of Federations. Topics Federations of what… Federated identity versus federations Federations in other sectors – business, gov, ad hoc R&E Federations.
Towards Common Identity Services Tom Barton University of Chicago.
From Authentication to Privilege Management to the Attribute Economy: Marketing runs amok…
TF-EMC2 – Internet2 update Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist, University of Colorado at Boulder.
The Internet2 NET+ Services Program Jerry Grochow Interim Vice President CSG January, 2012.
Federated Digital Rights Management Mairéad Martin The University of Tennessee TERENA General Assembly Meeting Prague, CZ October 24, 2002.
Trends in Identity Management Nate Klingenstein Internet2 EDUCAUSE Security Professional 2007.
Internet2 and other US WMD Update. Topics Update on non-merger, Newnet (and the control plane), InCommon and other feds “Product” update – Shib, Grouper,
A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network.
1 Issues in federated identity management Sandy Shaw EDINA IASSIST May 2005, Edinburgh.
Internet Scale Identity, Collaboration and Higher Education.
The Co-mingled Universe of R&E Networking: the reprise Ken Klingenstein Director, Internet2 Middleware and Security Ken Klingenstein Director, Internet2.
NSF Middleware Initiative: GridShib Tom Barton University of Chicago.
Presenter’s Name InCommon Approximately 80 members and growing steadily More than two million “users” Most of the major research institutions (MIT joining.
New CyberInfrastructure for Collaboration between Higher Ed and NIH.
Federations and Security: A Multi-level Marketing Scheme Ken Klingenstein Director, Internet2 Middleware and Security.
Shibboleth-intro-dec051 Shibboleth A Technical Overview Tom Scavo NCSA.
Intro to Identity for Developers Tom Barton, U Chicago Scott Cantor, Ohio State Patrick Michaud, U Washington.
GridShib: Grid-Shibboleth Integration (Identity Federation and Grids) April 11, 2005 Von Welch
Authorization Scenarios with Signet RL “Bob” Morgan University of Washington Internet2 Member Meeting, September 2004.
Stuff Ken Klingenstein. Stuff sack InCommon Stuff Infocard, Open Id, etc… Federation soup Cormack slides on EU (and US) privacy International.
Shib in the present and the future Ken Klingenstein Director, Internet2 Middleware and Security.
Interfederation RL “Bob” Morgan University of Washington and Internet2 Digital ID World 2005 San Francisco.
Mairéad Martin The University of Tennessee September 13, 2015 Federated Digital Rights Management.
BfB: Supporting Collaboration with Infrastructure.
External Identity and Authorization in GENI. Topics Federated identity and virtual organizations ABAC Creating and transporting attributes.
PEER (Public End-Entity Registry) (MLS -> SPIT -> BEER -> PEER)
Federated Identity and the International Research Community Dr Ken Klingenstein Director, Internet2 Middleware and Security.
Federated Identity: What It Brings to Open Government Dr Ken Klingenstein Director, Internet2 Middleware and Security.
VO and Internet2 Middleware. Presenter’s Name Topics Motivations for Internet2 Middleware work Federated identity and InCommon Other IdM Groups, privileges,
2005 © SWITCH Perspectives of Integrating AAI with Grid in EGEE-2 Christoph Witzig Amsterdam, October 17, 2005.
Rick Summerhill Chief Technology Officer, Internet2 TIP January 2008 Honolulu, HI Internet2 Update.
Collaborative Platforms. Collaborations and Virtual Organizations IdM is a critical dimension of collaboration, crossing many applications.
COmanage and InCommon: Present and Future Activities and Interactions Heather Flanagan, COmanage Project Coordinator, Internet2.
Shibboleth Update Advanced CAMP 7/31/02 RL “Bob” Morgan, Washington Steven Carmody, Brown Scott Cantor, Ohio State Marlena Erdos, IBM/Tivoli Michael Gettes,
Integrated Institutional Identity Infrastructure: Implications and Impacts RL “Bob” Morgan University of Washington Internet2 Member Meeting, May 2005.
A Role for Libraries in Helping Users Manage Collaboration.
Access Information Management Tom Barton University of Chicago.
Virtual organizations: Team Science, Team Shakespeare.
Taking Care of Our Core Business: Managing Collaborations Dr. Ken Klingenstein, Senior Director, Internet2 Middleware and Security.
Scared Straight… if you want to go outside… Authenticate Locally, Act Globally.
Shibboleth Update Eleventh Federal & Higher Education PKI Coordination Meeting (Fed/Ed Thursday, June 16, 2005.
Federated Identity Graduates Nate Klingenstein Internet2 APAN 27 高雄台湾, March 3, 2009.
Middleware Futures Internet2 Member Meeting Arlington VA, April 2006 RL “Bob” Morgan, University of Washington and Internet2.
University of Washington Identity and Access Management IEEAF – RENU Network Design Workshop Seattle - 29 Nov 2007 Lori Stevens, Director, Distributed.
Identity Management and Enterprise Single Sign-On (ESSO)
Running List: Comanage Stuff Framework – Services - Appliance.
Internet2 and Cyberinfrastructure Russ Hobby Program Manager,
Welcome to Base CAMP: Enterprise Directory Deployment Ken Klingenstein, Director, Internet2 Middleware Initiative Copyright Ken Klingenstein This.
University of Washington Collaboration: Identity and Access Management Lori Stevens University of Washington October 2007.
~60 staff 1.Collaborators around the world 2.Supports communities of collaborators external to Internet2 3.Community uses wiki, mailing lists, instant.
Federated Identity in the Global Landscape. Presenter’s Name Topics Federated identity basics International deployments and issues National, local and.
June 9, 2009 SURFfederatie: implementing a multi- protocol federation Hans Zandbelt & Joost van Dijk, SURFnet.
Federated Wireless Network Authentication Kevin Miller Duke University Internet2 Joint Techs Salt Lake City February, 2005.
Interfederation: From Demo to Eternity RL “Bob” Morgan, University of Washington and Internet2 Internet2 Member Meeting, Chicago December, 2006.
01 October 2001 “...By Any Other Name…”. Consequences and Truths (Ken) The Pieces and the Processes (Bob) Directories (Keith) Shibboleth and SAML (Scott)
Collaboration and Federated Identity Two powerful forces being leveraged – the rise of federated identity – the bloom in collaboration tools, most particularly.
Access Policy - Federation March 23, 2016
LIGO Identity and Access Management
Shibboleth Project at GSU
New CyberInfrastructure for Collaboration between Higher Ed and NIH
Virtual organization support services:
Topics The simple life The Simple Life GUI The full IdM life
Context, Gaps and Challenges
Overview and Development Plans
A History of the Next Five Years: (the rise of indoor plumbing)
Virtual organizations: Team Science, Team Shakespeare
NSF Middleware Initiative: GridShib
Presentation transcript:

Drive-By Dialogues

Presenter’s Name Topics The Long Strange Trip of I2 – NLR Merger A Brief Comment on Optical Networking Middleware Developments Security Developments

Presenter’s Name A Long Strange Trip

Presenter’s Name Optical Networking “Packet vs switched” The final answer is both, and it can be done Needs control plane Needs monitoring and measurement Capstone architecture; market will refine Higher ed can drive the invention Future frontiers are not performance related Security, transparency, mobility Trust (note ISOC/IETF Meeting) Non-IP, non-optical wave

Presenter’s Name Security Lots and lots of issues – DDOS, phishing, DNS attacks, problems within the perimeter; some successes Federal efforts REN-ISAC Services Business model work CSI2 FWNA and eduRoam Security and middleware (roles)

Presenter’s Name Middleware Developments SAML and Shibboleth Working with open source and legacy apps InCommon and international federations Collaboration management platforms NSF-Mellon Scientific and Scholarly Workflow

Presenter’s Name SAML and Shibboleth Common roots (RL Bob Morgan, UW and Scott Cantor, OSU) Shibboleth has always been built on SAML/preSAML and primarily add multilateral federation support and metadata With SAML 2.0 convergence is complete, with the Shib code providing multilateral, WS-FED interop Shib 1.3 widely deployed; Shib 2.0 now in beta Undeveloped areas (ARP editors, WAYF, n- tier) becoming visible

Presenter’s Name Shibboleth and applications Wireless access, bandwidth allocation CAS and other SSO Wikis, mail lists, etc Sharepoint (!) Sakai, Kuali, Mellon OpenId is the vapor-weight alternative

Presenter’s Name InCommon Growing steadily now; 75 members and 1.3M user base Major applications include outsourced services, content providers, wiki and collaboration tools NIH and federal follies elsewhere Apple, Google and Microsoft InCommon Bronze and Silver now under discussion

Presenter’s Name Some inter-federation key issues Multi-protocols Sharing metadata Aligning policies WAYF functionality Dispute resolution Virtual organization support

Presenter’s Name Prague Meeting on Inter-federation International R&E federations (5 continents) plus Liberty Alliance and a few others Prague, September 3 Lots of topics: Attribute mapping, Privacy Policies, Dispute resolution, Financial considerations, Technical direction setting UK drafting an analysis of International Peering needs, opportunities, etc.

Presenter’s Name Scientific and Scholarly Workflow Jointly commissioned by NSF and Mellon Intent is not to open new lines of research but identify key components (and implementations) that, with investment, is readily deployable cyberinfrastructure Role of enterprise and federations in collaborative workflow

Presenter’s Name Comanage Management of collaboration a real impediment to collaboration, particularly with the growing variety of tools Goal is to develop a “platform” for handling the identity management aspects of many different collaboration tools Platform includes a framework and model, specific running code that implements the model, and applications that take advantage of the model This space presents possibilities of improving the overall unified UI as well as UI for specific applications and components.

Presenter’s Name Comanage 2 Leverages federated identity and the attribute ecosystem heavily Uses Grouper to manage groups and Signet to manage privileges Built completely on open protocols, using open source components Open and proprietary applications can be plumbed to work with it

Presenter’s Name Comanageable applications Already done Sympa, Federated wikis, Asterisk (open- source IP audioconferencing), Dim-Dim (open-source web meeting) Immediate targets Rich access controlled wikis Web-based file shares

Presenter’s Name Comanage dimensions of growth In the applications that can be driven by it Collaboration and domain science prime areas Largely a function of the application’s respect for middleware In the areas being managed Diagnostics? Others? In the identities being managed In the coupling of autonomous and diverse instances Deployment instances may be at many layers of organization and shift as it matures Underlying stores may be db, directory, or other

Presenter’s Name Takeaways Identity management – several related services Directories and getting applications to use them The REN-ISAC Federations