Context, Gaps and Challenges

Slides:



Advertisements
Similar presentations
The Basics of Federated Identity. Overview of Federated Identity and Grids Workshop Session 1 - for all Basics and GridShib Session 2 – more for developers.
Advertisements

The Art of Federations. Topics Federations of what… Federated identity versus federations Federations in other sectors – business, gov, ad hoc R&E Federations.
1 Leveraging Your Existing Campus Systems to Access Resource Partners: Federated Identity Management and Tales of Campus Participation EDUCAUSE 2006 October.
Going for the Silver Winter 2010 CSG January 13, 2010.
IAM Online Friday, February 12, 2010 “Introduction to Federated Identity Management” John O’Keefe, Lafayette College Questions either via Adobe Connect.
Federated Digital Rights Management Mairéad Martin The University of Tennessee TERENA General Assembly Meeting Prague, CZ October 24, 2002.
Internet2 and other US WMD Update. Topics Update on non-merger, Newnet (and the control plane), InCommon and other feds “Product” update – Shib, Grouper,
Drive-By Dialogues. Presenter’s Name Topics The Long Strange Trip of I2 – NLR Merger A Brief Comment on Optical Networking Middleware Developments Security.
InCommon and Federated Identity Management 1
National Center for Supercomputing Applications University of Illinois at Urbana-Champaign InCommon and TeraGrid Campus Champions Jim Basney
Welcome Acknowledgments and thanks Security Acronymny: then and now What’s working What’s proving hard.
The Business of Identity Management Barry R. Ribbeck Director Systems Architecture & Infrastructure Rice University
Presenter’s Name InCommon Approximately 80 members and growing steadily More than two million “users” Most of the major research institutions (MIT joining.
InCommon Policy Conference April Uses  In order to encourage and facilitate legal music programs, a number of universities have contracted with.
New CyberInfrastructure for Collaboration between Higher Ed and NIH.
A Robust Health Data Infrastructure P. Jon White, MD Director, Health IT Agency for Healthcare Research and Quality
Welcome to CAMP Identity Management Integration Workshop Ann West NMI-EDIT EDUCAUSE/Internet2.
FIM-ig Federated Identity Management Interest Group.
Use case: Federated Identity for Education (Feide) Identity collaboration and federation in Norwegian education Internet2 International Workshop, Chicago,
Intro to Identity for Developers Tom Barton, U Chicago Scott Cantor, Ohio State Patrick Michaud, U Washington.
The InCommon Federation The U.S. Access and Identity Management Federation
Updates on Internet Identity. Topics Consumer marketplace update The big consumer players – OIX - and the other big consumer players.
1 The Partnership Challenge Higher education’s missions are realized in increasingly global, collaborative, online relationships –Higher educations’ digital.
INTERNET2 COLLABORATIVE INNOVATION PROGRAM DEVELOPMENT Florence D. Hudson Senior Vice President and Chief Innovation.
11-July-2011, SURFnet Heather Flanagan, COmanage Project Coordinator Benn Oshrin, COmanage Developer Scott Koranda, U. Wisconsin – Milwaukee and LIGO.
National Center for Supercomputing Applications University of Illinois at Urbana-Champaign Secure Access to Research Infrastructure via the InCommon Federation.
Federated Identity and the International Research Community Dr Ken Klingenstein Director, Internet2 Middleware and Security.
Federated Identity Management for HEP David Kelsey WLCG GDB 9 May 2012.
Federated Identity: What It Brings to Open Government Dr Ken Klingenstein Director, Internet2 Middleware and Security.
Stuff, including interfederation stuff Dr Ken Klingenstein, Director, Middleware and Security, Internet2.
Middleware, Ten Years In: Vapority into Reality into Virtuality Dr. Ken Klingenstein, Senior Director, Middleware and Security, Internet2 Technologist,
NSF Middleware Initiative Renee Woodten Frost Assistant Director, Middleware Initiatives Internet2 NSF Middleware Initiative.
Collaborative Platforms. Collaborations and Virtual Organizations IdM is a critical dimension of collaboration, crossing many applications.
COmanage and InCommon: Present and Future Activities and Interactions Heather Flanagan, COmanage Project Coordinator, Internet2.
Federations 101 John Krienke Internet2 Fall 2006 Internet2 Member Meeting.
Taking Care of Our Core Business: Managing Collaborations Dr. Ken Klingenstein, Senior Director, Internet2 Middleware and Security.
Scared Straight… if you want to go outside… Authenticate Locally, Act Globally.
The InCommon Federation The U.S. Access and Identity Management Federation
INTRODUCTION: THE FIRST TRY InCommon eduGAIN Policy and Community Working Group.
GRID Overview Internet2 Member Meeting Spring 2003 Sandra Redman Information Technology and Systems Center and Information Technology Research Center National.
University of Washington Identity and Access Management IEEAF – RENU Network Design Workshop Seattle - 29 Nov 2007 Lori Stevens, Director, Distributed.
1 Support For Research & National Identity Snapshot Jim Leous, Penn State Ann West, Internet2/InCommon Federation.
Federated Identity Management for HEP David Kelsey HEPiX, IHEP Beijing 18 Oct 2012.
Welcome to Base CAMP: Enterprise Directory Deployment Ken Klingenstein, Director, Internet2 Middleware Initiative Copyright Ken Klingenstein This.
Federated Identity in the Global Landscape. Presenter’s Name Topics Federated identity basics International deployments and issues National, local and.
InCommon® for Collaboration Institute for Computer Policy and Law May 2005 Renee Shuey Penn State Andrea Beesing Cornell David Wasley Internet 2.
Growth. Interfederation PKI is globally scalable Unfortunately, its not locally deployable… Federation is locally deployable Can it.
INTRODUCTION: THE FIRST TRY InCommon eduGAIN Policy and Community Working Group.
Virtual Hearing of the Health IT Policy Committee Clinical, Technical, Organizational and Financial Barriers to Interoperability Task Force Friday, August.
InCommon Federation: Federating Relationships. Topics Administration Library Research Student Services Personal and Collaborative Applications Federal.
Networks ∙ Services ∙ People Marina Adomeit FIM4R meeting Virtual Organisation Platform as a Service VOPaaS Nov 30, 2015, Austria Task Leader,
INTRODUCTION TO IDENTITY FEDERATIONS Heather Flanagan, NSRC.
Internet identity: Forward in All Directions Dr Ken Klingenstein, Director, Middleware, Internet2.
Identity Management Systems for Collaborations and Virtual Organizations.
Networks ∙ Services ∙ People Marina Adomeit TNC16 Conference, Prague Towards a platform for supporting collaboration GÉANT VOPaaS
Federal Initiatives in IdM Dr. Peter Alterman Chair, Federal PKI Policy Authority.
THE CAMPUS IDENTITY SYSTEM Lucy Lynch, NSRC. Learning Objectives Discovering the key role campus networks play in trusted identities for R&E Authoritative.
Collaboration and Federated Identity Two powerful forces being leveraged – the rise of federated identity – the bloom in collaboration tools, most particularly.
Tom Barton, Senior Director for Integration, University of Chicago
Case studies on Authentication, Authorization and Audit in SOA Environments Dr. Srini Kankanahalli.
eduTEAMS platform for collaboration Niels Van Dijk
John O’Keefe Director of Academic Technology & Network Services
InCommon and Federated Identity Update
The Future of Indoor Plumbing
New CyberInfrastructure for Collaboration between Higher Ed and NIH
Mary Fran Yafchak Senior Program Manager, IT
BoF: Campus and Federation (and Interfederation) Policy Issues
IAM Online Friday, February 12, 2010 “Introduction to Federated Identity Management” John O’Keefe, Lafayette College Questions either via Adobe Connect.
Shibboleth 2.0 IdP Training: Introduction
Research Orientation & Training for Investigators and Research Staff
Presentation transcript:

Context, Gaps and Challenges Dr Ken Klingenstein, Director, Middleware and Security, Internet2

International R&E Feds Gaps Topics InCommon International R&E Feds Gaps Attribute infrastructure Privacy infrastructure VO IdM Interfederation

InCommon today 290+universities, 450+total participants, growth continues rapid > 10 M users Traditional uses continue to grow: Outsourced services, government applications, access to software, access to licensed content, etc. New uses bloom: Access to wikis, shared services, cloud services, calendaring, command line apps, medical, etc. FICAM certified at LOA 1 and 2 (Bronze and Silver). Certificate services bind the InCommon trust policies to new applications, including signing, encryption, etc.

Growth

Types of services connected by InCommon R&E Centric 300+ Universities providing services to students, staff, alumni, external users, K-12, etc. NSF, NIH, National Supercomputing and DataBases, National Labs, GSA, Education, etc. With outsourced service providers Travel management, Testing Services, HR systems, Loan providers, Parking management, NBCLearn, Elsevier, IEEE, ATT, Box, etc. With related business partners Particularly health care – NIH, Mayo Clinic, UHC, VA With markets selling to students, etc. Student Universe, UniversityTickets, National Student Clearinghouse, SAT’s

A typical enterprise-InCommon use profile All staff use it to get to the cloud and do their employee/payroll entry All students use it to take on-line class tests at the outsourced test service All academics use it to get to Elsevier journals, OCLC holdings, IEEE, etc Researchers use it to get to Grants.gov and Fastlane Researchers use it to get to CIlogon and use the Teragrid , Open Science grid, etc. Many researchers use it to get to the Clinical Trial wikis at NIH, PubMed, etc. Many collaborators and administrators use it to get shared wiki space at Internet2, Educause, the CIC, the UC system, the UT system… All students are using it for student tickets, software at Microsoft, etc

International R&E federations > 100M users across >30 countries Coverage in several countries is 100%, and extensive in many others. Generally part of the NREN but associated with another org or independent in a few Frequently linked to several government activities, in research, education, governance, health, etc. Some interfederation activities, including the Kalmar2 union and eduGAIN. www.refeds.org

R&E federations

Gap: Attribute Infrastructure Attribute registries Name space registries Good attribute design principles Attributes of attributes Attributes of things Quality of attributes Managing the marketplace UI

Gap: Privacy Infrastructure Small spanning set of attributes Extensible but end-user manageable Use of bundles to minimize complexity Rich metadata for trusted dialogue Defaults, learning to minimize dialogues End user tools, some out of band Policies App code of conduct, FOPP, InterfedOPP

VO IdM R&E calls them Virtual Organizations, corporations call them cross-industry project teams, governments call them multi-agency collaborations, non-profits call them home Do lots of authorization, largely by groups, and welcome federated authentication Represent an extremely important part of the ecosystem – pulsars of interrealm attributes Engineering them into the ecosystem solves a billion use cases…