Welcome to CAMP! Ken Klingenstein, Director, Internet2 Middleware Initiative.

Slides:



Advertisements
Similar presentations
Dr Ken Klingenstein Director, Internet2 Middleware and Security Emerging Infrastructure for Collaboration: Next Generation Plumbing.
Advertisements

Internet2 Middleware and the NSF Middleware Initiative: Meeting Milestones Ken Klingenstein Director, Internet2 Middleware Initiative, Co-PI, NSF Middleware.
1 April 2014 JISC – SURF Workshop Some thoughts from Internet2 Heather Boyles Heather Boyles
Federated Digital Rights Management Mairéad Martin The University of Tennessee TERENA General Assembly Meeting Prague, CZ October 24, 2002.
CAMP Med Welcome to CAMP Med: Identity and Access Management for Medical Applications Workshop Morgan Passiment AAMC Ann West NMI-EDIT EDUCAUSE/Internet2.
Copyright Ann West This work is the intellectual property of the author. Permission is granted for this material to be shared for non-commercial,
Welcome to CAMP Shibboleth Ken Klingenstein, Director, Internet2 Middleware Initiative.
15 May 2015 JA-SIG Winter Conference 2002 Orlando, Florida Michael R Gettes Principal Technologist Georgetown University Michael.
An Identity Management Vision for California Education A. Michael Berman, Cal Poly Pomona Mark Crase, CSU Office of the Chancellor Copyright A. Michael.
David L. Wasley Information Resources & Communications Office of the President University of California Directories and PKI Basic Components of Middleware.
Welcome Acknowledgments and thanks Security Acronymny: then and now What’s working What’s proving hard.
GatorAid: Identity Management at the University of Florida Mike Conlon Director of Data Infrastructure
Welcome to CAMP Leveraging Campus Authentication Across Boundaries Workshop Ann West NMI-EDIT Outreach Michigan Tech/EDUCAUSE/Internet2.
InCommon Policy Conference April Uses  In order to encourage and facilitate legal music programs, a number of universities have contracted with.
Welcome to CAMP Identity Management Integration Workshop Ann West NMI-EDIT EDUCAUSE/Internet2.
NMI-EDIT Outreach: The first five years. Topics for Today  NMI-EDIT background  Activities  Outcomes  Resources.
EDUCAUSE PKI Working Group Where Are We and Where are We Going.
The InCommon Federation The U.S. Access and Identity Management Federation
Middleware Planning and Deployment 201: Implementation Roadmap Keith Hazelton, University of Wisconsin/Internet2 Renee Woodten Frost, Internet2/University.
EDUCAUSE Midwest Regional March 24, 2003 Copyright Ann West This work is the intellectual property of the author. Permission is granted for this.
Welcome to CAMP: Charting Your Authentication Roadmap Mike Grady Senior Technology Architect and Strategist Campus Information Technologies and Educational.
Australian Access Federation and other Middleware Initiatives Presented at TF-EMC2, Prague 4 Sep 2007 Patty McMillan, The University of Queensland.
Middleware: Addressing the Top IT Issues on Campus Renee Woodten Frost Internet2 and University of Michigan CUMREC May 13, 2003.
Shibboleth Update Michael Gettes Principal Technologist Georgetown University Ken Klingenstein Director Interne2 Middleware Initiative.
USERS Implementers Target Communities NMI Integration Testbed The NMI Integration Testbed NMI Participation Developed and managed by SURA Evaluate NMI.
GridShib: Grid/Shibboleth Interoperability September 14, 2006 Washington, DC Tom Barton, Tim Freeman, Kate Keahey, Raj Kettimuthu, Tom Scavo, Frank Siebenlist,
NSF Middleware Initiative Renee Woodten Frost Assistant Director, Middleware Initiatives Internet2 NSF Middleware Initiative.
Frontiers of Authentication and Authorization Copyright 2003 Kenneth J. Klingenstein Internet2 and UC-Boulder Camp Meeting, June 5 th, 2003.
Internet2 Middleware Initiative. Discussion Outline  What is Middleware why is it important why is it hard  What are the major components of middleware.
Policy and Technology in Enterprise Directory and Authentication Services No Room to Swing a Cat Michael Gettes, MACE, Duke University Keith Hazelton,
FEDERATIONS Clair Goldsmith, Ph.D., Associate Vice Chancellor and CIO September 27,
5/7/2002 Vidmid-vc: Middleware for Video Conferencing Services Egon Verharen, SURFnet Vidmid-vc chair Middleware Vidmid VC History, Scope, Status, Authentication.
US of A and A Activities Ken Klingenstein, Director Internet2 Middleware Initiative.
3 Nov 2003 A. Vandenberg © Second NMI Integration Testbed Workshop on Experiences in Middleware Deployment, Anaheim, CA 1 NMI R3 Enterprise Directory Components.
1 Protection and Security: Shibboleth. 2 Outline What is the problem Shibboleth is trying to solve? What are the key concepts? How does the Shibboleth.
NSF Middleware Initiative: Enterprise and Desktop Integration Technologies Consortium Renee Woodten Frost Assistant Director Internet2 Middleware Initiative.
Going Forward: Year 2 NMI and Higher Ed Middleware.
GRID Overview Internet2 Member Meeting Spring 2003 Sandra Redman Information Technology and Systems Center and Information Technology Research Center National.
Middleware CAMP Day 2. Current Research Research that develops th e…
Middleware Camp NMI (NSF Middleware Initiative) Program Director Alan Blatecky Advanced Networking Infrastructure and Research.
Leveraging Campus Authentication for Grid Scalability Jim Jokl Marty Humphrey University of Virginia Internet2 Meeting April 2004.
February 1, 2002 Internet2 Middleware Initiative and MACE RL "Bob" Morgan, University of Washington.
Digital Diversity: Multi- institutional Access to Distributed Course Resources Barry Ribbeck UT HSC - Houston.
NSF Middleware Initiative: What’s It All About? Renee Woodten Frost Assistant Director Internet2 Middleware Initiative.
University of Washington Identity and Access Management IEEAF – RENU Network Design Workshop Seattle - 29 Nov 2007 Lori Stevens, Director, Distributed.
05 October 2001 Directories: The Next Stage Keith Hazelton, Senior IT Architect University of Wisconsin-Madison Keith Hazelton, Senior IT Architect University.
Shibboleth & Federated Identity A Change of Mindset University of Texas Health Science Center at Houston Barry Ribbeck
A Word from the Sponsors NMI-EDIT comprises Internet2 and EDUCAUSE –NSF Middleware Initiative (NMI)-Enterprise and Desktop Integration Technologies Consortium.
Day 3 Roadmap and PKI Update. When do we get to go home? Report from the BoFs CAMP assessment, next steps PKI technical update Break Research Issues in.
Welcome to Base CAMP: Enterprise Directory Deployment Ken Klingenstein, Director, Internet2 Middleware Initiative Copyright Ken Klingenstein This.
Shibboleth Update January, 2001 Ken Klingenstein, Project Director, Internet2 Middleware Initiative Chief Technologist, University of Colorado at Boulder.
October 2, 2001 Middleware: Pieces and Processes RL "Bob" Morgan, University of Washington.
NSF Middleware Initiative and Enterprise Middleware: What Can It Do for My Campus? Renee Woodten Frost Internet2/University of Michigan.
2-Oct-0101 October 2001 Directories as Middleware Keith Hazelton, Senior IT Architect University of Wisconsin-Madison Keith Hazelton, Senior IT Architect.
Internet2 Spring Meeting NSF Middleware Initiative Purpose To design, develop, deploy and support a set of reusable, expandable set of middleware functions.
Bringing it All Together: Charting Your Roadmap CAMP: Charting Your Authentication Roadmap February 8, 2007 Paul Caskey Copyright Paul Caskey This.
Internet2 Spring Meeting, Washington DC April NMI R2 Directory Services Components Overview Art Vandenberg Director, Advanced Campus Services Information.
NMI-EDIT and Rice University Federated Identity Management: Managing Access to Resources in Texas Barry Ribbeck Director System Architecture and Infrastructure.
Welcome to CAMP Directory Workshop Ken Klingenstein, Internet2 and University of Colorado-Boulder.
01 October 2001 “...By Any Other Name…”. Consequences and Truths (Ken) The Pieces and the Processes (Bob) Directories (Keith) Shibboleth and SAML (Scott)
NSF Middleware Initiative and Enterprise Middleware: What Can It Do for My Campus? Mark Luker, EDUCAUSE Copyright Mark Luker, This work is the intellectual.
NSF Middleware Initiative: What’s It All About?
Middleware: Addressing the Top IT Issues on Campus
Vidmid Session Overview
Internet2 Middleware: What’s In It For You
Shibboleth Project at GSU
University of Texas System
Middleware: Addressing the Top IT Issues on Campus
Renee Woodten Frost Assistant Director Internet2 Middleware Initiative
Shibboleth and Federations
Presentation transcript:

Welcome to CAMP! Ken Klingenstein, Director, Internet2 Middleware Initiative

CAMP - June 4-6, Overview CAMP Goals Workshop Context A word from our sponsors A word about NMI-EDIT

CAMP - June 4-6, Goals of CAMP: Authentication Overview/Deployment Overview of deploying authentication WebISO technologies Update on directory activities Inter-institutional authorization and leveraging campus authentication

CAMP - June 4-6, Goals of CAMP Develop contacts from other institutions implementing middleware Learn about current research Take home ideas to help remove those roadblocks on your campus Benchmark your own implementation against current higher-ed practices

CAMP - June 4-6, Thanks to our CAMP “Program Committee” Mike Berman –CSU Pomona Kent McKinney –CSU Hayward Bill Winn –Bradley University

CAMP - June 4-6, A Word From Our Sponsors National Science Foundation’s Middleware Initiative (NMI) NMI – Enterprise Desktop Integration Technologies (EDIT) Consortium Internet2 – primary on grant and research EDUCAUSE – primary on outreach Southeastern Universities Research Association (SURA) – primary on NMI Integration Testbed …with support from Sun Microsystems Inc.

CAMP - June 4-6, NMI-EDIT: Goals Create a ubiquitous common, persistent and robust core middleware infrastructure for the R&E community Provide tools and services (e.g. registries, bridge PKI components, schemas, root directories) to support inter- institutional and inter-realm collaborations

CAMP - June 4-6, NMI-EDIT: Core Middleware Scope Identity and Identifiers – namespaces, identifier crosswalks, real world levels of assurance Authentication – campus technologies and policies, inter-realm interoperability via PKI, Kerberos Directories – enterprise directory services architectures and tools, standard object classes, inter- realm and registry services Authorization – permissions and access controls, delegation, privacy management Integration Activities – common management tools, use of virtual, federated and hierarchical organizations

CAMP - June 4-6, A Map of Middleware Land

CAMP - June 4-6, NMI-EDIT: Strategic Direction Overall technical direction set by MACE –Middleware Architecture Committee for Education (MACE) –Bob Morgan, University of Washington, Chair –Campus IT architects and representatives from Grids and International Communities Directions set via –NSF and NMI management team –Internet2 Network Planning and Policy Advisory Council –PKI, FOO and Directory Technical Advisory Boards –Internet2 members

CAMP - June 4-6, Sample NMI-EDIT Process: Directories MACE-DIR Working Group –Prioritize needed materials – Establish subgroups revision of basic documents (LDAP Recipe) new best practices in groups and metadirectories standards development for eduPerson 1.5 and eduOrg 1.0 –Work in enhanced IETF approach: scenarios, requirements, architectures, recommended standards stages –Announce deliverables; start input and conference call review/feedback processes; reconvene work groups as needed Process schedule and requirements –4-6 months for completion, depending on product –6-8 primary contributors –15-50 schools participating

CAMP - June 4-6, NMI-EDIT: Participants Higher Ed – leadership institutions, with 50 more campuses represented as members of working groups; readership around 2000 institutions Corporate – (IBM/Metamerge, Microsoft, SUN, Liberty Alliance, DST, MitreTek, Radvision, Polycom, EBSCO, Elsevier, OCLC, Baltimore Technologies) Government – NSF, NIST, NIH, Federal CIO Council International –Terena, JISC, REDIRIS, AARnet, SWITCH

CAMP - June 4-6, The pieces fit together… Campus infrastructure – Name space, identifiers, directories – Enterprise authentication and authorization – Portals and LMS’s Inter-realm infrastructure – edu schemas – Exchange of attributes Inter-realm Upperware – Grids – Digital libraries – Video

CAMP - June 4-6, Middleware as Infrastructure It serves both academic and administrative units It serves both instructional and research missions It must be reliable, scalable, extensible, ubiquitous, and transparent. It must be deployed, which requires real technical, financial and political processes.

CAMP - June 4-6, Middleware as Art There is no proven policy path Much depends on local legacy systems Much depends on local legacy people Much of the technology base is being invented as we meet

CAMP - June 4-6, The Last Six Months in Middleware Directories –Eduperson – new attributes, passions about vocabulary, new pressures for internationalization –CommObject becomes H.350 –Metadirectories… Shibboleth – grows to v1.0, libraries and content providers drive deployments, federations take shape Enterprise, federated Chandler is hatched

CAMP - June 4-6, The Last Six Months in Middleware Desktop video – what’s proving hard PKI – needs grew, CREN died… DRM – wins and losses OKI – fits and starts Portals – growing consensus on a few standards

CAMP - June 4-6, Drivers for federations At least four technologies… –Shibboleth, Liberty Alliance, Federated.NET, PAPI from RedIris (Spain), perhaps PKI Several business needs –Internal exchanges –Inter-institutional collaboration –Federal e-authentication initiative Deployments now beginning

CAMP - June 4-6, Origin Side Architecture

CAMP - June 4-6, The Next Six Months in parts of Middleware Federations A Higher Ed CA Chandler Signed Credential convertors and identity mapping OGSA Shibbing collaboration tools DRM

CAMP - June 4-6, Federations and Classic PKI They are very similar –Both imply trust models –Federations are a enterprise-enterprise PKI –Local authentication may well be end-entity certs –Name-space control is a critical issue And they are very different –End user authentication a local decision –Flat set of relationships; little hierarchy –Focus as much on privacy as security –Web Services only right now: no other apps, no encryption –We get to define…

CAMP - June 4-6, Overall Trust Fabric

CAMP - June 4-6, The Next Two Years in parts of Middleware Desktop video Authzanity A Higher Ed Bridge CA Federated enterprise P2P Virtual organization support Federated directories Middleware diagnostics

CAMP - June 4-6, Getting the Most Out of CAMP Conventional wisdom is not wisdom Its about deployments We have met the enemy… Friday morning consulting Netequitte The creek path Stay engaged