Shibboleth Use in the Open Source Community Keith Hazelton for Steven Carmody
March 24, 2003Middleware Planning and Deployment Agenda Completed Projects Current Projects Future Projects Issues Note: Related session will explore the “how” question; this is about “what”
March 24, 2003Middleware Planning and Deployment Completed Projects
March 24, 2003Middleware Planning and Deployment Apple QuickTime Streaming Server Described by Gary Chapman
March 24, 2003Middleware Planning and Deployment Completed Projects Twiki – –Already had some security concepts Names vs login Ids Guest access (read) vs Login access (write) Access Control (can only see what you’re authorized to see) –Written in Perl, runs as cgi
March 24, 2003Middleware Planning and Deployment Completed Projects Sympa Mailing List Manager – – –Exports both and web interfaces –Already had some security concepts Login ID is address Access Control (can only see what you’re authorized to see)
March 24, 2003Middleware Planning and Deployment Completed Projects Blogs –MoveAble Type –PSU –Already had some security concepts Login Ids Guest access (read) vs Login access (write) Access Control (can only see what you’re authorized to see)
March 24, 2003Middleware Planning and Deployment Current Projects Grid + Shibboleth –Flows, Security Model Defined –Argonne has submitted proposal to latest NMI round,asking for support to implement
March 24, 2003Middleware Planning and Deployment Current Projects LionShare –Desktop Searching Tool –Integrated GUI –Will search using Variety of Protocols “secure” P2P Modules exporting the OKI DR OSID interface –ECL (implementation of IMS DRI specification) –Fedora –SRW? –?
March 24, 2003Middleware Planning and Deployment LionShare - P2P Built from LimeWire/gnutella (the RIAA’s favorite…) Supports searching, retrieval, publishing in the P2P world Supports both “open” publishing (anyone can download) and access control V1.x will leverage Shibboleth infrastructure –Requesters will send signed SAML attribute assertions –Publishers will enforce attribute-based access control before allowing download
March 24, 2003Middleware Planning and Deployment LionShare - ECL Implementation of IMS DRI specification Typically used to search repositories of Learning Objects (eg MERLOT ) SOAP based Evaluating use of (not yet completed) WS-Security family of specifications May use some Liberty concepts to fill holes … understand that this is all political quicksand
March 24, 2003Middleware Planning and Deployment Current Projects Other SOAP-based Protocols –Fedora (not the Linux distro): The “Flexible Extensible Digital Object Repository Architecture”
March 24, 2003Middleware Planning and Deployment Current Projects Barry's video
March 24, 2003Middleware Planning and Deployment Future Projects uPortal Sakai
March 24, 2003Middleware Planning and Deployment Current Projects Zope - Content management System Project Zope4Edu; Zope and Duke –Build Zope CMS to meet educational needs –Use Shib for easy integration –Not yet ready to show 3 more weeks Shib Mojo –Kenexa
March 24, 2003Middleware Planning and Deployment