Collaboration and Federated Identity Two powerful forces being leveraged – the rise of federated identity – the bloom in collaboration tools, most particularly.

Slides:



Advertisements
Similar presentations
The Basics of Federated Identity. Overview of Federated Identity and Grids Workshop Session 1 - for all Basics and GridShib Session 2 – more for developers.
Advertisements

PERSEUS : Portal-enabled Resources via Shibbolized End-user Security 16 May 2005JISC Core Middleware Programme Meeting, Loughborough 1 PERSEUS Project.
The Internet2 NET+ Services Program Jerry Grochow Interim Vice President CSG January, 2012.
Hydra Partners Meeting March 2012 Bill Branan DuraCloud Technical Lead.
Manifest – the Service Application Manifest is our new service, with Grouper as its logic engine, to manage populations which are known to us and those.
Internet2 and other US WMD Update. Topics Update on non-merger, Newnet (and the control plane), InCommon and other feds “Product” update – Shib, Grouper,
Drive-By Dialogues. Presenter’s Name Topics The Long Strange Trip of I2 – NLR Merger A Brief Comment on Optical Networking Middleware Developments Security.
A Middleware Unified Field Theory Identity Management / Directories Privileges / Groups Single Sign-On / Federation Enterprise Integration from network.
Internet Scale Identity, Collaboration and Higher Education.
Fed-Ed Dec 08: Updates on Federations Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist, University of Colorado at.
Widely Distributed Access Management Tom Barton University of Chicago.
What is Asset Bank? Asset Bank is an enterprise-scale Digital Asset Management system A fully searchable, categorised library of digital images, videos.
Presenter’s Name InCommon Approximately 80 members and growing steadily More than two million “users” Most of the major research institutions (MIT joining.
“Liferay Portal has captured the strengths of the Java platform — security, maintainability and cross- platform capability — in a relatively lightweight.
IPlant Collaborative Tools and Services Workshop iPlant Collaborative Tools and Services Workshop Overview of Atmosphere.
New CyberInfrastructure for Collaboration between Higher Ed and NIH.
Intro to Identity for Developers Tom Barton, U Chicago Scott Cantor, Ohio State Patrick Michaud, U Washington.
SAKAI February What is SAKAI? Sakai ≠ Course Management System Sakai = Collaboration & Learning Environment.
Customized cloud platform for computing on your terms !
Stuff Ken Klingenstein. Stuff sack InCommon Stuff Infocard, Open Id, etc… Federation soup Cormack slides on EU (and US) privacy International.
Accelerating Events in Internet Identity and Privacy Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist, University.
BfB: Supporting Collaboration with Infrastructure.
External Identity and Authorization in GENI. Topics Federated identity and virtual organizations ABAC Creating and transporting attributes.
11-July-2011, SURFnet Heather Flanagan, COmanage Project Coordinator Benn Oshrin, COmanage Developer Scott Koranda, U. Wisconsin – Milwaukee and LIGO.
Gee, I could have had a VO: Cloud- based COmanage Chris Hubing and Jim Leous.
Internet2 – InCommon and Box Marla Meehl Colorado CIO 11/1/11.
IPlant Collaborative Tools and Services Workshop iPlant Collaborative Tools and Services Workshop Overview of Atmosphere.
Federated Identity and the International Research Community Dr Ken Klingenstein Director, Internet2 Middleware and Security.
VO and Internet2 Middleware. Presenter’s Name Topics Motivations for Internet2 Middleware work Federated identity and InCommon Other IdM Groups, privileges,
Portal for ArcGIS An Introduction
NSF Middleware Initiative Renee Woodten Frost Assistant Director, Middleware Initiatives Internet2 NSF Middleware Initiative.
Running List of Comanage Framework Stuff. Parked issues Discussion of how to share the work of domesticating apps - real important to do soon, but the.
Applications Through a PrivacyLens: Overview Deck “what you release is who you are”
2009 Federal IT Summit Cloud Computing Breakout October 28, 2009.
Social Identity Working Group Steve Carmody. Agenda Intro to Using Social Accounts Status and Recent News –Current UT Pilot –Current InCommon Pilot with.
Collaborative Platforms. Collaborations and Virtual Organizations IdM is a critical dimension of collaboration, crossing many applications.
COmanage and InCommon: Present and Future Activities and Interactions Heather Flanagan, COmanage Project Coordinator, Internet2.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
Stanford Authorization Existing mainframe based authority –homegrown, in operation since the 80’s –primarily for financial and personnel authority for.
Virtual organizations: Team Science, Team Shakespeare.
Taking Care of Our Core Business: Managing Collaborations Dr. Ken Klingenstein, Senior Director, Internet2 Middleware and Security.
Introducing the new Office Fast and fluid experience with touch, pen, mouse & keyboard Immersive touch-optimized Windows 8 store apps Support for.
DuraCloud Open technologies and services for managing durable data in the cloud Michele Kimpton, CBO DuraSpace.
1 AHM, 2–4 Sept 2003 e-Science Centre GRID Authorization Framework for CCLRC Data Portal Ananta Manandhar.
University of Washington Collaboration: Identity and Access Management Lori Stevens University of Washington October 2007.
~60 staff 1.Collaborators around the world 2.Supports communities of collaborators external to Internet2 3.Community uses wiki, mailing lists, instant.
Federated Identity in the Global Landscape. Presenter’s Name Topics Federated identity basics International deployments and issues National, local and.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Evolution of AAI for e- infrastructures Peter Solagna Senior Operations Manager.
INTRODUCTION TO IDENTITY FEDERATIONS Heather Flanagan, NSRC.
SMXL: Tailoring Technology to Collaboration. SMXL FAQ Is SMXL a new web scripting language? No, it is the art of tailoring IdM and access.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI Enabling SSO capabilities in the EGI Cloud services Peter Solagna – EGI.eu.
Short Customer Presentation September The Company  Storgrid delivers a secure software platform for creating secure file sync and sharing solutions.
IPlant Collaborative Tools and Services Workshop iPlant Collaborative Tools and Services Workshop Overview of Atmosphere.
Azure Active Directory Uday Hegde 2016 Redmond Summit | Identity Without Boundaries May 26, 2016 Group Program Manager, Azure AD
Agenda  What is Cloud Computing?  Milestone of Cloud Computing  Common Attributes of Cloud Computing  Cloud Service Layers  Cloud Implementation.
COmanage: Vision & Strategy July 2010, COmanage Dev Call.
Overview SPIRE project: Looking at the feasibility of P2P in UK higher education Focused on Penn States open source P2P system ‘LionShare’ which is a heavily.
LIGO Identity and Access Management
Introducing Access Management
Tools and Services Workshop Overview of Atmosphere
ESA Single Sign On (SSO) and Federated Identity Management
The Future of Indoor Plumbing
Fed-Ed Dec 08: Updates on Federations
Context, Gaps and Challenges
SAKAI February 2005.
Guests and Collaborators
A History of the Next Five Years: (the rise of indoor plumbing)
Virtual organizations: Team Science, Team Shakespeare
Storing and Accessing G-OnRamp’s Assembly Hubs outside of Galaxy
NSF Middleware Initiative: GridShib
Presentation transcript:

Collaboration and Federated Identity Two powerful forces being leveraged – the rise of federated identity – the bloom in collaboration tools, most particularly in the Web 2.0 space but including file shares, list procs, etc Collaboration management platforms provide easy to use identity services and “domesticated” applications that have externalized their identity management dimensions, using a general identity/group/privilege/etc repository (LDAP, MySQL, etc.) Results in user and collaboration centric identity, not tool-based identity COmanage is a collaboration management platform, supported in part by a NSF OCI grant, being developed by the Internet2 community, with Stanford as a lead institution

COmanage can provide authentication and basic authorization services (group membership, privilege management, etc) to domesticated apps Domesticated applications currently include wiki, listproc, Jira, Subversion, Al Fresco. Plan to add audioconferencing, IM and chat rooms, EC2, Fedora, web-based file share, etc. Can be launched as an image in the Amazon cloud. Not “collaboration in a box”. More collaboration in a fully permeable membrane. The “stand-alone” can be readily replumbed to be completely integrated into enterprise, federated or other attribute ecosystems as they develop Uses Shibboleth and Grouper and…

Domestication A continuum of “training” applications to use the emergent identity services infrastructure Begins with federated identity and authentication, use of directories Gains a quantum from group management for access control, etc Needs a fine grain set of authorization tools down the road

Comanage deployment models By a VO At the enterprise level for inter-institutional collaborations By a VO service center or federation In the cloud

Comanage growth dimensions In the number of applications domesticated In the degree of domestication of specific applications In the externalized capabilities that Comanage supports – e.g. privileges, diagnostics, etc. In the human interface In the ability to participate with other Comanage instances and the attribute eosystem

Comanage development model Open source, open license Alpha release imminent Build a developer community Beta release this summer Engagement with application developers Releases have funky animal names, reflecting differences versus upgrades…

User interface Two levels – presentation and mental maps – Presentation – accommodating disabilities, multilingual and multicultural requirements – Mental maps – helping navigate between roles, privileges Very early in both dimensions Engagement with Fluid

Helping users to manage the metadata of collaboration Structuring roles, privileges and access management in virtual organizations Metadata across tools - tagging Metadata across content Archiving and provenance