Welcome to CAMP Directory Workshop Ken Klingenstein, Internet2 and University of Colorado-Boulder.

Slides:



Advertisements
Similar presentations
Dr Ken Klingenstein Director, Internet2 Middleware and Security Emerging Infrastructure for Collaboration: Next Generation Plumbing.
Advertisements

Federated Digital Rights Management Mairéad Martin The University of Tennessee TERENA General Assembly Meeting Prague, CZ October 24, 2002.
CAMP Med Welcome to CAMP Med: Identity and Access Management for Medical Applications Workshop Morgan Passiment AAMC Ann West NMI-EDIT EDUCAUSE/Internet2.
Copyright Ann West This work is the intellectual property of the author. Permission is granted for this material to be shared for non-commercial,
Welcome to CAMP Shibboleth Ken Klingenstein, Director, Internet2 Middleware Initiative.
Welcome to CAMP! Ken Klingenstein, Director, Internet2 Middleware Initiative.
2006 © SWITCH Authentication and Authorization Infrastructures in e-Science (and the role of NRENs) Christoph Witzig SWITCH e-IRG, Helsinki, Oct 4, 2006.
David L. Wasley Information Resources & Communications Office of the President University of California Directories and PKI Basic Components of Middleware.
Attributes, Anonymity, and Access: Shibboleth and Globus Integration to Facilitate Grid Collaboration 4th Annual PKI R&D Workshop Tom Barton, Kate Keahey,
Information Resources and Communications University of California, Office of the President UCTrust Implementation Experiences David Walker, UCOP Albert.
Welcome to CAMP Leveraging Campus Authentication Across Boundaries Workshop Ann West NMI-EDIT Outreach Michigan Tech/EDUCAUSE/Internet2.
InCommon Policy Conference April Uses  In order to encourage and facilitate legal music programs, a number of universities have contracted with.
The Rise of Collaborative Tools Ken Klingenstein Project Director, Internet2 Middleware Initiative Chief Technologist, University of Colorado at Boulder.
Credential Provider Operational Practices Statement CAMP Shibboleth June 29, 2004 David Wasley.
Welcome to CAMP Identity Management Integration Workshop Ann West NMI-EDIT EDUCAUSE/Internet2.
NMI-EDIT Outreach: The first five years. Topics for Today  NMI-EDIT background  Activities  Outcomes  Resources.
EDUCAUSE PKI Working Group Where Are We and Where are We Going.
3 September 2015 Federated R US. Agenda  Background on Internet2 Middleware and NSF Middleware Initiative  The body of work  Directories  Shibboleth.
Authority, Virtual Organizations and Diagnostics: Building and Managing Complexity Ken Klingenstein Director, Internet2 Middleware and Security.
Australian Access Federation Robert Hazeltine Identity and Access Management Enterprise Systems Office.
Middleware Planning and Deployment 201: Implementation Roadmap Keith Hazelton, University of Wisconsin/Internet2 Renee Woodten Frost, Internet2/University.
EDUCAUSE Midwest Regional March 24, 2003 Copyright Ann West This work is the intellectual property of the author. Permission is granted for this.
Current Activities in Middleware Ken Klingenstein, Project Director, Internet2 Middleware Initiative Chief Technologist, University of Colorado at Boulder.
Welcome to CAMP: Charting Your Authentication Roadmap Mike Grady Senior Technology Architect and Strategist Campus Information Technologies and Educational.
Middleware: Addressing the Top IT Issues on Campus Renee Woodten Frost Internet2 and University of Michigan CUMREC May 13, 2003.
NSF Middleware Initiative Renee Woodten Frost Assistant Director, Middleware Initiatives Internet2 NSF Middleware Initiative.
Shibboleth A Federated Approach to Authentication and Authorization Fed/Ed PKI Meeting June 16, 2004.
Shibboleth Update RL “Bob” Morgan, Washington Steven Carmody, Brown Scott Cantor, Ohio State Marlena Erdos, IBM/Tivoli Michael Gettes, Georgetown Keith.
Internet2 Middleware Initiative. Discussion Outline  What is Middleware why is it important why is it hard  What are the major components of middleware.
Policy and Technology in Enterprise Directory and Authentication Services No Room to Swing a Cat Michael Gettes, MACE, Duke University Keith Hazelton,
Social Identity Working Group Steve Carmody. Agenda Intro to Using Social Accounts Status and Recent News –Current UT Pilot –Current InCommon Pilot with.
Shibboleth Update Advanced CAMP 7/31/02 RL “Bob” Morgan, Washington Steven Carmody, Brown Scott Cantor, Ohio State Marlena Erdos, IBM/Tivoli Michael Gettes,
Shibboleth Authenticate Locally, Act Globally A Penn State Case Study Renee’ Shuey May 4, 2004 ITS – Emerging Technologies.
Middleware CAMP June Welcome Welcome to the Camp, I guess you all know why we're here. Tommy, by Pete Townsend, The Who We're not gonna take it.
3 Nov 2003 A. Vandenberg © Second NMI Integration Testbed Workshop on Experiences in Middleware Deployment, Anaheim, CA 1 NMI R3 Enterprise Directory Components.
The Golden Age of Plywood Ken Klingenstein Project Director, Internet2 Middleware Initiative Chief Technologist, University of Colorado at Boulder.
1 Protection and Security: Shibboleth. 2 Outline What is the problem Shibboleth is trying to solve? What are the key concepts? How does the Shibboleth.
NSF Middleware Initiative: Enterprise and Desktop Integration Technologies Consortium Renee Woodten Frost Assistant Director Internet2 Middleware Initiative.
GRIDS Center Middleware Overview Sandra Redman Information Technology and Systems Center and Information Technology Research Center National Space Science.
GRID Overview Internet2 Member Meeting Spring 2003 Sandra Redman Information Technology and Systems Center and Information Technology Research Center National.
February 1, 2002 Internet2 Middleware Initiative and MACE RL "Bob" Morgan, University of Washington.
Digital Diversity: Multi- institutional Access to Distributed Course Resources Barry Ribbeck UT HSC - Houston.
PKI Session Overview 1:30 pm edt - Welcome, etiquette, session outline 1:40 pm edt - HEPKI-TAG Update (Jim Jokl, Virginia) 2:00 pm edt - HEPKI-PAG Update.
University of Washington Identity and Access Management IEEAF – RENU Network Design Workshop Seattle - 29 Nov 2007 Lori Stevens, Director, Distributed.
05 October 2001 Directories: The Next Stage Keith Hazelton, Senior IT Architect University of Wisconsin-Madison Keith Hazelton, Senior IT Architect University.
Shibboleth & Federated Identity A Change of Mindset University of Texas Health Science Center at Houston Barry Ribbeck
Internet2 and Cyberinfrastructure Russ Hobby Program Manager,
Middleware CAMP Feb Welcome Welcome to the Camp, I guess you all know why we're here. Tommy, by Pete Townsend, The Who We're not gonna take it Never.
A Word from the Sponsors NMI-EDIT comprises Internet2 and EDUCAUSE –NSF Middleware Initiative (NMI)-Enterprise and Desktop Integration Technologies Consortium.
NMI-EDIT AND Small College Security & ID Management Issues Discussion John Bruggeman, Director of Information Systems, Hebrew Union College-Jewish Institute.
Welcome to Base CAMP: Enterprise Directory Deployment Ken Klingenstein, Director, Internet2 Middleware Initiative Copyright Ken Klingenstein This.
NSF Middleware Initiative Purpose To design, develop, deploy and support a set of reusable, expandable set of middleware functions and services that benefit.
October 2, 2001 Middleware: Pieces and Processes RL "Bob" Morgan, University of Washington.
Shibboleth Authenticate Locally, Act Globally A Penn State Case Study.
NSF Middleware Initiative and Enterprise Middleware: What Can It Do for My Campus? Renee Woodten Frost Internet2/University of Michigan.
NMI-EDIT and Rice University Federated Identity Management: Managing Access to Resources in Texas Barry Ribbeck Director System Architecture and Infrastructure.
Further Resources and Getting Involved Steven Carmody Ann West.
CAMP Shibboleth: Next Steps Steve Carmody, Brown University Ann West, Educause/Internet2/Michigan Tech.
Resources to CAMP: Charting Your Authentication Roadmap.
01 October 2001 “...By Any Other Name…”. Consequences and Truths (Ken) The Pieces and the Processes (Bob) Directories (Keith) Shibboleth and SAML (Scott)
NSF Middleware Initiative and Enterprise Middleware: What Can It Do for My Campus? Mark Luker, EDUCAUSE Copyright Mark Luker, This work is the intellectual.
1 US Higher Education Root CA (USHER) Update Fed/Ed Meeting December 14, 2005 Jim Jokl University of Virginia.
Middleware: Addressing the Top IT Issues on Campus
Vidmid Session Overview
Current Activities in Middleware
Middleware: Addressing the Top IT Issues on Campus
Virtual organization support services:
Virtual organization support services:
Michael R Gettes, Duke University On behalf of the shib project team
A History of the Next Five Years: (the rise of indoor plumbing)
Presentation transcript:

Welcome to CAMP Directory Workshop Ken Klingenstein, Internet2 and University of Colorado-Boulder

CAMP Directory Workshop Feb 3-6, 2004 Topics  Requisite video  A Word from the Sponsors  Overview of Enterprise Directories  Outline of CAMP Agenda

CAMP Directory Workshop Feb 3-6, 2004 A Word from the Sponsors  National Science Foundation Middleware Initiative  Enterprise and Desktop Integration Technologies Consortium (NMI-EDIT) –Internet2, EDUCAUSE, and SURA –Project Goals  Create a common, persistent and robust core middleware infrastructure for the R&E community  Provide tools and services in support of inter-institutional and inter-realm collaborations

CAMP Directory Workshop Feb 3-6, 2004 MACE (Middleware Architecture Committee for Education)  Purpose - to provide advice, create experiments, foster standards, etc. on key technical issues for core middleware within higher education  Membership - Bob Morgan (UW) Chair, Tom Barton (Chicago), Scott Cantor (Ohio State), Steven Carmody (Brown), Michael Gettes (Duke), Keith Hazelton (Wisconsin), Paul Hill (MIT), Jim Jokl (Virginia), Mark Poepping (CMU), Bruce Vincent (Stanford), David Wasley (California), Von Welch (Grid)  European members - Brian Gilmore (Edinburgh), Ton Verschuren (Netherlands), Diego Lopez (Spain)  Creates working groups in major areas, including directories, interrealm access control, PKI, video, P2P, etc.  Works via conference calls, s, occasional serendipitous in- person meetings...

CAMP Directory Workshop Feb 3-6, 2004 Identity Management System  Suite of campus-wide security, access, and information services –Integrates data sources and manages information about people and their contact locations –Establishes electronic identity of users –Issues identity credentials –Uses administrative data and management tools to assign affiliation attributes –…and gives permission to use services based on those attributes

CAMP Directory Workshop Feb 3-6, 2004 Middleware Initiative Axioms  Work the core areas  Focus on support for collaboration  Use federated administration as the lever; have the enterprise broker most services (authentication, authorization, resource discovery, etc.) in inter-realm interactions  Develop a consistent directory infrastructure within R&E  Provide security while not degrading privacy.  Foster interrealm trust fabrics: federations and virtual organizations  Leverage campus expertise and build rough consensus  Support for heterogeneity and open standards  Influence the marketplace; develop where necessary

CAMP Directory Workshop Feb 3-6, 2004 Enterprise Directory Services Enterprise Directory Services – where electronic identifiers are reconciled and institutional identity is established and maintained for all people of interest –Very quick lookup function –Machine address, voice mail box, box location, address, campus identifiers

CAMP Directory Workshop Feb 3-6, 2004 A Map of Middleware Land

CAMP Directory Workshop Feb 3-6, 2004 Core Middleware Scope  Identity and Identifiers – namespaces, identifier crosswalks, real world levels of assurance, etc.  Authentication – campus technologies and policies, interrealm interoperability via PKI, Kerberos, etc.  Directories – enterprise directory services architectures and tools, standard objectclasses, interrealm and registry services  Authorization – permissions and access controls, delegation, privacy management, etc.  Integration Activities – open management tools, use of virtual, federated and hierarchical organizations, enabling common applications with core middleware

CAMP Directory Workshop Feb 3-6, 2004 Interrealm and Federation  Given the strong collaborations within the academic community, there is an urgent need to create inter-realm tools, so  Build consistent campus middleware infrastructure deployments, with outward facing objectclasses, service points, etc. and then  Federate those enterprise deployments, using the outward facing campus infrastructure, with interrealm attribute transports, trust services, etc. and then  Leverage that federation to enable a variety of applications from network authentication to instant messaging, from video to web services, and then, going forward  Create tools and templates that support the management and collaboration of virtual organizations by building on the federated campus infrastructures.

CAMP Directory Workshop Feb 3-6, 2004 Federated administration OTOT OTOT TT A CM CM A VO T Campus 1 Campus 2 Federation

CAMP Directory Workshop Feb 3-6, 2004 Campus Core Middleware Architecture: (Origin perspective)

CAMP Directory Workshop Feb 3-6, 2004 The pieces fit together…  Campus infrastructure –Developing and encouraging the deployment of identity management components, tools, and support services  Inter-realm infrastructure –Leveraging the local organizational infrastructure to enable access to the broader community though  Building on campus identity management infrastructures  Extending them to contain standard schemas and data definitions  Enabling the exchange of access information in a private and secure way  Developing diagnostic tools to make complex middleware interactions easier to understand

CAMP Directory Workshop Feb 3-6, 2004 CAMP Agenda  Directory Implementation focused based on Directory RoadmapDirectory Roadmap  Four management and technical phases –Project Planning –Design –Data –Deployment  Sessions roughly correlate to these phases

CAMP Directory Workshop Feb 3-6, 2004 CAMP Agenda Outline  Wednesday –Project planning, Design, and Data Phases –Active Directory discussion session at lunch  Thursday –Deployment Phase –Life after Implementation: Governance –Free Consulting  Friday –What’s in the future  Authorization and groups management  Shibboleth

CAMP Directory Workshop Feb 3-6, 2004 CD Contents  Contents of the CD –Directory Roadmap –Getting Started Section  General readings and intro material –NMI-EDIT practices, architectures, tools, and software from our four releases –Campus Contributions from some of you in the audience and other generous folks  Thanks for the idea, Jack!  Is it useful? –Vote in the poll on Friday or send feedback to

CAMP Directory Workshop Feb 3-6, 2004 And Thanks to… All the speakers (and their institutions) for their support, knowledge, and enthusiasm and You for attending and participating!