Presentation is loading. Please wait.

Presentation is loading. Please wait.

A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network.

Similar presentations


Presentation on theme: "A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network."— Presentation transcript:

1 A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network to application Michael R Gettes Internet2 August 2007 An interpretation of the original MACE mission

2 VO?

3 Inter-Enterprise Workgroup Collaborations not sexy

4 or C ollaborative O rganizations CO

5 Identity Groups Privileges Federated Access

6 and … Applications

7 Give COntrol To COmmunity Members

8 Integrate with Existing COmmon IT Infrastructures in Higher Education

9 Flexible Scalable Modular

10 COmponents S H I B B O L E T H LDAP-PC Signet Grouper LDAP Directory Identity Mgr Applications & Network COCO

11 stop talking start walking demo COmanage.internet2.edu

12 COmponents S H I B B O L E T H LDAP-PC Signet Grouper LDAP Directory Identity Mgr Applications & Network COCO

13 Comanage … is only a demonstration of the CO model a CO fits within a service delivery presentation

14 Stuff stored in Directories (everybody has one) Priv/Group data more accessible Allows for easy CO integration

15 Application Management App Access to data is managed by LDAP (initially) Identity data can be distributed by any desired mechanism in the future. SQL databases, feeds, message bus technologies.

16 Uses Shibboleth Federating technology Promotes InCOmmon Federation Might use other technologies OpenID?

17 Truth be told… LDAP-PC Large-Scale Performance and namespaces SIGNET Minor UI and Deployment GROUPER Some UI and Large-scale Performance SIGNET only immediate concern

18 Many COs on a single server ________ No local identity issued for external users to access CO services big win!

19 Signet/Grouper COmplexity A Service Opportunity? Middleware Service Provider (MSP) May also be locally deployed by HE institutions

20 Future… Protect CO by IdP can solve “IEEE problem”? Begin addressing issues of “attribute eCOnomy”

21 Network Layer? Why not? Integrate with Grids? Why not? Addresses VO scenarios? Why not?

22 V O VO? CO

23 done Talk amongst yourselves


Download ppt "A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network."

Similar presentations


Ads by Google