introduction to identity federations
play

Introduction to Identity Federations Brook Schofield eduGAIN Task - PowerPoint PPT Presentation

Introduction to Identity Federations Brook Schofield eduGAIN Task Leader, GN3 Project & Project Development Officer, TERENA schofield@terena.org 15 October 2012 Building Federated Identity Policy, GN3 Symposium, Vienna, Austria Innovation


  1. Introduction to Identity Federations Brook Schofield eduGAIN Task Leader, GN3 Project & Project Development Officer, TERENA schofield@terena.org 15 October 2012 Building Federated Identity Policy, GN3 Symposium, Vienna, Austria Innovation through participation

  2. About me … � Brook Schofield mailto:schofield@terena.org � skype://brookschofield � tel:+31651553991 � http://terena.org/~schofield � linkedin.com/in/brookschofield � Australian living in The Netherlands. Grew up on the island state of Tasmania . Task Leader in the GN3 Project for eduGAIN. Secretary of the Global eduroam Governance Committee. Innovation through participation

  3. What ¡is ¡a ¡federa,on? ¡ Innovation through participation wayf.dk

  4. Technology 1 st focus … Innovation through participation

  5. What is eduGAIN? Me Federation C SP SP SP eduGAIN SP IdP Declaration IdP SP Federation B Constitution Good MDS SP IdP Practice IdP Web SSO SP IdP Metadata SP Federation A Terms of Use Attributes Service Provider Identity Provider Solves the scaling problem � eduGAIN entities are a subset of a federation � Profiles and policies to harmonize environment � More info at http://eduGAIN.org/ � 5 connect • communicate • collaborate Innovation through participation 5

  6. eduGAIN status (in numbers) 15 participant federations � 3 candidate federations & 2 pilot participants � 6 European federations not participating � � AT, DK, EE , IE, SI, UK 8 federations not participating � � AU, CL , CN, IN , JP, NZ, OM , US 18 GN3 Partners without a federation (23 GN3+) � Innovation through participation

  7. Slide 7

  8. Federa,on ¡models… ¡ Innovation through participation wayf.dk

  9. eduroam ¡ WiFi RADIUS server RADIUS server User User Access Point University 123 University ABC DB DB user@uniabc.aq NREN Employee Visitor VLAN VLAN Central RADIUS Student Proxy server VLAN • Trust based on national policy • Security based on 802.1X/RADIUS signaling data • VLAN assignment to separate users ¡ 11 ¡

  10. linkedin.com/in/brookschofield facebook.com/brook.schofield skype://brookschofield brook@terena.org @BrookSchofield +31651553991 Slide 12

Recommend


More recommend