PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer USER ACCESS IRUVX /WP2 + ESRFUP /WP9 PanDATA Meeting/ DESY June 18/
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer WP2/Access ToC Current situation Proposal Next steps
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer WP2/Access Current situation Unsatisfactory for users o no synchronization between facilities o annoying double work Unsatisfactory for facilities o double work; development of very similar functionalities o staffing subcritical Bad view for the outside world o chaotic, no common goal, no common message
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer WP2/Access Actual Issues actually 2 main issues within IRUVX/WP2 Umbrella concept EU-unified access system > FEL users as prototype > if successful: general tool photon and neutron users 3 A EU-unified user identification
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer WP2/Access Umbrella concept User aspect Common proposal portal Harmonized proposal format (cross-submission) Coaching (structured user support) Not another Digital User Office Facility aspect No new bureaucratic monster, keep existing goodies Minimum additional computing load
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer The Umbrella Concept User UOffice2UOffice1UOffice3 WP2/Access Umbrella concept
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer WP2/Access Coaching The Coaching Sequence User Produces within the VUO a Letter of Intent (LoI) based upon a template User Writes proposal based upon coach feedback Coordinator Forwards the LoI to one of the coaches Coach Feedback to user (max. 2 iterations
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer WP2/Access 3 A Web access to facility resources Three 3 A Components Authentication: Who are you Authorisation What are you allowed to do Accounting Real work UniversalLocal
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer User AAAAAA AAAAAA A AAAAAA A A A A uthentication A uthorization A ccounting A uthentication A uthorization A ccounting A uthentication Separate Single Sign On (e.g. Yale CAS) Single Sign On (e.g. Yale CAS) Common User Access Control UOffice2 UOffice1 UOffice3 A uthorization A ccounting A uthorization A ccounting
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer WP2/Access 3 A cont. Similar task within ESRF/ WP9 Avoid duplication Authentication well-defined module module development: lead by ESRFUP implementation into existing UO‘s IRUVX/ESRFUP IRUVX as prototype Regular sync meetings (2/y?)
PanDATA Meeting DESY, June 18/ , WP2/Access O. Schwarzkopf, H.J. Weyer 3 A / Authentication Find the optimum techniques on the - market (Shibboleth, Open ID, Yale-CAS…) proposal Agreement by participants Development of prototype Umbrella concept Analyze what to be done with existing UO’s; consultation - with software responsibles Agreement by participants Development of prototype WP2/Access Next steps