SlideShare a Scribd company logo
1 of 16
Download to read offline
Vienna, Austria
12-13 June, 2023
#FIWARESummit
From Data
to Value
OPEN SOURCE
OPEN STANDARDS
OPEN COMMUNITY
Building Robust European Data Spaces:
Safeguard your Data with Anubis and Amon
Dr. Giovanni Rimassa
Chief Innovation Officer, Martel Innovate
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
DATA SPACES CONTEXT
▪ Data spaces are more about collaboration than technology
• They configure a typical “united we stand, divided we fall” scenario
• Interoperability, federation, distribution, heterogeneity are all key
▪ Trust is central, from a societal but also from a technical point of view
• We need workable and agreed solutions to make Data Spaces happen!
▪ The Data Space Business Alliance acknowledges Technical Convergence
• Discussion Document – Version 2.0 (21st April 2023)
• Chapter 4 on Trust and Data Sovereignty
□ Section 4.3 and Section 4.4 on authorisation and access control
□ Emphasis on policies, distributed access management
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
MARTEL CONTEXT – ORCHESTRA CITIES PLATFORM
IoT Agent
Manager
Context Broker
IoT Agent
API Gateway (Gravitee)
AAA
Manager
(Keycloak)
Dashboard
(Grafana/Urbo)
Admin UI
IoT Agent
IoT Agent
IoT Agent
Data Flow API
Analytics
Data Flow
UI
AMPQ
MQTT LORAWAN LWM2M
API
Manager
Timeseries API (QL)
Third Party Apps
Third Party APIs
Monitoring
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
MARTEL CONTEXT – ORCHESTRA CITIES PLATFORM
IoT Agent
Manager
Context Broker
IoT Agent
API Gateway (Gravitee)
AAA
Manager
(Keycloak)
Dashboard
(Grafana/Urbo)
Admin UI
IoT Agent
IoT Agent
IoT Agent
Data Flow API
Analytics
Data Flow
UI
AMPQ
MQTT LORAWAN LWM2M
API
Manager
Timeseries API (QL)
Third Party Apps
Third Party APIs
Monitoring
Your data, according
to your rules:
evolve them together,
everywhere.
• Define data protection policies in
multiple languages
• Support protecting data residing
“behind” multiple APIs
• Keep data and policy together
• Data owners can apply/change
policies everywhere/anytime
© Martel Innovate | martel-innovate.com
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
Anubis
Amon
https://www.orchestracities.com/anubis/
Request + JWT token
Request + JWT token
ANUBIS AND AMON – BEYOND ORCHESTRA CITIES
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
ANUBIS GOALS
▪ Decoupling API from resource protection
▪ Leverage standardised open access control policy vocabulary (WAC)
▪ Support decentralised control and audit of security & privacy data
policies by data owners
▪ Translated policies vocabulary to different languages to facilitate
interoperability
▪ Leverage state of the art in cloud-native policy management
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
POLICY FORMAT (TODAY)
▪ actor: The user, group or role, that is linked to the policy
▪ action: The action allowed on this resource
(e.g. acl:Read for GET requests)
▪ resource: The urn of the resource being targeted
(e.g. urn:entity:x)
▪ resource_type: The type of the resource.
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
UI TO DESIGN POLICIES
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
ANUBIS - OPEN-SOURCE STRATEGY AND ADOPTION
▪ V0.7.1 on GitHub:
https://github.com/orchestracities/anubis
▪ Key features completed:
• Extension of WAC to ABAC
• Policy translation to and from WAC to
Anubis and to OPA
• Full implementation of Solid WAC
• Decoupling of data access policies
and an API format
• Example configuration for Orion
Context Broker and Anubis itself
• Keycloak integration for tenancies
• Policy distribution middleware
▪ W3C WAC
▪ W3C ODRL
▪ OAUTH2 and OIDC
▪ OPA
▪ LIBP2P.io
License: APACHE 2.0.
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
Amon GOALS
▪ Define policies for data anonymisation and encryption
▪ Decouple the policies from the application of the encryption
and anonymisation techniques
▪ Attribute based
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
DATA PROTECTION ENFORCEMENT EXAMPLE
Policy
 resource: urn:resource:example
 resource_type: person
 attributes: [dateOfBirth, email]
 mode: in_transit
 technique: anonymise
urn:resource:example
 dateOfBirth: 31/05/1978
 Email: admin@mail.com
urn:resource:example
 dateOfBirth: 01/01/1970
 Email: a***n@mail.com
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
POLICY FORMAT
▪ resource: The urn of the resource being targeted
(e.g. urn:entity:x)
▪ resource_type: The type of the resource.
▪ attributes: The set of attributes the protection applies to
▪ mode: The protection mode applied (in transit, at rest)
▪ technique: The protection technique applied (e.g. anonymise,
encrypt, …)
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
AMON - OPEN-SOURCE STRATEGY AND ADOPTION
▪ V0.1 on GitHub:
https://github.com/orchestracities/amon
▪ Key features completed:
• Policy definition
• OIDC with Keycloak
▪ W3C WAC
▪ W3C ODRL
▪ OAUTH2 and OIDC
License: APACHE 2.0.
Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org
Hosting Partner Keystone Sponsors
Media Partners
Find Us On Stay up to date Be certified and featured
JOIN OUR NEWSLETTER
Vienna, Austria
12-13 June, 2023
#FIWARESummit
Thanks!

More Related Content

Similar to GiovanniRimassa-v1.0.pdf

Smart Energy-Vincenzo Croce.pptx
Smart Energy-Vincenzo Croce.pptxSmart Energy-Vincenzo Croce.pptx
Smart Energy-Vincenzo Croce.pptxFIWARE
 
David Campro - FromData2ML (1).pptx
David Campro - FromData2ML  (1).pptxDavid Campro - FromData2ML  (1).pptx
David Campro - FromData2ML (1).pptxFIWARE
 
Marcel Wagner - Combining NGSI-LD and SHACL_v2.pptx
Marcel Wagner - Combining NGSI-LD and SHACL_v2.pptxMarcel Wagner - Combining NGSI-LD and SHACL_v2.pptx
Marcel Wagner - Combining NGSI-LD and SHACL_v2.pptxFIWARE
 
Juanjo Hierro - Integrating Trust and IAM with trading in Data Space Connect...
Juanjo Hierro -  Integrating Trust and IAM with trading in Data Space Connect...Juanjo Hierro -  Integrating Trust and IAM with trading in Data Space Connect...
Juanjo Hierro - Integrating Trust and IAM with trading in Data Space Connect...FIWARE
 
Intro_Clara Pezuela.pptx
Intro_Clara Pezuela.pptxIntro_Clara Pezuela.pptx
Intro_Clara Pezuela.pptxFIWARE
 
Syrine Souissi – AWS (2).pdf
Syrine Souissi – AWS (2).pdfSyrine Souissi – AWS (2).pdf
Syrine Souissi – AWS (2).pdfFIWARE
 
slides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdf
slides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdfslides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdf
slides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdfThomasGraf42
 
Dr. Álvaro Alonso - FrugalAI-UPM.pptx
Dr. Álvaro Alonso - FrugalAI-UPM.pptxDr. Álvaro Alonso - FrugalAI-UPM.pptx
Dr. Álvaro Alonso - FrugalAI-UPM.pptxFIWARE
 
Laurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptx
Laurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptxLaurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptx
Laurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptxFIWARE
 
Smartie - Project overview
Smartie - Project overview Smartie - Project overview
Smartie - Project overview DunavNET
 
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUMATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUMATMOSPHERE .
 
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUMATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUMEUBrasilCloudFORUM .
 
Cameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptx
Cameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptxCameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptx
Cameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptxFIWARE
 
Establishing data sharing standards to promote global industry development
Establishing data sharing standards to promote global industry developmentEstablishing data sharing standards to promote global industry development
Establishing data sharing standards to promote global industry developmentThorsten Huelsmann
 
Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?
Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?
Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?Denodo
 
W3 presentation gfii 6 dec 2013
W3   presentation gfii 6 dec 2013W3   presentation gfii 6 dec 2013
W3 presentation gfii 6 dec 2013Bernard Odier
 

Similar to GiovanniRimassa-v1.0.pdf (20)

Smart Energy-Vincenzo Croce.pptx
Smart Energy-Vincenzo Croce.pptxSmart Energy-Vincenzo Croce.pptx
Smart Energy-Vincenzo Croce.pptx
 
David Campro - FromData2ML (1).pptx
David Campro - FromData2ML  (1).pptxDavid Campro - FromData2ML  (1).pptx
David Campro - FromData2ML (1).pptx
 
Marcel Wagner - Combining NGSI-LD and SHACL_v2.pptx
Marcel Wagner - Combining NGSI-LD and SHACL_v2.pptxMarcel Wagner - Combining NGSI-LD and SHACL_v2.pptx
Marcel Wagner - Combining NGSI-LD and SHACL_v2.pptx
 
Juanjo Hierro - Integrating Trust and IAM with trading in Data Space Connect...
Juanjo Hierro -  Integrating Trust and IAM with trading in Data Space Connect...Juanjo Hierro -  Integrating Trust and IAM with trading in Data Space Connect...
Juanjo Hierro - Integrating Trust and IAM with trading in Data Space Connect...
 
Intro_Clara Pezuela.pptx
Intro_Clara Pezuela.pptxIntro_Clara Pezuela.pptx
Intro_Clara Pezuela.pptx
 
Syrine Souissi – AWS (2).pdf
Syrine Souissi – AWS (2).pdfSyrine Souissi – AWS (2).pdf
Syrine Souissi – AWS (2).pdf
 
1213532535.pdf
1213532535.pdf1213532535.pdf
1213532535.pdf
 
slides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdf
slides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdfslides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdf
slides-117-nmrg-sessb-data-management-paradigms-data-fabric-and-data-mesh-00.pdf
 
Dr. Álvaro Alonso - FrugalAI-UPM.pptx
Dr. Álvaro Alonso - FrugalAI-UPM.pptxDr. Álvaro Alonso - FrugalAI-UPM.pptx
Dr. Álvaro Alonso - FrugalAI-UPM.pptx
 
Laurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptx
Laurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptxLaurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptx
Laurent Curnier – Monaco DataPlatform - LaurentCURNIER_.pptx
 
Smartie - Project overview
Smartie - Project overview Smartie - Project overview
Smartie - Project overview
 
ION Hangzhou - Developing the Internet of Things (Morning Keynote)
ION Hangzhou - Developing the Internet of Things (Morning Keynote)ION Hangzhou - Developing the Internet of Things (Morning Keynote)
ION Hangzhou - Developing the Internet of Things (Morning Keynote)
 
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUMATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
 
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUMATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
ATMOSPHERE - Concertation Meeting EUBrasilCloudFORUM
 
Cameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptx
Cameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptxCameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptx
Cameron Brooks_FGS23_FIWARE Summit_Keynote_Cameron.pptx
 
Columbia CITI Econonomics of Net 060515 final
Columbia CITI Econonomics of Net 060515 finalColumbia CITI Econonomics of Net 060515 final
Columbia CITI Econonomics of Net 060515 final
 
Columbia citi economics of net 060515 final
Columbia citi economics of net 060515 finalColumbia citi economics of net 060515 final
Columbia citi economics of net 060515 final
 
Establishing data sharing standards to promote global industry development
Establishing data sharing standards to promote global industry developmentEstablishing data sharing standards to promote global industry development
Establishing data sharing standards to promote global industry development
 
Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?
Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?
Finding Your Ideal Data Architecture: Data Fabric, Data Mesh or Both?
 
W3 presentation gfii 6 dec 2013
W3   presentation gfii 6 dec 2013W3   presentation gfii 6 dec 2013
W3 presentation gfii 6 dec 2013
 

More from FIWARE

Behm_Herne_NeMo_akt.pptx
Behm_Herne_NeMo_akt.pptxBehm_Herne_NeMo_akt.pptx
Behm_Herne_NeMo_akt.pptxFIWARE
 
Katharina Hogrebe Herne Digital Days.pdf
 Katharina Hogrebe Herne Digital Days.pdf Katharina Hogrebe Herne Digital Days.pdf
Katharina Hogrebe Herne Digital Days.pdfFIWARE
 
Christoph Mertens_IDSA_Introduction to Data Spaces.pptx
Christoph Mertens_IDSA_Introduction to Data Spaces.pptxChristoph Mertens_IDSA_Introduction to Data Spaces.pptx
Christoph Mertens_IDSA_Introduction to Data Spaces.pptxFIWARE
 
Behm_Herne_NeMo.pptx
Behm_Herne_NeMo.pptxBehm_Herne_NeMo.pptx
Behm_Herne_NeMo.pptxFIWARE
 
Evangelists + iHubs Promo Slides.pptx
Evangelists + iHubs Promo Slides.pptxEvangelists + iHubs Promo Slides.pptx
Evangelists + iHubs Promo Slides.pptxFIWARE
 
Lukas Künzel Smart City Operating System.pptx
Lukas Künzel Smart City Operating System.pptxLukas Künzel Smart City Operating System.pptx
Lukas Künzel Smart City Operating System.pptxFIWARE
 
Pierre Golz Der Transformationsprozess im Konzern Stadt.pptx
Pierre Golz Der Transformationsprozess im Konzern Stadt.pptxPierre Golz Der Transformationsprozess im Konzern Stadt.pptx
Pierre Golz Der Transformationsprozess im Konzern Stadt.pptxFIWARE
 
Dennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptxDennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptxFIWARE
 
Ulrich Ahle_FIWARE.pptx
Ulrich Ahle_FIWARE.pptxUlrich Ahle_FIWARE.pptx
Ulrich Ahle_FIWARE.pptxFIWARE
 
Aleksandar Vrglevski _FIWARE DACH_OSIH.pptx
Aleksandar Vrglevski _FIWARE DACH_OSIH.pptxAleksandar Vrglevski _FIWARE DACH_OSIH.pptx
Aleksandar Vrglevski _FIWARE DACH_OSIH.pptxFIWARE
 
Water Quality - Lukas Kuenzel.pdf
Water Quality - Lukas Kuenzel.pdfWater Quality - Lukas Kuenzel.pdf
Water Quality - Lukas Kuenzel.pdfFIWARE
 
FiWareSummit.msGIS-Data-to-Value.2023.06.12.pptx
FiWareSummit.msGIS-Data-to-Value.2023.06.12.pptxFiWareSummit.msGIS-Data-to-Value.2023.06.12.pptx
FiWareSummit.msGIS-Data-to-Value.2023.06.12.pptxFIWARE
 
Boris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptx
Boris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptxBoris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptx
Boris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptxFIWARE
 
Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....
Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....
Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....FIWARE
 
Abdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdf
Abdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdfAbdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdf
Abdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdfFIWARE
 
FGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdf
FGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdfFGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdf
FGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdfFIWARE
 
HTAG_Skalierung_Plattform_lokal_final_versand.pptx
HTAG_Skalierung_Plattform_lokal_final_versand.pptxHTAG_Skalierung_Plattform_lokal_final_versand.pptx
HTAG_Skalierung_Plattform_lokal_final_versand.pptxFIWARE
 
WE_LoRaWAN _ IoT.pptx
WE_LoRaWAN  _ IoT.pptxWE_LoRaWAN  _ IoT.pptx
WE_LoRaWAN _ IoT.pptxFIWARE
 
EU Opp_Clara Pezuela - German chapter.pptx
EU Opp_Clara Pezuela - German chapter.pptxEU Opp_Clara Pezuela - German chapter.pptx
EU Opp_Clara Pezuela - German chapter.pptxFIWARE
 
OSIH.pptx
OSIH.pptxOSIH.pptx
OSIH.pptxFIWARE
 

More from FIWARE (20)

Behm_Herne_NeMo_akt.pptx
Behm_Herne_NeMo_akt.pptxBehm_Herne_NeMo_akt.pptx
Behm_Herne_NeMo_akt.pptx
 
Katharina Hogrebe Herne Digital Days.pdf
 Katharina Hogrebe Herne Digital Days.pdf Katharina Hogrebe Herne Digital Days.pdf
Katharina Hogrebe Herne Digital Days.pdf
 
Christoph Mertens_IDSA_Introduction to Data Spaces.pptx
Christoph Mertens_IDSA_Introduction to Data Spaces.pptxChristoph Mertens_IDSA_Introduction to Data Spaces.pptx
Christoph Mertens_IDSA_Introduction to Data Spaces.pptx
 
Behm_Herne_NeMo.pptx
Behm_Herne_NeMo.pptxBehm_Herne_NeMo.pptx
Behm_Herne_NeMo.pptx
 
Evangelists + iHubs Promo Slides.pptx
Evangelists + iHubs Promo Slides.pptxEvangelists + iHubs Promo Slides.pptx
Evangelists + iHubs Promo Slides.pptx
 
Lukas Künzel Smart City Operating System.pptx
Lukas Künzel Smart City Operating System.pptxLukas Künzel Smart City Operating System.pptx
Lukas Künzel Smart City Operating System.pptx
 
Pierre Golz Der Transformationsprozess im Konzern Stadt.pptx
Pierre Golz Der Transformationsprozess im Konzern Stadt.pptxPierre Golz Der Transformationsprozess im Konzern Stadt.pptx
Pierre Golz Der Transformationsprozess im Konzern Stadt.pptx
 
Dennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptxDennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptx
 
Ulrich Ahle_FIWARE.pptx
Ulrich Ahle_FIWARE.pptxUlrich Ahle_FIWARE.pptx
Ulrich Ahle_FIWARE.pptx
 
Aleksandar Vrglevski _FIWARE DACH_OSIH.pptx
Aleksandar Vrglevski _FIWARE DACH_OSIH.pptxAleksandar Vrglevski _FIWARE DACH_OSIH.pptx
Aleksandar Vrglevski _FIWARE DACH_OSIH.pptx
 
Water Quality - Lukas Kuenzel.pdf
Water Quality - Lukas Kuenzel.pdfWater Quality - Lukas Kuenzel.pdf
Water Quality - Lukas Kuenzel.pdf
 
FiWareSummit.msGIS-Data-to-Value.2023.06.12.pptx
FiWareSummit.msGIS-Data-to-Value.2023.06.12.pptxFiWareSummit.msGIS-Data-to-Value.2023.06.12.pptx
FiWareSummit.msGIS-Data-to-Value.2023.06.12.pptx
 
Boris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptx
Boris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptxBoris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptx
Boris Otto_FGS2023_Opening- EU Innovations from Data_PUB_V1_BOt.pptx
 
Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....
Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....
Bjoern de Vidts_FGS23_Opening_athumi - bjord de vidts - personal data spaces....
 
Abdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdf
Abdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdfAbdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdf
Abdulrahman Ibrahim_FGS23 Opening - Abdulrahman Ibrahim.pdf
 
FGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdf
FGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdfFGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdf
FGS2023_Opening_Red Hat Keynote Andrea Battaglia.pdf
 
HTAG_Skalierung_Plattform_lokal_final_versand.pptx
HTAG_Skalierung_Plattform_lokal_final_versand.pptxHTAG_Skalierung_Plattform_lokal_final_versand.pptx
HTAG_Skalierung_Plattform_lokal_final_versand.pptx
 
WE_LoRaWAN _ IoT.pptx
WE_LoRaWAN  _ IoT.pptxWE_LoRaWAN  _ IoT.pptx
WE_LoRaWAN _ IoT.pptx
 
EU Opp_Clara Pezuela - German chapter.pptx
EU Opp_Clara Pezuela - German chapter.pptxEU Opp_Clara Pezuela - German chapter.pptx
EU Opp_Clara Pezuela - German chapter.pptx
 
OSIH.pptx
OSIH.pptxOSIH.pptx
OSIH.pptx
 

Recently uploaded

CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistandanishmna97
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelDeepika Singh
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
Introduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDMIntroduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDMKumar Satyam
 
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKSpring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKJago de Vreede
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Zilliz
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Jeffrey Haguewood
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontologyjohnbeverley2021
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Orbitshub
 
JohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptxJohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptxJohnPollard37
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdfSandro Moreira
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...Zilliz
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businesspanagenda
 
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)Samir Dash
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Victor Rentea
 

Recently uploaded (20)

CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering Developers
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Introduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDMIntroduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDM
 
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKSpring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
JohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptxJohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptx
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 

GiovanniRimassa-v1.0.pdf

  • 1. Vienna, Austria 12-13 June, 2023 #FIWARESummit From Data to Value OPEN SOURCE OPEN STANDARDS OPEN COMMUNITY Building Robust European Data Spaces: Safeguard your Data with Anubis and Amon Dr. Giovanni Rimassa Chief Innovation Officer, Martel Innovate
  • 2. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org DATA SPACES CONTEXT ▪ Data spaces are more about collaboration than technology • They configure a typical “united we stand, divided we fall” scenario • Interoperability, federation, distribution, heterogeneity are all key ▪ Trust is central, from a societal but also from a technical point of view • We need workable and agreed solutions to make Data Spaces happen! ▪ The Data Space Business Alliance acknowledges Technical Convergence • Discussion Document – Version 2.0 (21st April 2023) • Chapter 4 on Trust and Data Sovereignty □ Section 4.3 and Section 4.4 on authorisation and access control □ Emphasis on policies, distributed access management
  • 3. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org MARTEL CONTEXT – ORCHESTRA CITIES PLATFORM IoT Agent Manager Context Broker IoT Agent API Gateway (Gravitee) AAA Manager (Keycloak) Dashboard (Grafana/Urbo) Admin UI IoT Agent IoT Agent IoT Agent Data Flow API Analytics Data Flow UI AMPQ MQTT LORAWAN LWM2M API Manager Timeseries API (QL) Third Party Apps Third Party APIs Monitoring
  • 4. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org MARTEL CONTEXT – ORCHESTRA CITIES PLATFORM IoT Agent Manager Context Broker IoT Agent API Gateway (Gravitee) AAA Manager (Keycloak) Dashboard (Grafana/Urbo) Admin UI IoT Agent IoT Agent IoT Agent Data Flow API Analytics Data Flow UI AMPQ MQTT LORAWAN LWM2M API Manager Timeseries API (QL) Third Party Apps Third Party APIs Monitoring
  • 5. Your data, according to your rules: evolve them together, everywhere. • Define data protection policies in multiple languages • Support protecting data residing “behind” multiple APIs • Keep data and policy together • Data owners can apply/change policies everywhere/anytime © Martel Innovate | martel-innovate.com
  • 6. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org Anubis Amon https://www.orchestracities.com/anubis/ Request + JWT token Request + JWT token ANUBIS AND AMON – BEYOND ORCHESTRA CITIES
  • 7. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org ANUBIS GOALS ▪ Decoupling API from resource protection ▪ Leverage standardised open access control policy vocabulary (WAC) ▪ Support decentralised control and audit of security & privacy data policies by data owners ▪ Translated policies vocabulary to different languages to facilitate interoperability ▪ Leverage state of the art in cloud-native policy management
  • 8. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org POLICY FORMAT (TODAY) ▪ actor: The user, group or role, that is linked to the policy ▪ action: The action allowed on this resource (e.g. acl:Read for GET requests) ▪ resource: The urn of the resource being targeted (e.g. urn:entity:x) ▪ resource_type: The type of the resource.
  • 9. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org UI TO DESIGN POLICIES
  • 10. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org ANUBIS - OPEN-SOURCE STRATEGY AND ADOPTION ▪ V0.7.1 on GitHub: https://github.com/orchestracities/anubis ▪ Key features completed: • Extension of WAC to ABAC • Policy translation to and from WAC to Anubis and to OPA • Full implementation of Solid WAC • Decoupling of data access policies and an API format • Example configuration for Orion Context Broker and Anubis itself • Keycloak integration for tenancies • Policy distribution middleware ▪ W3C WAC ▪ W3C ODRL ▪ OAUTH2 and OIDC ▪ OPA ▪ LIBP2P.io License: APACHE 2.0.
  • 11. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org Amon GOALS ▪ Define policies for data anonymisation and encryption ▪ Decouple the policies from the application of the encryption and anonymisation techniques ▪ Attribute based
  • 12. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org DATA PROTECTION ENFORCEMENT EXAMPLE Policy  resource: urn:resource:example  resource_type: person  attributes: [dateOfBirth, email]  mode: in_transit  technique: anonymise urn:resource:example  dateOfBirth: 31/05/1978  Email: admin@mail.com urn:resource:example  dateOfBirth: 01/01/1970  Email: a***n@mail.com
  • 13. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org POLICY FORMAT ▪ resource: The urn of the resource being targeted (e.g. urn:entity:x) ▪ resource_type: The type of the resource. ▪ attributes: The set of attributes the protection applies to ▪ mode: The protection mode applied (in transit, at rest) ▪ technique: The protection technique applied (e.g. anonymise, encrypt, …)
  • 14. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org AMON - OPEN-SOURCE STRATEGY AND ADOPTION ▪ V0.1 on GitHub: https://github.com/orchestracities/amon ▪ Key features completed: • Policy definition • OIDC with Keycloak ▪ W3C WAC ▪ W3C ODRL ▪ OAUTH2 and OIDC License: APACHE 2.0.
  • 15. Vienna, 12-13 June, 2023 | #FIWARESummit www.fiware.org Hosting Partner Keystone Sponsors Media Partners Find Us On Stay up to date Be certified and featured JOIN OUR NEWSLETTER
  • 16. Vienna, Austria 12-13 June, 2023 #FIWARESummit Thanks!