Federations 101: The U.T. System Identity Management Federation Internet2 Member Meeting Fall 2006 Paul Caskey.

Slides:



Advertisements
Similar presentations
Pennsylvania Banner Users Group 2008 Fall Conference Campus Identity Management in a Banner World.
Advertisements

A comprehensive plan complied by Ms. Concetta DAlessio, Mr. Thomas Gelok, & Ms. Meghan Kilfeather of the University at Buffalo. DAlessio, Gelok, Kilfeather.
How Identity and Access Management Can Help Your Institution Touch Its Toes Renee Woodten Frost Internet2 and University of Michigan Kevin Morooney The.
Paul Caskey Technology Architect June 21, 2007 The University of Texas System Federated Identity Management Initiative
Trends in Identity Management Nate Klingenstein Internet2 EDUCAUSE Security Professional 2007.
A Blueprint for Louisiana’s “Financial Cliff” Year Creating the State We Deserve.
BUSINESS PROCESS IMPROVEMENT INITIATIVES Chad Cleveland June 18, 2014 BAAF Meeting.
Starting Your Roadmap: Concepts and Terms Paul Caskey, The University of Texas System Copyright Paul Caskey This work is the intellectual property.
Interfederation subgroup of InCommon Technical Advisory Committee (TAC) spaces.internet2.edu/display/incinterfed.
Federations in Texas Barry Ribbeck University of Texas Health Science Center at Houston.
Federated Identity Management for Research Communities (FIM4R) David Kelsey (STFC-RAL) EGI TF, AAI workshop 19 Sep 2012.
1 Issues in federated identity management Sandy Shaw EDINA IASSIST May 2005, Edinburgh.
Click to edit Master title style OASIS PKI Workshop.
Identity Management: Some Basics Mark Crase, California State University Office of the Chancellor CENIC - March 9, 2011.
Federated Identity, Levels of Assurance, and the InCommon Silver Certification Jim Green Identity Management Academic Technology Services © Michigan State.
Agenda Project beginnings and funding. Purpose of the federation. Federation members. Federation protocols. Special features in our federation. Pilot.
Information Resources and Communications University of California, Office of the President Current Identity Management Initiatives at UC & Beyond: UCTrust.
Information Resources and Communications University of California, Office of the President UCTrust Implementation Experiences David Walker, UCOP Albert.
The Business of Identity Management Barry R. Ribbeck Director Systems Architecture & Infrastructure Rice University
1 Governance in Identity Management Federations Clair Goldsmith, Ph.D. The University of Texas System Administration.
Operational efficiency 20 November Contents Background –Approach –Context Initiatives Results.
Acquiring Public Funding. What is public funding? Public funding is funding that comes from the public treasury, used as the funding of health, human.
Promoting Objectivity in Research by Managing, Reducing, or Eliminating Conflicts of Interest UT HOP UT HOP The University of Texas at Austin.
1 Leveraging Your Existing Campus Systems to Access Resource Partners: Federated Identity Management and Tales of Campus Participation Clair Goldsmith,
NMI-EDIT Outreach: The first five years. Topics for Today  NMI-EDIT background  Activities  Outcomes  Resources.
FIM-ig Federated Identity Management Interest Group.
SWITCHaai Team Federated Identity Management.
To identity federation and beyond! Josh Howlett JANET(UK) HEAnet 2008.
InCommon Michigan State Common Solutions Group, January 2011 Matt Kolb
A case study of Shibboleth deployment within the U.T. System June 26, 2006 Paul Caskey University of Texas System Copyright Paul Caskey 2006 Not Your Father’s.
The InCommon Federation The U.S. Access and Identity Management Federation
Identity Management Practical Issues Associated with Sharing Federated Services UT System Identity Management Federation William A. Weems The University.
Exploring InCommon Getting Started with InCommon: Creating Your Roadmap.
Establishing A Compliance Program: It Makes Sense
ADFS in the U.T. System U.S. Federations Call - May 18, 2011 Paul Caskey System-wide Information Services.
Australian Access Federation and other Middleware Initiatives Presented at TF-EMC2, Prague 4 Sep 2007 Patty McMillan, The University of Queensland.
Federated Identity Management for HEP David Kelsey WLCG GDB 9 May 2012.
Elements of Trust Framework for Cyber Identity & Access Services CYBER TRUST FRAMEWORK Service Agreement Trust Framework Provider Identity Providers Credential.
Hans P. L’Orange State Higher Education Executive Officers October 20, 2009.
The Life of a Policy Council Member
FEDERATIONS Clair Goldsmith, Ph.D., Associate Vice Chancellor and CIO September 27,
Integrated Institutional Identity Infrastructure: Implications and Impacts RL “Bob” Morgan University of Washington Internet2 Member Meeting, May 2005.
Policy on Formation and Review of Academic Centers and Institutes Supersedes PS 98-10: Policy on Units Organized to Promote Research, Service, and Instruction.
OIX initiative, US only? Mapping Swedish Academic Identity Federation 2.0 Policy Framework to Open Identity Exchange (OIX) Trust Framework Provider Assessment.
Test your IdP
Identity Federations and the U.S. E-Authentication Architecture Peter Alterman, Ph.D. Assistant CIO, E-Authentication National Institutes of Health.
Intra- to Inter-institutional Use of Shibboleth Bruce Vincent, Stanford University June 28, 2006.
Authentication and Authorisation for Research and Collaboration Christos Kanellopoulos GRNET Proposed Pilots for Libraries and eGov.
Federated Identity in Texas Paul Caskey The University of Texas System HEAnet National Conference Kilkenny, Ireland 13 November 2008.
University of Washington Collaboration: Identity and Access Management Lori Stevens University of Washington October 2007.
Growth. Interfederation PKI is globally scalable Unfortunately, its not locally deployable… Federation is locally deployable Can it.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evolution of AAI for e- infrastructures Peter Solagna Senior Operations Manager.
Bringing it All Together: Charting Your Roadmap CAMP: Charting Your Authentication Roadmap February 8, 2007 Paul Caskey Copyright Paul Caskey This.
NMI-EDIT and Rice University Federated Identity Management: Managing Access to Resources in Texas Barry Ribbeck Director System Architecture and Infrastructure.
InCommon Federation: Federating Relationships. Topics Administration Library Research Student Services Personal and Collaborative Applications Federal.
Introduction to Shibboleth Attribute Delivery for Campuses New to Shibboleth Paul Caskey The University of Texas System.
Networks ∙ Services ∙ People Andrea Biancini #TNC15, Porto, Portugal Implementing Grouper to federate user authorization Federated Authorization.
INFORMATION ASSURANCE POLICY. Information Assurance Information operations that protect and defend information and information systems by ensuring their.
2013/14 Annual Report Briefing for the Portfolio Committee On Higher Education and Training 5 November 2014.
JOINT BUDGET COMMITTEE MEETING SOCIAL ASSISTANCE 19 NOVEMBER 2003.
University of Texas System
John O’Keefe Director of Academic Technology & Network Services
Privacy, Security, and Identity Management Update
A Business Case for Identity Management in Higher Education
U.T. System Federated Identity Management Update
NGEC Annual Meeting Washington, DC February 21, 2014
INDEPENDENT POLICE INVESTIGATIVE DIRECTORATE
Seminar on Environmental Audit
Overview of The U.T. System Identity Management Federation
Presentation transcript:

Federations 101: The U.T. System Identity Management Federation Internet2 Member Meeting Fall 2006 Paul Caskey

Agenda Background What have we done? How did we do it? Why did we do it? How do we govern it? What does the future hold?

Background 16 Institutions  9 academic  6 health  1 System Administration 16 unique organizations, budgets, problems, ideas Drivers for change:  Collaboration  Shared Services  Compliance  Reduced sign-on

What have we done? Established the U.T. System Identity Management Federation  16 UT institutions  Federation and Member (IdP and SP) policies  Shibboleth/SAML  VeriSign PKI

How did we do it? IdM Statement of Direction NMI-EDIT “Extending The Reach” grant Shibboleth IdP InstallFest and SP Fest (a year later) Shibb’d some low-risk apps (guest wireless, financial reporting) Now have about 10 apps, including student couponing, legal tracking, research tracking, collaborative funding, and more) Currently in production, but still a long way to go

Why did we do it? We felt it best to address IdM on an administrative boundary - could happen quicker if we do it within the system. We had an established organizational and governance structure throughout UT System and wanted to use it for IdM We want to strive for providing infrastructure and policy to meet higher LoAs throughout UT System

How do we govern it? UT Federation Executive Committee UT System Office of Internal Audit Institutional Internal Audit offices Technical and Policy committees Student project :)

What does the future hold? Maturity (policy revisions, support models, VOs, etc) Higher LoAs More apps (and more important ones) Inter-federation (TIGRE, HAM-TMC, TDL, etc.)

Thank you!