Implementing the ebXML Standards in Postsecondary Education Jim Farmer and Justin Tilton instructional media + magic, inc. As prepared for (but not delivered.

Slides:



Advertisements
Similar presentations
OGSA Security Profile 2.0 (a.k.a. Express Authentication Profile) DUANE MERRILL October 18, 2007.
Advertisements

Web Services Copyright © Liferay, Inc. All Rights Reserved. No material may be reproduced electronically or in print without written permission.
Collaboration-Protocol Profile and Agreement Specification Armin Haller Digital Enterprise Research Institute
UDDI v3.0 (Universal Description, Discovery and Integration)
1 April 18 th, 2002 Electronic Commerce Promotion Council of Japan (ECOM) 5 th ebXML Asia Committee Taipei meeting Current Status of OASIS ebXML CPPA TC.
1 Introduction to XML. XML eXtensible implies that users define tag content Markup implies it is a coded document Language implies it is a metalanguage.
UCB Enterprise Directory Services. Directory Services – Project History  Requirements defined  Project commission & goals articulated  Project teams.
NHIN Specifications Richard Kernan, NHIN Specification Lead (Contractor), Office of the National Coordinator for Health IT Karen Witting, Contractor to.
UCB Enterprise Directory Services. Directory Services – Project History  Requirements defined  Project commission & goals articulated  Project teams.
B2B e-commerce standards for document exchange In350: week 13: Nov. 19,2001 Judith A. Molka-Danielsen.
Secure Systems Research Group - FAU Web Services Standards Presented by Keiko Hashizume.
Processing of structured documents Spring 2003, Part 6 Helena Ahonen-Myka.
Introduction to ebXML Mike Rawlins ebXML Requirements Team Project Leader.
The Postsecondary Electronic Standards Council (PESC), XML Forum, and Standards Setting in Higher Education Jim Farmer University of Delaware instructional.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Exchange Network Node Help Desk NOLA Conference Feb 9-10, 2004.
1 Explanation of Examples of CPPA V1.05 Process-Specification Document CPP-A/B, CPA (draft-cpp-example-companyA-012.xml) (draft-cpp-example-companyB-012.xml)
4/22/20031 Data Interchange Initiative Lower the Barrier of Entry to B2B eBusiness Prepared by Bennet Pang
An XMPP (Extensible Message and Presence Protocol) based implementation for NHIN Direct 1.
OASIS ebXML Registry Standard Open Forum 2003 on Metadata Registries 10:30 – 11:15 January 20, 2003 Kathryn Breininger The Boeing Company Chair, OASIS.
Standards Categories February 24, 2006 HITSP Inventory of Standards Inventories Committee Edits.
Lecture 23 Internet Authentication Applications modified from slides of Lawrie Brown.
UDDI ebXML(?) and such Essential Web Services Directory and Discovery.
New Member Orientation Boston Quarterly April 2003 Kim Bartkus.
Web Services Security Standards Overview for the Non-Specialist Hal Lockhart Office of the CTO BEA Systems.
Dr. Bhavani Thuraisingham October 2006 Trustworthy Semantic Webs Lecture #16: Web Services and Security.
Copyright © 2004 by The Web Services Interoperability Organization (WS-I). All Rights Reserved 1 Interoperability: Ensuring the Success of Web Services.
OASIS Week of ebXML Standards Webinars June 4 – June 7, 2007.
Modernizing Financial Aid Delivery A Status Report Jim Farmer instructional media + magic, inc. As presented at the 2001 Vermont Financial Aid Conference.
Jim Farmer As presented at the Common Solutions Group Meeting May 9, 2002 Chicago, Illinois Web Services: A Perspective.
Qusay H. Mahmoud CIS* CIS* Service-Oriented Computing Qusay H. Mahmoud, Ph.D.
1  Bob Hager Director of Publishing Standards Metadata Specification.
Herndon, VA October 12, 2006 Navigating Web Services Standards NIST Special Publication
Web Services Standards. Introduction A web service is a type of component that is available on the web and can be incorporated in applications or used.
WS-Security Protocol Ramkumar Chandrasekharan CS 265.
PKI and the U.S. Federal E- Authentication Architecture Peter Alterman, Ph.D. Assistant CIO for e-Authentication National Institutes of Health Internet2.
Copyright OASIS, 2001 ebXML CPPA Technology Dale Moberg, Cyclone Commerce Chair, OASIS ebXML TC
RS3G in Five Minutes: An American Perspective Web Services Harmonization Meeting Orlando, Florida USA | 12 February 2010 Jim Farmer instructional media.
State of e-Authentication in Higher Education August 20, 2004.
E-Authentication in Higher Education April 23, 2007.
1 Registry Services Overview J. Steven Hughes (Deputy Chair) Principal Computer Scientist NASA/JPL 17 December 2015.
Prominent Changes To the CPP/A Specification January 28, 2002.
EbXML Conference Ministry of Informatics
1 E-Authentication and Web Services Charlie Miller, RIHEAA.
Using WS-I to Build Secure Applications Anthony Nadalin Web Services Interoperability Organization (WS-I) Copyright 2008, WS-I, Inc. All rights reserved.
Transforming Government Federal e-Authentication Initiative David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide Policy.
EbXML Registry and Repository Dept of Computer Engineering Khon Kaen University.
April, 2005 ebSOA Based on FERA Reference Model Vasco Drecun Collaborative Product Development Associates, LLC Goran Zugic ebXMLsoft Inc.
Introduction To Data Standards eRA SBIR Public Briefing March 4, 2002
E-Authentication October Objectives Provide a flexible, easy to implement authentication system that meets the needs of AES and its clients. Ensure.
BEA position on W3C ‘Web Services’ Standards Jags Ramnarayan 11th April 2001.
OASIS ebXML Registry Standard Open Forum 2003 on Metadata Registries 10:30 – 11:15 January 20, 2003 Kathryn Breininger The Boeing Company Chair, OASIS.
1 Current status of OASIS ebXML CPPA TC Yukinori Saito Electronic Commerce Promotion Council of Japan (ECOM, 10 th.
IPDA Registry Definitions Project Dan Crichton Pedro Osuna Alain Sarkissian.
Exchanging Data with Federal Agencies A Challenge and an Opportunity Jim Farmer and Justin Tilton instructional media + magic, inc. As presented to the.
Training for developers of X-Road interfaces
Access Policy - Federation March 23, 2016
Training for developers of X-Road interfaces
IT Infrastructure Plans
Training for developers of X-Road interfaces
Web Services UNIT 5.
Web Services Security Challenges
Technical Approach Chris Louden Enspier
Tim Bornholtz Director of Technology Services
Portals, uPortal, and the Meteor Channel
CPPA3 Overview.
IDABC e-Invoicing – e-Ordering > Pilot of e-PRIOR Meeting with Suppliers IDABC stands for Interoperable Delivery of European eGovernment Services to public.
Presentation transcript:

Implementing the ebXML Standards in Postsecondary Education Jim Farmer and Justin Tilton instructional media + magic, inc. As prepared for (but not delivered at) the XML Forum of the Postsecondary Electronics Standards Council Monday · February 25, 2002 · Miami, Florida i n s t r u c t i o n a l m e d i a + m a g i c, i n c.

instructional media + magic Publisher’s Note The Architectural Committee focused on the ebXML specifications. The Committee recommended and the Forum adopted the ebXML Business Messaging.

instructional media + magic Federal mandates Immigration and Naturalization Service SEVIS Student and Exchange Visitor Information System, on or after January 1, 2003 Department of Education COD Common Origination and Disbursements February 2003 (pilot begins March 7, 2002) Department of Veterans Affairs VACert Certificates of attendance sometime 2003

instructional media + magic Federal data exchanges Business Message Message Format Data Transport Education COD XMLProprietaryProprietary Encrypted FTP INS SEVISXMLProprietaryProprietary Encrypted Veterans Affairs VACert (planned) XML?? ebXMLXMLApplication dependent standard SOAP

instructional media + magic Federal e-Authentication John Sindelar, “Achieving the Vision of E- Government,” Nov 27, 2001

instructional media + magic JA-SIG Web Services model HTTPS SOAP Business Message HTTPS SOAP Business Message University Agency Scenario User: Student, staff, or faculty Access Provider: University Portal Data Provider: Agency Web Server SIS Portal Web Server User App Server

Information Technology Standards

instructional media + magic ebXML Technical Standards Collaboration-Protocol Profile and Agreement - WSDL extended Messaging Services – SOAP extended Reliable messaging Message Status Service Message Order Multi-hop Registry – UDDI extended Implementation, Interoperability and Conformance

instructional media + magic ebXML CPPA Collaboration-Protocol Profile and Agreement The Message-exchange capabilities of a Party MAY be described by a Collaboration- Protocol Profile (CPP). The Message- exchange agreement between two Parties MAY be described by a Collaboration- Protocol Agreement (CPA).

Data Representations

instructional media + magic ebXML naming conventions Element names use Upper Camel Case (UCC) convention Attributes use Lower Camel Case (LCC) Class, Interface names use Upper Camel Case ClassificationNote, Versionable Method names use Lower Camel Case getName(), setName() “OASIS/ebXML Registry Information Model v2.0,” Organization for the Advancement of Structured Information Standards, Dec 18, 2001, p. 8

instructional media + magic Person ebXMLIFXINS SEVIS ED COD Title8 First Name Middle Name6440 repeating 251 Last Name6440 repeating 4035 Suffix40

instructional media + magic Address ebXMLIFXINS SEVISED COD Address lines of 642 of 603 of 40 City County19 State or Province Postal code Country64323

instructional media + magic Other addresses ebXMLIFXINS SEVISED COD Telephone (32) 1+31 (32) (US only) (US only) URL

instructional media + magic Person identifiers U.S. Department of Education COD Social Security Number + Date of Birth + Last Name U.S. Immigration and Naturalization Service SEVIS First Name + Middle Initial + Last Name + Date of Birth (MMDDYYYY) U.S. Department of Veteran Affairs [Documentation not published] ebXML Universal Unique Identifier (UUID) 64 characters “DCE 128 bit universally unique ids used for referencing another object.” IFX UUID - 32 characters with four dashes

instructional media + magic Date formats W3C YYYY-MM-DD (dashes included) ISO 8601:2000 Extended FormatYYYY-MM-DD Basic FormatYYYYMMDD U.S. NIST FIPS 4-2 References ANSI X YYYY-MM-DD Note: INS SEVIS uses MMDDYYYY

Security Authentication and Authorization

instructional media + magic ebXML security Persistent digital signatureW3C XMLDSIG Persistent signed receiptW3C XMLDSIG Non-persistent IETF TSL or IPSEC [one direction or bi-directional] Persistent confidentialityW3C/IETFC XML Encryption Non-persistent confidentialityIETF TLS or IPSEC Persistent authorizationOASIS SAML Non-persistent authorizationIETF TLS or IPSEC Trusted Timestampnot yet standardized [ebXML] “Message Service Specification,” version 2.0, OASIS, Jan 11, 2002

instructional media + magic Security for Federal Data Exchanges EncryptionInstitutionPerson EducationNetscape SSL Logon/ Password Logon/ Password INSNetscape SSL Digital certificate Logon/ Password or Digital Certificate? Veterans Affairs ?Logon/ Password Logon/ Password ebXMLIETF TLSDigital certificate Personal Digital Certificate

instructional media + magic Can a college be trusted? The federal government can “trust” a college or university because: The college is already regulated by federal law and regulations, and precedent. By analogy to current paper processes—a long history of “trust.”

instructional media + magic SAML authentication assertions AnonymousRole, organizational affiliation Student identifiedRole, organizational affiliation, name, identification number (SSN), date or birth Student identifiedAccount number + pin. [IFX application level]Card content OR Personal digital certificate Staff identifiedRole, name, local identifier and identifier type, organization and optional sub-organizations

instructional media + magic References “OASIS/ebXML Registry Information Model v2.0,” Organization for the Advancement of Structured Information Systems (OASIS), Dec 18, 2001 “OASIS/ebXML Registry Servics Specification v2.0,” OASIS, Dec 6, “Message Service Specification Version 2.0,” OASIS, Jan 11, “Business Message Specification V1.2.0a, Interactive Financial Exchange, Dec. 31, “Data elements and interchange formats -- Information interchange -- Representation of dates and times,” ISO 8601:2000, ed. 2, International Organization for Standardization, Dec. 21, 2000.

instructional media + magic References “Interface Control Document for the Student and Exchange Visitor Information System,” Immigration and Naturalization Service, Nov. 21, “Technical Reference for Common Record Transmitters to Common Origination and Disbursement ,” Version 3.1, U.S. Department of Education, Nov “Common Record XML Schema Definition File,”for the Common Record], Version 1.0, U.S. Department of Education, Aug. 20, 2001, file named CommonRecord1pt0.xsd.

The end

instructional media + magic Web self-service Web self-service$.06 $6.00 Telephone call$12.00 Forrester Research as quoted by Bonnie Azar Power in “Taking self-service out of the dark into Broad Daylight,” Red Herring, No. 110, Feb 2001, pp