SSO current status 10/6/10 Area Director’s call. Easy as 1-2-3! Fully diagrammed login and certificate set-up process, pre- Single Sign-on You can see.

Slides:



Advertisements
Similar presentations
MFA for Business Banking – Security Code Multifactor Authentication: Quick Tip Sheets Note to Financial Institutions: We are providing these QT sheets.
Advertisements

User Services Transition To XD TG Quarterly Management Meeting, San Juan 12/7/2010 Amit & Sergiu.
WINDOWS 7 AND SOME THOUGHTS ABOUT WINDOWS LIVE MAIL.
Google chrome operating system
FSA ID TRANSITION Ditch the PIN. WHAT IS THE NEW FSA ID AND PASSWORD? U.S. Department of Education has a new login process beginning April 26 th for student-
CSC 160 Computer Programming for Non-Majors Lecture #7: Variables Revisited Prof. Adam M. Wittenstein
Banesto Easy SET Project Julián Inza Technological Strategy Director 6th of July, 2,000 víspera de San Fermín.
Presented by: BACC B enefits A ccess for C ollege C ompletion Sarah Young, Success Coach
Binary Arithmetic Math For Computers.
TG QM Arlington: GIG User Support Coordination Plan Sergiu Sanielevici, GIG Area Director for User Support Coordination
1.When a job comes in office it goes to Customer Service 2.If you are sending in a payment whether the job is in house or on it’s way, it comes to Customer.
Network, Operations and Security Area Tony Rimovsky NOS Area Director
Introduction to UNIX/Linux Exercises Dan Stanzione.
Week 14 - Monday.  What did we talk about last time?  Image manipulation  Inheritance.
DIRECT CERTIFICATION Patricia Winders Director’s Conference July 29, 2015.
+ Working in Your CCE Online Course Site. + Structure of CCE Online Course Sites CCE online courses use the document sharing and collaboration features.
Scaling Account Creation and Management through the TeraGrid User Portal Contact: Eric Roberts
BitTorrent How it applies to networking. What is BitTorrent P2P file sharing protocol Allows users to distribute large amounts of data without placing.
Page 1 Login Security Usability Test Results | August 2014 Login Security Usability Test Results Conducted by Jayne Schurick Usability Consultant
XSEDE14 Reproducibility Workshop: Reproducibility in Large Scale Computing – Where do we stand Mark R. Fahey, NICS Robert McLay, TACC XSEDE14 - Reproducibility.
Integrating with UCSF’s Shibboleth system
© 2008 Pittsburgh Supercomputing Center So you have a TeraGrid Allocation What now?
Day16 Protocols. TCP “Transmission Control Protocol” –Connection oriented Very like a phone call, an actual connection is made between the 2 parties.
Potential Members go to our micro sites via the edm mail. User will be forwarded to Paypal payment gateway with security access. Fill in credit card info,
© 2008 Pittsburgh Supercomputing Center So you have a TeraGrid Allocation What now?
NETWORK OPERATING SYSTEM INTEROPERABILITY Jason Looney EKU, Department of Technology, CEN.
TeraGrid Privacy Policy: What is it and why are we doing it… Von Welch TeraGrid Quarterly Meeting March 6, 2008.
DIY: Strategies for Increasing Usage of Self-Help Support Resources Christine Doherty, Stanford University Ida Wellner, Stockholm University Trisha Gordon,
Doc.: IEEE /0058r0 Submission January 2008 Harry Worstell, AT&TSlide 1 Opening Network Information, Attendance and Documentation for January 2008.
MA 1128: Lecture 17 – 6/17/15 Adding Radicals Radical Equations.
Obtaining Computer Allocations and Monitoring Use SCD User Meeting at AMS January 11, 2005 Ginger Caldwell, SCD.
Single Sign-On across Web Services Ernest Artiaga CERN - OpenLab Security Workshop – April 2004.
Algebra Simplifying and collecting like terms. Before we get started! Believe it or not algebra is a fairly easy concept to deal with – you just need.
Leveraging the InCommon Federation to access the NSF TeraGrid Jim Basney Senior Research Scientist National Center for Supercomputing Applications University.
TeraGrid Extension Gateway Activities Nancy Wilkins-Diehr TeraGrid Quarterly, September 24-25, 2009 The Extension Proposal!
Da Vinci presents:. What is ? echo is a web portal where assignments, discussions, grades, and resources can be found for your classes. To get started,
Week 14 - Monday.  What did we talk about last time?  Inheritance.
Flowcharts By: Carolina Suarez 10 c.
When it is appropriate to use and what are its advantages.
NOS Report Jeff Koerner Feb 10 TG Roundtable. Security-wg In Q a total of 11 user accounts and one login node were compromised. The Security team.
1 Day 2 Logging in, Passwords, Man, talk, write. 2 Logging in Unix is a multi user system –Many people can be using it at the same time. –Connections.
Testing External Survey Automatic Credit Granting Shepherd University Department of Psychology.
Network, Operations and Security Area Tony Rimovsky NOS Area Director
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. Agile Manger Beta Registration.
Numerical formats What’s the main idea? Want to represent numbers (eg: 45, -12, ) using only bits. We’ve already seen (or you can read in the book)
Gateway Security Summit, January 28-30, 2008 Welcome to the Gateway Security Summit Nancy Wilkins-Diehr Science Gateways Area Director.
Internet Flow By: Terry Hernandez. Getting from the customers computer onto the internet Internet Browser
Initiating Teragrid Sessions Raghu Reddy. Outline Motivation Initial Setup –Certificates –Proxies –Grid-map file entries and DNs Softenv for customizing.
Software Integration Highlights CY2008 Lee Liming, JP Navarro GIG Area Directors for Software Integration University of Chicago, Argonne National Laboratory.
There are 5 pull-down menus. Provide your affiliation : select E-1000 in the 1 st pull-down which asks for your experiment – it is there. Provide your.
There are 5 pull-down menus. Provide your affiliation : select E-1000 in the 1 st pull-down which asks for your experiment – it is there. Provide your.
Copyright © 2012 Pearson Education, Inc. or its affiliate(s). All rights reserved
Jens' obligatory soap box Can't be a PMA without a SoapBox A random collection of Soapy things Nicosia, Jan 2009.
Gateways security Aashish Sharma Security Engineer National Center for Supercomputing Applications (NCSA) University of Illinois at Urbana-Champaign.
Introduction to Web Authoring Bill Hart-Davidson AIM: billhd30 Session 21
TeraGrid User Portal and Online Presence David Hart, SDSC Area Director, User-Facing Projects and Core Services TeraGrid Annual Review April 6, 2009.
How to Claim Your Jennifer Maimone from Dual Crossroads
 Gmail is a free webmail service, developed by Google.  Gmail also supports advertising.  Users can access Gmail on the desktop, laptop or through.
QlikView Licensing.
Week 14 - Wednesday CS 121.
Multi-Factor Authentication (MFA)
Quicken Installation Problem Number More info :
FAFSA on the Web Preview Presentation
Introducing eCentral Seminar A guide on how to book on a course
CPD ITK and Single Sign On (SSO)
Fine-Tuning your plan and obtaining approval
Week 7 - Wednesday CS363.
The first time you login in to the upgraded system, please select ‘Forgotten your password?’ to reset your password before using the system.
Presentation transcript:

SSO current status 10/6/10 Area Director’s call

Easy as 1-2-3! Fully diagrammed login and certificate set-up process, pre- Single Sign-on You can see from the flow chart that things could potentially be easy. The most important thing I get from this in hindsight is that it was all exception driven. Flow chart, presented Jan, 2008 Impetus for SSO improvements

9/10 services-wg call Portal Single Sign On issue This usually doesn't work because the user doesn't exist on the system. Other times it is just a system issue [CRLs out of date etc]. This can happen in several scenarios. Sergiu has seen the following: 1.RP allocations: Sometimes accounts don't automatically get created on newer machines under RP allocations. I believe this is what happened in Nancy's case and in my case. Once we got added on the machines, single sign on worked fine. Error doesn’t indicate what needs to be done 2.User already has a portal account and allocations on some machines. A new machine gets added to his/her allocation. User gets approval notice from the allocations side. There is a lag between that and the account being created on the new machine. The users maybe unaware of this and try the SSO since they already have portal access. 3.RP site has an account activation process. I did this for TACC/Ranger/Lonestar but that was sometime ago. We can confirm w/ TACC folks if the process is the same now. 4.This is similar to (2). Sometimes the portal account gets mailed out to the user but the accounts on the machine itself are not setup. I know there is a turnaround period [5 days?] for RPs to create accounts but I don't know if the portal mail out waits for this [esp. if multiple sites are involved and some sites create the accounts in time].

Activation processes can cause confusion Notice about activation arrives before TG packet – Users think this is their TG SSO info This very thing happened to a new gateway developer in the last 2 weeks What if there were 11 different activation sites to go to? – Thought we tried to address this when we negotiated a single user responsibility form in 2003

So, what remains to be done? SSO is frequently touted as something that makes TG very easy to use This is often a user’s first impression of TG Need to lessen the number of scenarios where SSO doesn’t work or where steps cause more confusion – It really makes us look bad if this doesn’t work as advertised

support/login_quickstart support/login_quickstart Works for 17 systems – Doesn’t work for 9 support/site_passwords support/site_passwords

Paul’s 9/22 KB additions On the KB side, I added the NICS and TACC warnings to the following docs (using shorter IU URLs): – What's the recommended method for everyday access to the TeraGrid? ( – What is a TeraGrid-wide login? ( – On the TeraGrid, what is Single Sign-On? ( – Why do I get an authentication error after installing Single Sign-on capability on my Unix, Linux, or Mac OS X computer? ( – How do I get started using the TeraGrid? ( – What methods can I use to access TeraGrid resources? (