SlideShare a Scribd company logo
1 of 23
Download to read offline
Federated Access

   Glenn Wearen
      HEAnet
Terminology
Single Log On
    • single point of authentication (e.g ldap)
    • synchronised account and credentials
    • authenticate to each application
Single Sign On
    • single point of authentication
    • single credential, single account
    • authenticate once
Terminology
Identity Provider
     • Organisation that holds identity data/credentials


 Service Provider
     • Organisation accepting federated identities


                     IdP, SP, OP, RP
Terminology
Web SSO
 –   OpenID
 –   Cardspace (Infocard, Higgins etc.)
 –   SAML, WS-Trust
 –   Facebook Connect, Friend Connect
 –   OAuth
 Data exchange
Federated Access in Education
SAML widely adopted in national academic federations
     • UK Access Management Federation
     • InCommon
     • Switch AAI
     • HAKA
     • Swamid
     • AAF                                 Confederation
     • Surfederatie
     • Feide
     • GARR Idem AAI


      SAML used in other sectors Realty, Aerospace, Automobile, 401k
Federation or Service
                                                                 Provider WAYF
                                                                 Server



                                         Institutional SAML
                                         Server
                                                                                     Service Provider
                                                                                     SAML server




                                                                        Service Provider Web
                                                                        Server




                                                                       Se
Institutional User   Institutional Web




                                                                         rvi
                                                                            c
Repository           Server




                                                                           eP
                                                          .  )




                                                                                rov
                                                         IdP




                                                                                   ide
                                                       n(




                                                                                      r(
                                                    tio




                                                                                     SP
                                                titu




                                                                                        )
                                            Ins




                                                                                           .
                                                                    Service Provider User
                                                                    Repository
Federated Access in Education
Edugate
– IdP’s
  •   Institutes of Technology
  •   Universities
  •   Private colleges
  •   Research agencies
Edugate
– SP's
 •   Any IdP can be a SP
 •   Shared services offered by IdP's
 •   Academic content providers
 •   Research portals
 •   Organisations offering academic discount
Membership has its benefits
Federation is a web of trust underpinned by...
  – Policy
     • Membership rules
        – Identity providers must ensure identities are assured
        – Service providers must not abuse data protection rules
     • Confederation/Interfederation
  – Technical
     • Standard protocol
Membership has its benefits
Management of identity provider
  – Consent management
  – Attribute release
HEAnet assistance to get started
  – Directory integration for IdP's
  – Application integration for SP's
Resource Registry -SP
Resource Registry –IdP (i)
Resource Registry –IdP (ii)
Resource Registry – IdP (iv)
Resource Registry – IdP (v)
Resource Registry – IdP (v)
Future Directions
– Confederation
  • UK Federation / eduGAIN
– Attribute aggregation
  • Student account is but one part of a user account
– Who knows?
  • Schools
  • Make a 'social' account out of of the 'campus' id.
  • National student ID
Summary
      Terminology

         SAML

        Edugate

Join us at www.edugate.ie
Glenn Wearen 20091203 Ifif He Anet Gwearen
Glenn Wearen 20091203 Ifif He Anet Gwearen
Glenn Wearen 20091203 Ifif He Anet Gwearen
Glenn Wearen 20091203 Ifif He Anet Gwearen

More Related Content

Viewers also liked

Drugsbeleid in jeughdhuizen
Drugsbeleid in jeughdhuizenDrugsbeleid in jeughdhuizen
Drugsbeleid in jeughdhuizen1003501090
 
Com Score Webinar Getting Beyond Big In Online Video
Com Score Webinar   Getting Beyond Big In Online VideoCom Score Webinar   Getting Beyond Big In Online Video
Com Score Webinar Getting Beyond Big In Online Videobmohri
 
Cian Blackwell - Risk management and mitigation 2011
Cian Blackwell - Risk management and mitigation 2011Cian Blackwell - Risk management and mitigation 2011
Cian Blackwell - Risk management and mitigation 2011Irish Future Internet Forum
 
Who Smokes? Do You?
Who Smokes? Do You?Who Smokes? Do You?
Who Smokes? Do You?Who Smokes?
 
Visual Process, an innovative analytical solution by bridging business and da...
Visual Process, an innovative analytical solution by bridging business and da...Visual Process, an innovative analytical solution by bridging business and da...
Visual Process, an innovative analytical solution by bridging business and da...Avraham CHOUKROUN
 
InsulLiving House Energy Performance Report
InsulLiving House Energy Performance ReportInsulLiving House Energy Performance Report
InsulLiving House Energy Performance ReportJosh Develop
 
Cultura y educación
Cultura y educaciónCultura y educación
Cultura y educaciónlauraback18
 
Ray Carroll, TSSG - Sustainable and Energy Efficient Data Centre
Ray Carroll, TSSG - Sustainable and Energy Efficient Data CentreRay Carroll, TSSG - Sustainable and Energy Efficient Data Centre
Ray Carroll, TSSG - Sustainable and Energy Efficient Data CentreIrish Future Internet Forum
 
Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...
Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...
Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...Irish Future Internet Forum
 

Viewers also liked (19)

Drugsbeleid in jeughdhuizen
Drugsbeleid in jeughdhuizenDrugsbeleid in jeughdhuizen
Drugsbeleid in jeughdhuizen
 
Com Score Webinar Getting Beyond Big In Online Video
Com Score Webinar   Getting Beyond Big In Online VideoCom Score Webinar   Getting Beyond Big In Online Video
Com Score Webinar Getting Beyond Big In Online Video
 
Cian Blackwell - Risk management and mitigation 2011
Cian Blackwell - Risk management and mitigation 2011Cian Blackwell - Risk management and mitigation 2011
Cian Blackwell - Risk management and mitigation 2011
 
Imelda Lambkin - Fp7 At Future Internet 091
Imelda Lambkin - Fp7 At Future Internet 091Imelda Lambkin - Fp7 At Future Internet 091
Imelda Lambkin - Fp7 At Future Internet 091
 
Who Smokes? Do You?
Who Smokes? Do You?Who Smokes? Do You?
Who Smokes? Do You?
 
Future internet Forum Google - Eoghan Nolan.
Future internet Forum Google - Eoghan Nolan. Future internet Forum Google - Eoghan Nolan.
Future internet Forum Google - Eoghan Nolan.
 
WhoSmokes?
WhoSmokes?WhoSmokes?
WhoSmokes?
 
SFI Irish Future Internet Forum
SFI Irish Future Internet ForumSFI Irish Future Internet Forum
SFI Irish Future Internet Forum
 
Publish Ireland Future Internet St Eloff
Publish Ireland Future Internet St EloffPublish Ireland Future Internet St Eloff
Publish Ireland Future Internet St Eloff
 
Visual Process, an innovative analytical solution by bridging business and da...
Visual Process, an innovative analytical solution by bridging business and da...Visual Process, an innovative analytical solution by bridging business and da...
Visual Process, an innovative analytical solution by bridging business and da...
 
InsulLiving House Energy Performance Report
InsulLiving House Energy Performance ReportInsulLiving House Energy Performance Report
InsulLiving House Energy Performance Report
 
Cultura y educación
Cultura y educaciónCultura y educación
Cultura y educación
 
Ray Carroll, TSSG - Sustainable and Energy Efficient Data Centre
Ray Carroll, TSSG - Sustainable and Energy Efficient Data CentreRay Carroll, TSSG - Sustainable and Energy Efficient Data Centre
Ray Carroll, TSSG - Sustainable and Energy Efficient Data Centre
 
Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...
Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...
Barbara Fogerty, Marine Institute - Extended Recognised Maritime Picture to S...
 
Jacques Bus F I I R L Presentation J B
Jacques  Bus  F I  I R L  Presentation  J BJacques  Bus  F I  I R L  Presentation  J B
Jacques Bus F I I R L Presentation J B
 
Willie Donnelly IFIF
Willie Donnelly IFIFWillie Donnelly IFIF
Willie Donnelly IFIF
 
Lindadoyle
LindadoyleLindadoyle
Lindadoyle
 
Session 3 Results
Session 3 ResultsSession 3 Results
Session 3 Results
 
Cultura y educación
Cultura y educaciónCultura y educación
Cultura y educación
 

Similar to Glenn Wearen 20091203 Ifif He Anet Gwearen

Compatible one cloud expowest nov 2012
Compatible one cloud expowest nov 2012Compatible one cloud expowest nov 2012
Compatible one cloud expowest nov 2012CompatibleOne
 
Linking Services and Linked Data: Keynote for AIMSA 2012
Linking Services and Linked Data: Keynote for AIMSA 2012Linking Services and Linked Data: Keynote for AIMSA 2012
Linking Services and Linked Data: Keynote for AIMSA 2012John Domingue
 
Campus Perspectives on OpenRegistry
Campus Perspectives on OpenRegistryCampus Perspectives on OpenRegistry
Campus Perspectives on OpenRegistryJeremy Rosenberg
 
UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...
UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...
UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...Alex Gorbachev
 
Web standards, why care?
Web standards, why care?Web standards, why care?
Web standards, why care?Thomas Roessler
 
Service Oriented Application Development Sterpka
Service Oriented Application Development   SterpkaService Oriented Application Development   Sterpka
Service Oriented Application Development Sterpkabsterpka
 
CrossRef Annual Meeting 2012 CrossRef Overview Ed Pentz
CrossRef Annual Meeting 2012 CrossRef Overview Ed PentzCrossRef Annual Meeting 2012 CrossRef Overview Ed Pentz
CrossRef Annual Meeting 2012 CrossRef Overview Ed PentzCrossref
 
Vodafone xone fev142013v3 ext
Vodafone xone fev142013v3 extVodafone xone fev142013v3 ext
Vodafone xone fev142013v3 extInfiniteGraph
 
Open Source
Open SourceOpen Source
Open Sourceblamb
 
Market Research Report : Cloud Computing Market in India 2010
Market Research Report : Cloud Computing Market in India 2010Market Research Report : Cloud Computing Market in India 2010
Market Research Report : Cloud Computing Market in India 2010Netscribes, Inc.
 
First Operational Technology (OT) High Performance Messaging Patterns for Ent...
First Operational Technology (OT) High Performance Messaging Patterns for Ent...First Operational Technology (OT) High Performance Messaging Patterns for Ent...
First Operational Technology (OT) High Performance Messaging Patterns for Ent...Real-Time Innovations (RTI)
 
Icws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentation
Icws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentationIcws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentation
Icws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentationFreddy Lecue
 
Cloud foundry - the building of the open paas presentation
Cloud foundry - the building of the open paas presentationCloud foundry - the building of the open paas presentation
Cloud foundry - the building of the open paas presentationXianzhu Yue
 
Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...
Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...
Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...Radisys Corporation
 
IBM Pulse 2013 session - DevOps for Mobile Apps
IBM Pulse 2013 session - DevOps for Mobile AppsIBM Pulse 2013 session - DevOps for Mobile Apps
IBM Pulse 2013 session - DevOps for Mobile AppsSanjeev Sharma
 

Similar to Glenn Wearen 20091203 Ifif He Anet Gwearen (20)

FederatedAccessOpenStack.pdf
FederatedAccessOpenStack.pdfFederatedAccessOpenStack.pdf
FederatedAccessOpenStack.pdf
 
Compatible one cloud expowest nov 2012
Compatible one cloud expowest nov 2012Compatible one cloud expowest nov 2012
Compatible one cloud expowest nov 2012
 
Linking Services and Linked Data: Keynote for AIMSA 2012
Linking Services and Linked Data: Keynote for AIMSA 2012Linking Services and Linked Data: Keynote for AIMSA 2012
Linking Services and Linked Data: Keynote for AIMSA 2012
 
Campus Perspectives on OpenRegistry
Campus Perspectives on OpenRegistryCampus Perspectives on OpenRegistry
Campus Perspectives on OpenRegistry
 
UNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP PrototypeUNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP Prototype
 
UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...
UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...
UTHOC2 - Under The Hood of Oracle Clusterware 2.0 - Grid Infrastructure by Al...
 
Web standards, why care?
Web standards, why care?Web standards, why care?
Web standards, why care?
 
Service Oriented Application Development Sterpka
Service Oriented Application Development   SterpkaService Oriented Application Development   Sterpka
Service Oriented Application Development Sterpka
 
CrossRef Annual Meeting 2012 CrossRef Overview Ed Pentz
CrossRef Annual Meeting 2012 CrossRef Overview Ed PentzCrossRef Annual Meeting 2012 CrossRef Overview Ed Pentz
CrossRef Annual Meeting 2012 CrossRef Overview Ed Pentz
 
Vodafone xone fev142013v3 ext
Vodafone xone fev142013v3 extVodafone xone fev142013v3 ext
Vodafone xone fev142013v3 ext
 
Open Source
Open SourceOpen Source
Open Source
 
Market Research Report : Cloud Computing Market in India 2010
Market Research Report : Cloud Computing Market in India 2010Market Research Report : Cloud Computing Market in India 2010
Market Research Report : Cloud Computing Market in India 2010
 
Os Pittaro
Os PittaroOs Pittaro
Os Pittaro
 
First Operational Technology (OT) High Performance Messaging Patterns for Ent...
First Operational Technology (OT) High Performance Messaging Patterns for Ent...First Operational Technology (OT) High Performance Messaging Patterns for Ent...
First Operational Technology (OT) High Performance Messaging Patterns for Ent...
 
Icws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentation
Icws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentationIcws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentation
Icws10 lecue-gorronogoitia-gonzalez-radzimski-villa-presentation
 
Lean- automobile
Lean- automobileLean- automobile
Lean- automobile
 
Cloud foundry - the building of the open paas presentation
Cloud foundry - the building of the open paas presentationCloud foundry - the building of the open paas presentation
Cloud foundry - the building of the open paas presentation
 
OSCON 2011
OSCON 2011OSCON 2011
OSCON 2011
 
Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...
Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...
Leveraging IMS for VoLTE and RCS Services in LTE Networks Presented by Adnan ...
 
IBM Pulse 2013 session - DevOps for Mobile Apps
IBM Pulse 2013 session - DevOps for Mobile AppsIBM Pulse 2013 session - DevOps for Mobile Apps
IBM Pulse 2013 session - DevOps for Mobile Apps
 

More from Irish Future Internet Forum (13)

NEMBES Future Internet position - Dirk Pesch
NEMBES Future Internet position - Dirk PeschNEMBES Future Internet position - Dirk Pesch
NEMBES Future Internet position - Dirk Pesch
 
IBM Research Future Internet
IBM Research Future InternetIBM Research Future Internet
IBM Research Future Internet
 
Michel Riguidel - ENST the Future of the Internet
Michel Riguidel - ENST the Future of the InternetMichel Riguidel - ENST the Future of the Internet
Michel Riguidel - ENST the Future of the Internet
 
Malcolm Crompton, IIS Partners Irish Future Internet Forum - Socioeconomics
Malcolm Crompton, IIS Partners Irish Future Internet Forum - SocioeconomicsMalcolm Crompton, IIS Partners Irish Future Internet Forum - Socioeconomics
Malcolm Crompton, IIS Partners Irish Future Internet Forum - Socioeconomics
 
Model Smart City Barcelona
Model Smart City BarcelonaModel Smart City Barcelona
Model Smart City Barcelona
 
Irish Future Internet Forum Zed Sabeur
Irish Future Internet Forum Zed SabeurIrish Future Internet Forum Zed Sabeur
Irish Future Internet Forum Zed Sabeur
 
IFIF 2011 opening - Willie Donnelly
IFIF 2011 opening - Willie DonnellyIFIF 2011 opening - Willie Donnelly
IFIF 2011 opening - Willie Donnelly
 
Sdecker
SdeckerSdecker
Sdecker
 
Donal Simmie Ifif Poster 1209
Donal Simmie Ifif Poster 1209Donal Simmie Ifif Poster 1209
Donal Simmie Ifif Poster 1209
 
Think Trust A1 Poster Em Final Version
Think Trust A1 Poster Em Final VersionThink Trust A1 Poster Em Final Version
Think Trust A1 Poster Em Final Version
 
Mickposter Nuim
Mickposter NuimMickposter Nuim
Mickposter Nuim
 
Dleigh
DleighDleigh
Dleigh
 
IFIF Agenda
IFIF AgendaIFIF Agenda
IFIF Agenda
 

Recently uploaded

unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxBkGupta21
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr BaganFwdays
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfMounikaPolabathina
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenHervé Boutemy
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
Unleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubUnleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubKalema Edgar
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxLoriGlavin3
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek SchlawackFwdays
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningLars Bell
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024Lonnie McRorey
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 

Recently uploaded (20)

unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptx
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdf
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache Maven
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
Unleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubUnleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding Club
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine Tuning
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 

Glenn Wearen 20091203 Ifif He Anet Gwearen

  • 1. Federated Access Glenn Wearen HEAnet
  • 2. Terminology Single Log On • single point of authentication (e.g ldap) • synchronised account and credentials • authenticate to each application Single Sign On • single point of authentication • single credential, single account • authenticate once
  • 3. Terminology Identity Provider • Organisation that holds identity data/credentials Service Provider • Organisation accepting federated identities IdP, SP, OP, RP
  • 4. Terminology Web SSO – OpenID – Cardspace (Infocard, Higgins etc.) – SAML, WS-Trust – Facebook Connect, Friend Connect – OAuth Data exchange
  • 5. Federated Access in Education SAML widely adopted in national academic federations • UK Access Management Federation • InCommon • Switch AAI • HAKA • Swamid • AAF Confederation • Surfederatie • Feide • GARR Idem AAI SAML used in other sectors Realty, Aerospace, Automobile, 401k
  • 6. Federation or Service Provider WAYF Server Institutional SAML Server Service Provider SAML server Service Provider Web Server Se Institutional User Institutional Web rvi c Repository Server eP . ) rov IdP ide n( r( tio SP titu ) Ins . Service Provider User Repository
  • 8. Edugate – IdP’s • Institutes of Technology • Universities • Private colleges • Research agencies
  • 9. Edugate – SP's • Any IdP can be a SP • Shared services offered by IdP's • Academic content providers • Research portals • Organisations offering academic discount
  • 10. Membership has its benefits Federation is a web of trust underpinned by... – Policy • Membership rules – Identity providers must ensure identities are assured – Service providers must not abuse data protection rules • Confederation/Interfederation – Technical • Standard protocol
  • 11. Membership has its benefits Management of identity provider – Consent management – Attribute release HEAnet assistance to get started – Directory integration for IdP's – Application integration for SP's
  • 18. Future Directions – Confederation • UK Federation / eduGAIN – Attribute aggregation • Student account is but one part of a user account – Who knows? • Schools • Make a 'social' account out of of the 'campus' id. • National student ID
  • 19. Summary Terminology SAML Edugate Join us at www.edugate.ie