Higher Ed Certificate Authority by CREN: Update CSG February 2, 2000.

Slides:



Advertisements
Similar presentations
WVEIS Intranet/Internet Whats new in WVEIS IT. What is an Intranet? A private network within an organization making use of Internet technologies to achieve.
Advertisements

Experiences with Massive PKI Deployment and Usage Daniel Kouřil, Michal Procházka Masaryk University & CESNET Security and Protection of Information 2009.
Digital Certificate Installation & User Guide For Class-2 Certificates.
Installation & User Guide
May 06, 2002 Getting Started with Digital Certificates: Is PKI-Lite Real PKI? Internet2 Spring Meeting 2002 Wash, DC.
Tivoli Service Request Manager
Digital Certificate Installation & User Guide For Class-2 Certificates.
Roadmap for Sourcing Decision Review Board (DRB)
Higher Ed Certificate Authority by CREN October 12, 2000 TERENA Meeting/Paris.
Digital Certificate Installation & User Guide For Class-2 Certificates.
Grid Computing, B. Wilkinson, 20045a.1 Security Continued.
National Service Trust Automation Project Training Materials: Members and Alumni Corporation for National & Community Service (CNCS) National Service Trust.
Certificates Last Updated: Aug 29, A certificate was originally created to bind a subject to the subject’s public key Intended to solve the key.
SAFE Implementation Toolkit How to use it. Implementation toolkit Overview Log-in Contents Search Toolkit Use Log-out.
July 11 - September FFIEC Central Data Repository Bank Enrollment.
Grid Security. Typical Grid Scenario Users Resources.
6/1/20151 Digital Signature and Public Key Infrastructure Course:COSC Instructor:Professor Anvari Student ID: Name:Xin Wen Date:11/25/00.
Public Key Infrastructure (PKI) Providing secure communications and authentication over an open network.
16.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft® Windows® Server 2003 Active Directory Infrastructure.
Technology Steering Group January 31, 2007 Academic Affairs Technology Steering Group February 13, 2008.
Mar 4, 2003Mårten Trolin1 This lecture Diffie-Hellman key agreement Authentication Certificates Certificate Authorities.
Technology Steering Group January 31, 2007 Academic Affairs Technology Steering Group February 13, 2008.
CS470, A.SelcukPKI1 Public Key Infrastructures CS 470 Introduction to Applied Cryptography Instructor: Ali Aydin Selcuk.
9/20/2000www.cren.net1 Root Key Cutting and Ceremony at MIT 11/17/99.
MSF Testing Introduction Functional Testing Performance Testing.
Inside the PKI Framework: * Activating the Puzzle Pieces PKI Summit Snowmass August
Virginia Tech Overview of Tech Secure Enterprise Technology Initiatives e-Provisioning Group Frank Galligan Fed/Ed.
EGI-Engage Recent Experiences in Operational Security: Incident prevention and incident handling in the EGI and WLCG infrastructure.
Athens Building Communities Ed Zedlewski & Lyn Norris UKSG, Warwick, April 2002.
1 PKI Update September 2002 CSG Meeting Jim Jokl
TESTING STRATEGY Requires a focus because there are many possible test areas and different types of testing available for each one of those areas. Because.
Secure Electronic Transaction (SET)
What if you suspect a security incident or software vulnerability? What if you suspect a security incident at your site? DON’T PANIC Immediately inform:
Introduction to Secure Messaging The Open Group Messaging Forum April 30, 2003.
UNAMgrid CA Juan Carlos Guel UNAM, México. Alejandro Núñez UNAM, México. Israel Becerril UNAM, México. DGSCA UNAM 31/08/06.
CILogon OSG CA Mine Altunay Jim Basney TAGPMA Meeting Pittsburgh May 27, 2015.
CREN Certificate Authority Project: Update from Georgia Tech Ron Hutchins 28 March 2000.
Important acronyms AO = authorizing official ISO = information system owner CA = certification agent.
HEPKI-TAG UPDATE Jim Jokl University of Virginia
Certification and Accreditation CS Phase-1: Definition Atif Sultanuddin Raja Chawat Raja Chawat.
3 rd Party Registration & Account Management SMT Update To AMWG Status February 24, 2014.
Word Lesson 13 Sharing Documents Microsoft Office 2010 Advanced Cable / Morrison 1.
Co Chairs C. W. Goldsmith University of Alabama at Birmingham David L. Wasley University of California Office of the President.
Creating Pathways for Education, Career and Life Success Webinar: Developing a Pathways Plan January 18, 2013 Facilitated by Jeff Fantine, Consultant.
Documents posted at QRIS 2011 Program Quality Improvement Grant RFP Bidder’s Conferences February & March 2011 Wendy Valentine Director,
HEPKI-PAG Policy Activities Group David L. Wasley University of California.
Module 9: Fundamentals of Securing Network Communication.
March 27, 2000GSU/IST/Advanced Campus Services 1 Enterprise Directory Strategy & Recommendations Georgia State University.
Release Management Configuration management. Release Management Goal Coordinate the processes through the project development life cycle Ensure the.
Agenda  Message Class Update  SAIG Transmission Header Changes  School Testing  Software Developer Feedback.
The Distribution Online Vending Pilot Project Demo Testing Certificate Management Kennedy P Subramoney 23 July 2004.
Internet2 Middleware Initiative Shibboleth Ren é e Shuey Systems Engineer I Academic Services & Emerging Technologies The Pennsylvania State University.
OSG PKI Contingency and Recovery Plans Mine Altunay, Von Welch October 16, 2012.
© 2003 The MITRE Corporation. All rights reserved For Internal MITRE Use Addressing ISO-RTO e-MARC Concerns: Clarifications and Ramifications Response.
LOGGING IN & ROLES PolicyTech Business & Financial Affairs
Innovation Software Corporation's Cultural Awareness Training Program Presentation by:
SPC Advisory Committee Training - TAC Fall 2015 Institutional Research President’s Office 1 Abridged from the SPC Advisory Committee Training on October.
SPC Advisory Committee Training Fall 2015 Institutional Research President’s Office SPC 10/9/20151.
Thesis Defense and Submission 1 Spring  Register for Spring semester  Deadline to submit thesis to GPS: Friday, April 22 nd at NOON  Deadline.
Intro for Legal Professionals Personal Planning Registry.
The GRIDS Center, part of the NSF Middleware Initiative Grid Security Overview presented by Von Welch National Center for Supercomputing.
The Trusted Network · · · LEFIS PKI · · · 2 nd June, 2006 · Sofia by Leonardo Catalinas · May 2006
On-Line BankCard Center Presentation Cardholder Role During the Presentation click the mouse on this button to move back a slide During the Presentation.
Important acronyms AO = authorizing official ISO = information system owner CA = certification agent.
1 US Higher Education Root CA (USHER) Update Fed/Ed Meeting December 14, 2005 Jim Jokl University of Virginia.
FIRE1000S - Self-Paced FIREBIRD Training Training on the Federal Investigator Registry of Biomedical Informatics Research Data (FIREBIRD) for Clinical.
UNIVERSITY OF GEORGIA Overview Presented By Chris Wilkins February 23, 2016 OneSource Project Financial/HR Systems.
SharePoint Online Authentication Patterns
September 2002 CSG Meeting Jim Jokl
Presentation transcript:

Higher Ed Certificate Authority by CREN: Update CSG February 2, 2000

1/14/00www.cren.net2 Focus of the Certificate Authority Service from CREN  Initial focus is on serving the need for high volume, low risk uses of digital certificates  Primary initial use for l Between institutions l Between institutions and content providers  Other digital certificates may be used for other purposes

1/14/00www.cren.net3 CA Subscriber Application Process (Short version)  2 Page Application Form completed by CREN member rep  Signed by executive officer of institution  Once registration is completed, the technical contact l Issues request for certificate l Accepts the certificate on behalf of institution  Certificate with institution’s public key is posted to CREN repository

1/14/00www.cren.net4 CREN/MIT Relationship  CREN office serves function of registration authority and certificate authority  Actual generation of the CREN institutional certificates is at MIT, monitored by CREN Board of Trustee

1/14/00www.cren.net5 CREN CA/MIT  CREN office will confirm institutional CA and contacts  MIT will l Receive the request for the certificate directly from technical contact at institution, l Generate the institutional certificate, l Send the institutional certificate back to technical contact and to CREN office

1/14/00www.cren.net6 Piloting Update  Pilot Round One: l MIT, Georgia Tech, and Princeton l Certificates issued and accepted l PGP used for secure communication during registration and certificate request process l Preparing campus scenarios of these implementations l Each step of the application process is now in a Step by Step document

1/14/00www.cren.net7 Piloting Lessons  Pilot Round One: l Each step of the application process is now in a Step by Step document, available on the web l Next: Use of the Institutional certificate in generating the campus certificates

1/14/00www.cren.net8 Piloting of the CREN CA  Pilot Round Two: l U of Minnesota/Twin Cities l Penn State l U of Tennessee/Memphis  Phase Two l Testing with content provider, JSTOR l Continuing links with Digital Library Project  Pilot Round Three is in March

1/14/00www.cren.net9 Uses of Digital Certificates on Campuses  Authenticate — verify who the person is l Might only be necessary to know that a person is a member of a specific community  Authorize— specify level of access for person to do work, tasks or approve actions  Authenticate/Authorize person for l Instructional uses l Admin purposes l Student life purposes

1/14/00www.cren.net10 Uses of Digital Certificates on Campuses  Instructional Uses l Testing l Access to content resources from “wherever the person is” off campus/home l Entrance into Internet online events  Admin purposes l Admitting, paying, programming, grading, giving  Student life purposes l Health Care, student elections, football tickets

1/14/00www.cren.net11 How Many Digital Certificates?  More than five and less than 20? More than one and less than 10?  Similar to passwords, credit cards  Used in combination with something else..  Passwords now stored locally, less vulnerable to attack

1/14/00www.cren.net12 Next Steps: Feb - June 00  Pilot School Meeting - March 2000  Preparing draft document on campus practices  Capturing and describing pilot campus scenarios  Working with content providers  Listening hard to ensure appropriate evolution and focus

1/14/00www.cren.net13 Issue Awareness in Campus CAs and PKI  CREN TechTalks- Spring 2000 l Feb 17: Ken Klingenstein and Keith Hazelton/ Middleware project l April 13: Jeff Schiller on Campus applications and Practices with Digital Certificates  Focused Seminars: Possibly April, June  Archived TechTalks at  CA section of the cren.net web site

1/14/00www.cren.net14 Continuing Issues  Monitor structure of PKI infrastructure for higher education needs  How best can CA service serve higher education needs? What is the trust model that will work?  How best can CREN support campus’ move to Campus CAs?  How do we interact with government projects and initiatives?  What content providers are ready?

1/14/00www.cren.net15 Working with lots of folks on this one! Feedback and input essential!