Innovation through participation eduGAIN as a service (T3) in Multi-Domain User Applications (SA3) Valter Nordh, NORDUnet / GU NORDUnet conference, Köpenhamn,

Slides:



Advertisements
Similar presentations
Connect communicate collaborate Campus Best Practice (GN3/NA3/T4) and the Norwegian GigaCampus project Vidar Faltinsen, UNINETT Network Monitoring Workshop.
Advertisements

Innovation through participation eduGAIN federation operator training eduGAIN interfederation service /18 Valter Nordh, NORDUnet / GU 1.
Innovation through participation eduGAIN federation operator training Operations Team, OT, how to join eduGAIN /18 Valter Nordh, NORDUnet / GU.
Federated Identity Management for Researchers – A quick overview from GÉANT BoF TNC May 2014 Dublin.
Licia Florio EUNIS05, Manchester 1 Eduroam EUNIS Conference, June Licia Florio.
Innovation through participation GÉANT Data Protection Code of Conduct (DP CoC) FIM for research collaboration workshop Mikael Linden,
Updates Licia Florio, TERENA REFEDS Meeting 5 Sept 2012.
EduGAIN – Are we there yet? Lukas Hämmerle (ghost writer, Brook Schofield) FIM4R, Helsinki – 2 October 2013.
Step-up Authentication as-a Service Pieter van der Meulen Technical Product Manager.
Europe Latin America Collaborative e ‑ Infrastructure for Research Activities A Model for Federated Services Brook Schofield, TERENA ● Sofia, Bulgaria.
Innovation through participation eduGAIN federation operator training eduGAIN policy eduGAIN training in Vienna Oct 2011
SWITCHaai Team Federated Identity Management.
Co-ordination & Harmonisation of Advanced e-Infrastructures for Research and Education Data Sharing Research Infrastructures Grant Agreement n
John Dyer Business & Technology Strategist TERENA Business & Technology Strategist December 2013 European NRENs Evolution.
Innovation through participation Interfederation through eduGAIN - steps and challenges eduGAIN interfederation service Federated Identity Systems.
AARC Overview Licia Florio, David Groep 21 Jan 2015 presented by David Groep, Nikhef.
Federated Identity Management for HEP David Kelsey WLCG GDB 9 May 2012.
Innovation through participation Business Case of eduGAIN, (T3) in Multi-Domain User Applications (SA3) Valter Nordh, NORDUnet / GU TNC 2010, Vilnius,
Updates Licia Florio, TERENA REFEDS Meeting 5 Sept 2012.
ELCIRA WP5 Architectural design for services integration.
FIM, , Nijmegen CLARIN: status of FIM Dieter Van Uytvanck 1.
Kalmar Union, a Conferedation of Nordic Identity Federations TNC2009 Mikael Linden, CSC Andreas Solberg, UNINETT.
Connect. Communicate. Collaborate eduGAIN in Real Life! Ajay Daryanani, RedIRIS TERENA Networking Conference Brugge, 20th May 2008.
Introduction Moonshot workshop
European Life Sciences Infrastructure for Biological Information Life science community update for the 7 th Federated Identity Management.
SURFfederatie & SURFconext Federated identity system for scientific collaborations 9-10 June 2011 CERN Remco Poortinga – van Wijnen*, SURFnet
Kalmar Union lessons: Findings in federation harmonisation REFEDS Mikael Linden, CSC.
Géant-TrustBroker project overview Slides assembled by the Géant-TrustBroker team at Leibniz Supercomputing Centre, Germany for a short presentation by.
OIX initiative, US only? Mapping Swedish Academic Identity Federation 2.0 Policy Framework to Open Identity Exchange (OIX) Trust Framework Provider Assessment.
INTRODUCTION: THE FIRST TRY InCommon eduGAIN Policy and Community Working Group.
Innovation through participation eduGAIN interfederation service for research and education Cern FedID workshop in RAL, UK 2-3 Nov 2011 Mikael Linden,
Federation as a Service Marina Vermezović, AMRES Federated Identity Technology Workshop Sofia, Bulgaria, 20. Jun 2014.
Authentication and Authorisation for Research and Collaboration Licia Florio AARC Workshop The AARC Project Brussels, 26 October.
Innovation through participation eduGAIN policy: A worm report TF-EMC2 Vienna Mikael Linden, CSC The worm farmer.
Authentication and Authorisation for Research and Collaboration Michał Jankowski, Maciej Brzeźniak AARC General Meeting, Milan.
Federated Identity Management for HEP David Kelsey HEPiX, IHEP Beijing 18 Oct 2012.
Clain update TF-EMC Mikael Linden, CSC.
Connect. Communicate. Collaborate Deploying Authorization Mechanisms for Federated Services in the eduroam architecture (DAMe)* Antonio F. Gómez-Skarmeta.
Innovation through participation eduGAIN update TF-EMC2 Vienna Valter Nordh, NORDUnet / GU Josh Howlett, JANET.
Innovation through participation EduGAIN policy (working draft) Status update REFEDs 30th May 2010
Connect communicate collaborate Trust & Identity EC meets GÉANT 19 June 2014 Brussels Valter Nordh, NORDUnet Federation as a Service Task Leader Trust.
Innovation through participation Expectations on eduGAIN and next steps Valter Nordh, NORDUnet / GU 1.
Networks ∙ Services ∙ People Nicole Harris UK federation meeting eduGAIN, REFEDS and the UK 23 June 2015 Project Development Officer GÉANT.
Networks ∙ Services ∙ People Marina Adomeit FIM4R meeting Virtual Organisation Platform as a Service VOPaaS Nov 30, 2015, Austria Task Leader,
REFEDs Wiki A test-bed for cross-federation practices ? Firstname Lastname Job title
Federated Identity Fundamentals Ann Harding, SWITCH Cambridge July 2014.
AAI needs of the Distributed Computing Infrastructures - CLARIN Dieter Van Uytvanck Max Planck Institute for Psycholinguistics
Licia Florio Poznan, 5 June SCS Proposal Investigates the possibility to set up a service that offers popup-free cheap server-certificates against.
David Groep Nikhef Amsterdam PDP & Grid AARC Authentication and Authorisation for Research and Collaboration an impression of the road ahead.
Networks ∙ Services ∙ People Licia Florio TNC, Lisbon Consuming identities across e- Infrastructures 16 June 2015 PDO GÈANT.
Networks ∙ Services ∙ People Marina Adomeit TNC16 Conference, Prague Towards a platform for supporting collaboration GÉANT VOPaaS
Authentication and Authorisation for Research and Collaboration AARC/CORBEL Workshop for Life Sciences AAI AARC Draft Blueprint.
Authentication and Authorisation for Research and Collaboration Taipei - Taiwan Mechanisms of Interfederation 13th March 2016 Alessandra.
Authentication and Authorisation for Research and Collaboration Licia Florio IGTF Meeting The AARC Project Amsterdam, 8 September.
Innovation through participation Data Protection Code of Conduct (DP CoC) TNC2013 conference, 4 June 2013 Mikael Linden, CSC – IT Center for Science
International Growth of Federations & eduGAIN
eduTEAMS platform for collaboration Niels Van Dijk
eduTEAMS – Current status & Future Plans
Identity Federations - Overview
Géant-TrustBroker Dynamic inter-federation identity management
TF-EMC2 - eduGAIN update
GÉANT 4-2 JRA3 T1 Something with Federations and Campus VC
CLARIN Federated Identity Vision
An AAI solution for collaborations at scale
Europe Latin America Collaborative e‑Infrastructure for Research Activities Status of Latin American AAI Brook Schofield, TERENA ● CHAIN-REDS TNC2013.
ESA Single Sign On (SSO) and Federated Identity Management
EduTEAMS at a Glance Mandeep Saini Linz, Austria 30 May 2017.
Multi-Domain User Applications Research (JRA3)
AAI Architectures – current and future
GN2 JRA5 Roaming and Authorisation Jürgen Rauschenbach, DFN-Verein
Presentation transcript:

Innovation through participation eduGAIN as a service (T3) in Multi-Domain User Applications (SA3) Valter Nordh, NORDUnet / GU NORDUnet conference, Köpenhamn, 16 Sep 2009

Innovation through participation NORDUnet - eduGAIN Welcome and introduction Agenda Basics of federations What is eduGAIN eduGAIN workforce, overview Business Case and Service Description Use case selected Policy issues MDS - State of Affairs Q&A

Innovation through participation Basics of federations What is a federation and what are the benefits? Identity Providers (IdP) and Service Providers (SP) connected Existing federations differ in many ways, technical, policy, target users etc Most federations today connect using SAML Web Single Sign-on (WebSSO) is a strong driver in federations How much does an e-id cost to maintain/year?

Innovation through participation Basics of federations A federation simplifies the authentication process, but not necessarily the authorization-process Two options for federations (simplified): A federation should by default offer attributes that the SP can use to take decisions (mostly authorisation decisions) A federation should only connect IdP and SP and leave all question about attributes to some one else (most often SP)

Innovation through participation What is eduGAIN eduGAIN started in GN2, under JRA5 and a pilot installation is running During GN3 eduGAIN will focus on transition to a service eduGAIN aims to connect federations in Europe The more the merrier! eduGAIN will initially restrict itself to WebSSO-support eduGAIN will evolve over the coming years eduGAIN does not aim for total attribute harmonisation!

Innovation through participation eduGAIN workforce, overview Valter Nordh, NORDUnet / SUNET / GU, Task leader Juergen Rauschenbach, DFN, edugain-development Mikael Linden, CSC, Policy issues Support / information, TERENA, Brook Schofield Operations? Josh Howlett, JANET, Activity leader for SA3 Licia Florio, TERENA, Activity leader JRA3

Innovation through participation eduGAIN workforce, overview SA3-T3, contribution from NRENS TERENA 1 BS AMRES 2 MV, ES, MR CARNET 1.0 MM, DV CESNET 1.2 IN CYNET 0.8 AT NIIFI 1.0 KrB?, TF, AL, JaM? NORDUNET 4.3 VN,LJ, MiL?, LK, AnL? ( ~22%) PIONIER 3.5 LD, WoB?, TW, MW, ZO REDIRIS 1.6 CR, AD, JP, OC, GL, AS SURFNET 1.0 ?? SWITCH0.7 LH, TL DFN 0.8 JR, TK?

Innovation through participation Next step in eduGAIN Five use cases have been selected. eduGAIN aims to focus on these (but not excluding others!) and build the first eduGAIN on top of these CLARIN Eduroam OTRS Wiki.edugain.org New wiki for GEANT3 (Microsoft Sharepoint) Foodle ->eduGAIN will initially only support webSSO

Innovation through participation Policy issues for eduGAIN (some) IdPs: higher education and research only? SPs: higher education and research only? eduGAIN participants; who may join? Is data protection in or out of scope for eduGAIN? Is it allowed to pass personally identifying information (PII) in eduGAIN? The unique identifier in Europe? trademarks and domain names: who registers and controls them?

Innovation through participation MDS - State of Affairs MDS, Metadata Distribution Service Used on a technical level do distribute the involved metadata. This is expected to develop under GN3 life with input from JRA3

Innovation through participation Goal of this meeting, review Get input on eduGAIN and present basic eduGAIN challanges Demonstrate Business Case and Service Description Show use cases Get an understanding of policy and legal aspects of (inter) federations See where we are regarding the MDS work Questions