Access & Identity Management “An integrated set of policies, processes and systems that allow an enterprise to facilitate and control access to online.

Slides:



Advertisements
Similar presentations
Introducing…. Brand new content platform from John Wiley & Sons (replacing Wiley InterScience) New user interface delivers intuitive navigation for all.
Advertisements

Athens and Shibboleth ® : the choices Phil Leahy Athens Product Manager.
Shibboleth and UKAMF-FEAR not as scary as it sounds! Rhys Smith Cardiff University.
Secure Single Sign-On Across Security Domains
Federated Access implementation: experience of AUCA Library - Kyrgyzstan 4 th -7 th June, 2008, Aberdeen, Scotland Sania Battalova, EIFL Country and FOSS.
Lousy Introduction into SWITCHaai
Open Grid Forum 19 January 31, 2007 Chapel Hill, NC Stephen Langella Ohio State University Grid Authentication and Authorization with.
Eduserv Athens Federations David Orrell Eduserv Athens Technical Architect.
Next Generation Athens Services Ed Zedlewski UK e-Science Town Meeting, London, 11 April 2005.
OhioNET EZProxy Service
Office 365 Identity June 2013 Microsoft Office365 4/2/2017
ELAG Trondheim Distributed Access Control - BIBSYS and the FEIDE solution Sigbjørn Holmslet, BIBSYS, Norway Ingrid Melve, UNINET, Norway.
Access management for repositories: challenges and approaches for MAMS James Dalziel Professor of Learning Technology and Director, Macquarie E-Learning.
Vivien Cook Regional Account Manager, Northern & Eastern Europe Lund Online – 11 th October 2006.
Shibboleth: EBSCOhost implementation Lech Wojtowicz Director of Software Development EBSCO Publishing Access 2003 October 3, 2003.
Authentication Systems and Single Sign-On (SSO) David Orrell, Eduserv Athens 1st EuroCAMP, 2-4 March 2005, Turin, Italy.
GLAM: Global Access Management Sally Chambers University of London TF-AACE Workshop, Malaga: 20 th – 21 st November, 2003 What e-learners and e-librarians.
Cloud app Cloud app Cloud app Separate username/password sign-in Manual or semi-automated provisioning Active Directory App Separate username/password.
Identity Management – Why and How Experiences at CU-Boulder Copyright Linda Drake, Director of Development and Integration, University of Colorado, Boulder,
Developments in Access and Identity Management Phil Leahy – Athens Product Manager.
Campus Management Portal and Online Higher Education Cardean Learning Group.
Digital Identity Management Strategy, Policies and Architecture Kent Percival A presentation to the Information Services Committee.
Athens Building Communities Ed Zedlewski & Lyn Norris UKSG, Warwick, April 2002.
Feide is a identity management system on a national level for the educational sector in Norway. Federated Electronic Identity for Norwegian Education Tromsø,
Gary Brown, Senior Systems Developer, Portal Development Team Identity Management Toolkit a JISC sponsored project.
Getting started on informaworld™ How do I register my institution with informaworld™? How is my institution’s online access activated? What do I do if.
University of Kentucky Proxy Service Presentation By Kelly Vickery
EBSCOadmin. Select Change Password Select EBSCOadmin Security.
3 Nov 2003 A. Vandenberg © Second NMI Integration Testbed Workshop on Experiences in Middleware Deployment, Anaheim, CA 1 Shibboleth Pilot Local Authentication.
Single Sign-On Offerings Dustin MacIver EBSCO Publishing 6/4/2011.
Aoife Lawton Systems Librarian HSE. Outline eLibrary models of authentication Library/Librarian visibility – some tips Mobile technologies Federated Search.
Help your users to discover your content With OpenAthens & Link Resolvers Lyn Norris.
Shibboleth Update Michael Gettes Principal Technologist Georgetown University Ken Klingenstein Director Interne2 Middleware Initiative.
Information Services support for distance learners Barry Croucher IS Helpdesk Manager.
UCLA Enterprise Directory Identity Management Infrastructure UC Enrollment Service Technical Conference October 16, 2007 Ying Ma
David Kennedy, UMD Shibboleth and Library Resources Internet2 Library/Shibboleth Project.
MAT U M A T U Middleware Assisted Take-Up Service For JISC Funded Early Adopters.
Holly Eggleston, UCSD Shibboleth and Library Resources InCommon Library/Shibboleth Project.
Athens – integrated AMS services Ed Zedlewski JISC/CNI Conference Edinburgh, June 2002.
SAML a mature six year old? Glenn Wearen, Paul Caskey & Josh Howlett.
Community Sign-On and BEN. Table of Contents  What is community sign-on?  Benefits  How it works (Shibboleth)  Shibboleth components  CSO workflow.
- NCSU project goals and requirements - Adoption Drivers - Current challenges and pain points - Identacor at NCSU - Identacor Features - NCSU Key Benefits.
Holly Eggleston, UCSD Beyond the IP Address: Shibboleth and Electronic Resources InCommon Library/Shibboleth Project.
University of Washington Collaboration: Identity and Access Management Lori Stevens University of Washington October 2007.
Identity Management, Federating Identities, and Federations November 21, 2006 Kevin Morooney Jeff Kuhns Renee Shuey.
Shibboleth at USMAI David Kennedy Spring 2006 Internet2 Member Meeting, April 24-26, 2006 – Arlington, VA.
Shibboleth for Middle Schools James Burger -
Agenda  Microsoft Directory Synchronization Tool  Active Directory Federation Server  ADFS Proxy  Hybrid Features – LAB.
SSH. 2 SSH – Secure Shell SSH is a cryptographic protocol – Implemented in software originally for remote login applications – One most popular software.
Community Sign-On and BEN. Table of Contents  What is community sign-on?  Benefits  How it works (Shibboleth)  Shibboleth components  CSO workflow.
L’Oreal USA RSA Access Manager and Federated Identity Manager Kick-Off Meeting March 21 st, 2011.
Secure Single Sign-On Across Security Domains
Using Your Own Authentication System with ArcGIS Online
Azure Active Directory - Business 2 Consumer
Single Sign-On Led by Terrice McClain, Jen Paulin, & Leighton Wingerd
SaaS Application Deep Dive
Introduction How to combine and use services in different security domains? How to take into account privacy aspects? How to enable single sign on (SSO)
Shibboleth Implementation in EZproxy
ESA Single Sign On (SSO) and Federated Identity Management
Introducing… Welcome to this introduction to Wiley Online Library.
Getting Started.
Linking Users, Resources, & Data Driven Decisions with OpenAthens
GALILEO Approach and implementation
Identity & Access Management
GALILEO & OpenAthens: 21st Century Authentication for GALILEO Participating Libraries Christopher Holly Director of SaaS Innovation, EBSCO
GALILEO & OpenAthens: 21st Century Authentication for GALILEO Participating Libraries Christopher Holly Director of SaaS Innovation, EBSCO
Getting Started.
Matthew Levy Azure AD B2B vs B2C Matthew Levy
Presentation transcript:

Access & Identity Management “An integrated set of policies, processes and systems that allow an enterprise to facilitate and control access to online resources for their users” RSA Security No magic bullet Not about technology itself

Organisational Single sign-on – the future Local web resourcesExternal web resources VLE Portal OPAC Database Journals Local authentication System usernames & passwords User attributes Names, , role Directory SSO Authentication transfer protocol e.g SAML, Shibboleth, AthensDA Single copy of data managed centrally accurate & reliable & secure Users become accountable & auditable

Beyond IP authentication: Federation Service Providers Identity Providers Athens Resources Registry Athens agents AthensDA Shib SAML Institutional Directory Institutional Data source Bulk Upload Self registration IP Resources Proxies Individual recognition from day one Patron attribution Comprehensive statistics 300 premium content vendors user management tools designed for librarians

Athens Agent Resource First Access Athens Authentication Point Athens Authority Server Create SSO session Long Term Token Session Token User signs on with Athens or local authentication Check session token. Get attributes. Session token HTTP refer for authentication Session token Athens Cookie Long Term Token Athens Single Sign-on

Millions of users Worldwide

2000+ institutions

Single Sign-on (SSO)

Identity Management

User Provisioning

Management Information - usage statistics - audit

Integrates with - Shibboleth - EZproxy - Active Directory - etc

Standards Policies Attributes EduPerson

Case Study 1

Individual Patron id’s – usable anywhere using the student no as patron id Uploaded automatically from student registry No personal data to allay privacy concerns Staff registered manually Next step –Integration with Campus Directory

Tamera Hanken says I chose this service because I needed something that would be reliable, easy and quick to implement, and cost effective in terms of equipment and my time. With this method we had to do nothing to enable our network system to use Athens. Based on how easy it was to begin using, how reliable it is, students didn’t find it cumbersome or confusing—we decided to purchase Customer service has been friendly and prompt

Case Study 2

Tailored self registration Library promotes URL of self registration form Organisational defined info –Campus, role, faculty – whatever Request validated by librarian or IP address Statistics by any defined category Account usable anywhere