SlideShare a Scribd company logo
1 of 14
eosc-hub.eu
@EOSC_eu
EOSC-hub receives funding from the European Union’s Horizon 2020 research and innovation programme under grant agreement No. 777536.
Nicolas Liampotis (GRNET)
EOSC-hub AAI
2
EOSC-hub AAI overall architecture (45’)
Initial EOSC-hub AAI building blocks (45’)
- B2ACCESS
- Check-in
- INDIGO IAM
- Perun
- MasterPortal
- WaTTS
- RCauth
17/04/2018
Outline
3
EOSC-hub AAI will:
Contribute to the EOSC infrastructure implementation roadmap
by enabling seamless access to a system of research data and
services provided across nations and disciplines
Build on existing interoperable AAI solutions from EGI Federation,
EUDAT CDI, and INDIGO-DataCloud that have successfully
delivered a portfolio of operational services in this field over the
last years
Leverage eduGAIN identity providers and other institutional or
social media credentials to expand the access to researchers,
high-education, and business organisations
17/04/2018
In a nutshell
4
Several initiatives, including the AARC project, have explored the
requirements for federated identity and access management
AARC Analysis of user community and service provider
requirements  https://aarc-project.eu/wp-
content/uploads/2015/10/AARC-DJRA1.1.pdf
- TERENA AAA Study 
https://www.terena.org/publications/files/2012-AAA-Study-report-
final.pdf
- FIMR4 paper  https://cdsweb.cern.ch/record/1442597/files/CERN-
OPEN-2012-006.pdf
FIM4R version 2  https://fim4r.org/wp-
content/uploads/2018/03/FIM4R-Requirements-FROZEN-March-
1st-TIIME-2018.pdf
17/04/2018
General AAI Requirements
517/04/2018
Requirements Summary - AARC
Non-web-
browser
Guest
users
Persistent
Unique Id
Credential
translation
Attribute
Aggregation
Levels of
Assurance
Community
based AuthZ
Social & e-
Gov IDs
Step-up
AuthN
User Managed
Information
User
Friendliness
Incident
Response
Best
Practices
Credential
Delegation
SP
Friendliness
Attribute
Release
617/04/2018
Requirements Summary – FIM4R
Version 2
Onboarding &
support
Security Research
eInfratructure
Discovery &
Usability
Beyond Web Collateral
Infrastructure
Authorization
Assurance
Attribute
Release
Identity
Lifecycle
Usability
74/18/2018
AARC Blueprint Architecture
approach
A set of interoperable architectural building blocks on
top of eduGAIN for international Research Collaboration
84/18/2018
AARC Blueprint Architecture
approach
Adopted by e-Infrastructures providers and research
infrastructures, e.g.
EUDAT B2ACCESS EGI Check-in INDIGO IAM
The EOSC-hub AAI comprises
different AARC BPA-compliant AAIs
- Each of these AAIs acts as a service
gateway. It may also act as a
community AAI (see next slide)
Researchers sign in with their
community identity via their
Research Community AAI
Community-specific services are
connected to a single Research
Community AAI
E-Infra services are connected to a
single e-infra AAI service gateway,
e.g. B2ACCESS, Check-in, IAM, etc
Generic services (e.g. RCauth.eu
Online CA) may be connected to
more than one AAI proxies
917/04/2018
EOSC-hub AAI: Multi-BPA approach
EOSC-hub AAI proxies may serve a
dual purpose:
- Service gateway
- Community identity management
Examples: EUDAT B2ACCESS, EGI
Check-in, INDIGO IAM
1017/04/2018
EOSC-hub AAI: Dual-purpose proxies
1117/04/2018
EOSC-hub AAI: An example
12
Adopt upcoming AARC architecture & policy
recommendations on
- Attribute harmonisation (e.g. affiliation information)
- AUP alignment
Complete integration activities between EOSC-hub AAI
services
Investigate usability, authorization, delegation and user
(de)provisioning aspects in complex multi-domain
scenarios
Investigate EOSC-hub catch-all community AAI for
communities that don’t operate their own AAI solution
17/04/2018
Next steps
If you want to collaborate, or want more
information, please send your comments, questions
or suggestions about the EOSC-hub AAI at aai-
int@mailman.eosc-hub.eu
Get in touch!
eosc-hub.eu @EOSC_eu
nliam@grnet.gr

More Related Content

What's hot

The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....
The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....
The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....EUDAT
 
EOSC-hub RDA 11 Plenary BoF Presentation
EOSC-hub RDA 11 Plenary BoF PresentationEOSC-hub RDA 11 Plenary BoF Presentation
EOSC-hub RDA 11 Plenary BoF PresentationEOSC-hub project
 
EOSC-hub RDA 11 Colocation Presentation
EOSC-hub RDA 11 Colocation PresentationEOSC-hub RDA 11 Colocation Presentation
EOSC-hub RDA 11 Colocation PresentationEOSC-hub project
 
Integrating and managing services for the European Open Science Cloud
Integrating and managing services for the European Open Science CloudIntegrating and managing services for the European Open Science Cloud
Integrating and managing services for the European Open Science CloudOpenAIRE
 
The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...
The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...
The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...EUDAT
 
One size doesn't fit all! - The NRB approach to data management (Ph. Rikir &...
One size doesn't fit all! -  The NRB approach to data management (Ph. Rikir &...One size doesn't fit all! -  The NRB approach to data management (Ph. Rikir &...
One size doesn't fit all! - The NRB approach to data management (Ph. Rikir &...NRB
 
Hnws2 interoperability requirements-v6
Hnws2 interoperability requirements-v6Hnws2 interoperability requirements-v6
Hnws2 interoperability requirements-v6Marilina Asero
 
EDI: Federation of data services to foster the adoption of data-driven AI in ...
EDI: Federation of data services to foster the adoption of data-driven AI in ...EDI: Federation of data services to foster the adoption of data-driven AI in ...
EDI: Federation of data services to foster the adoption of data-driven AI in ...European Data Incubator (EDI)
 
2019 06-18 eosc hub tnc 2019
2019 06-18 eosc hub tnc 20192019 06-18 eosc hub tnc 2019
2019 06-18 eosc hub tnc 2019Tiziana Ferrari
 
ICT and Smart City Initiatives in Hong Kong: An Update
ICT and Smart City Initiatives in Hong Kong: An UpdateICT and Smart City Initiatives in Hong Kong: An Update
ICT and Smart City Initiatives in Hong Kong: An UpdateCharles Mok
 
Getting Equipment Sharing on the Map
Getting Equipment Sharing on the MapGetting Equipment Sharing on the Map
Getting Equipment Sharing on the MapMartin Hamilton
 
EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...
EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...
EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...European Data Incubator (EDI)
 
Towards a European Industrial Data Space: The Boost 4.0 Initiative
Towards a European Industrial Data Space: The Boost 4.0 InitiativeTowards a European Industrial Data Space: The Boost 4.0 Initiative
Towards a European Industrial Data Space: The Boost 4.0 InitiativeBoost40
 
Digitising European Industry & Digital Manufacturing Platforms
Digitising European Industry & Digital Manufacturing Platforms Digitising European Industry & Digital Manufacturing Platforms
Digitising European Industry & Digital Manufacturing Platforms Boost40
 
Shaping the EOSC Portal - future vision for EOSC Hub
Shaping the EOSC Portal - future vision for EOSC Hub Shaping the EOSC Portal - future vision for EOSC Hub
Shaping the EOSC Portal - future vision for EOSC Hub EOSC-hub project
 
EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...
EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...
EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...EOSC-hub project
 
Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...
Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...
Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...EOSC-hub project
 

What's hot (20)

The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....
The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....
The costs of making data FAIR (Marjan Grootveld) - EUDAT Summer School | www....
 
EOSC-hub RDA 11 Plenary BoF Presentation
EOSC-hub RDA 11 Plenary BoF PresentationEOSC-hub RDA 11 Plenary BoF Presentation
EOSC-hub RDA 11 Plenary BoF Presentation
 
EOSC-hub RDA 11 Colocation Presentation
EOSC-hub RDA 11 Colocation PresentationEOSC-hub RDA 11 Colocation Presentation
EOSC-hub RDA 11 Colocation Presentation
 
OSFair2017 Workshop | EGI
OSFair2017 Workshop | EGIOSFair2017 Workshop | EGI
OSFair2017 Workshop | EGI
 
Integrating and managing services for the European Open Science Cloud
Integrating and managing services for the European Open Science CloudIntegrating and managing services for the European Open Science Cloud
Integrating and managing services for the European Open Science Cloud
 
HNSciCloud Overview
HNSciCloud Overview HNSciCloud Overview
HNSciCloud Overview
 
The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...
The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...
The European Commission's Open Data ambition (Marjan Grootveld) - EUDAT Summe...
 
One size doesn't fit all! - The NRB approach to data management (Ph. Rikir &...
One size doesn't fit all! -  The NRB approach to data management (Ph. Rikir &...One size doesn't fit all! -  The NRB approach to data management (Ph. Rikir &...
One size doesn't fit all! - The NRB approach to data management (Ph. Rikir &...
 
Hnws2 interoperability requirements-v6
Hnws2 interoperability requirements-v6Hnws2 interoperability requirements-v6
Hnws2 interoperability requirements-v6
 
EDI: Federation of data services to foster the adoption of data-driven AI in ...
EDI: Federation of data services to foster the adoption of data-driven AI in ...EDI: Federation of data services to foster the adoption of data-driven AI in ...
EDI: Federation of data services to foster the adoption of data-driven AI in ...
 
2019 06-18 eosc hub tnc 2019
2019 06-18 eosc hub tnc 20192019 06-18 eosc hub tnc 2019
2019 06-18 eosc hub tnc 2019
 
ICT and Smart City Initiatives in Hong Kong: An Update
ICT and Smart City Initiatives in Hong Kong: An UpdateICT and Smart City Initiatives in Hong Kong: An Update
ICT and Smart City Initiatives in Hong Kong: An Update
 
Getting Equipment Sharing on the Map
Getting Equipment Sharing on the MapGetting Equipment Sharing on the Map
Getting Equipment Sharing on the Map
 
EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...
EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...
EDI's view on Digital Innovation Hubs Working Group Meeting on Big Data and A...
 
Towards a European Industrial Data Space: The Boost 4.0 Initiative
Towards a European Industrial Data Space: The Boost 4.0 InitiativeTowards a European Industrial Data Space: The Boost 4.0 Initiative
Towards a European Industrial Data Space: The Boost 4.0 Initiative
 
Digitising European Industry & Digital Manufacturing Platforms
Digitising European Industry & Digital Manufacturing Platforms Digitising European Industry & Digital Manufacturing Platforms
Digitising European Industry & Digital Manufacturing Platforms
 
Shaping the EOSC Portal - future vision for EOSC Hub
Shaping the EOSC Portal - future vision for EOSC Hub Shaping the EOSC Portal - future vision for EOSC Hub
Shaping the EOSC Portal - future vision for EOSC Hub
 
EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...
EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...
EOSC-hub contribution to the EOSC implementation, the Hub concept and engagem...
 
Current and future data resources in Scotland
Current and future data resources in ScotlandCurrent and future data resources in Scotland
Current and future data resources in Scotland
 
Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...
Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...
Prompting an EOSC in Practice, Isabel Campos, CSIC & Member of the High Level...
 

Similar to EOSC-hub AAI architecture (EOSC hub week, Malaga, 16 - 20 April 2018)

Curious about EOSC federated AAI?
Curious about EOSC federated AAI? Curious about EOSC federated AAI?
Curious about EOSC federated AAI? EOSC-hub project
 
Curious about EOSC federated AAI?
Curious about EOSC federated AAI?Curious about EOSC federated AAI?
Curious about EOSC federated AAI?Tiziana Ferrari
 
EOSC-hub - EGI Check-in service
EOSC-hub - EGI Check-in serviceEOSC-hub - EGI Check-in service
EOSC-hub - EGI Check-in serviceEOSC-hub project
 
The role of public procurement in the EOSC: previous experience and EOSC-hub ...
The role of public procurement in the EOSC: previous experience and EOSC-hub ...The role of public procurement in the EOSC: previous experience and EOSC-hub ...
The role of public procurement in the EOSC: previous experience and EOSC-hub ...EOSC-hub project
 
Understanding the demand for digital services in research and the role of pub...
Understanding the demand for digital services in research and the role of pub...Understanding the demand for digital services in research and the role of pub...
Understanding the demand for digital services in research and the role of pub...EOSC-hub project
 
EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...
EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...
EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...EOSC-hub project
 
OGC Web Service Shibboleth Interoperability Experiment
OGC Web Service Shibboleth Interoperability ExperimentOGC Web Service Shibboleth Interoperability Experiment
OGC Web Service Shibboleth Interoperability ExperimentEDINA, University of Edinburgh
 
EOSC-hub & RCauth.eu presentation
EOSC-hub & RCauth.eu presentationEOSC-hub & RCauth.eu presentation
EOSC-hub & RCauth.eu presentationEOSC-hub project
 
WeNMR Suite for Structural Biology
WeNMR Suite for Structural BiologyWeNMR Suite for Structural Biology
WeNMR Suite for Structural BiologyEOSC-hub project
 
Archiver 3rd omc_project_overview
Archiver 3rd omc_project_overviewArchiver 3rd omc_project_overview
Archiver 3rd omc_project_overviewArchiver
 
Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...
Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...
Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...EDINA, University of Edinburgh
 
Shibboleth Access Management Federations as an Organisational Model for SDI
Shibboleth Access Management Federations as an Organisational Model for SDIShibboleth Access Management Federations as an Organisational Model for SDI
Shibboleth Access Management Federations as an Organisational Model for SDIEDINA, University of Edinburgh
 
EUDAT Collaborative Data Infrastructure: Data Access and Re-use Service Area
EUDAT Collaborative Data Infrastructure: Data Access and Re-use Service AreaEUDAT Collaborative Data Infrastructure: Data Access and Re-use Service Area
EUDAT Collaborative Data Infrastructure: Data Access and Re-use Service AreaEUDAT
 
Data Processing and Analysis
Data Processing and AnalysisData Processing and Analysis
Data Processing and AnalysisEUDAT
 
2. EOSC-hub (Daan Broeder, CLARIN ERIC)
2. EOSC-hub (Daan Broeder, CLARIN ERIC)2. EOSC-hub (Daan Broeder, CLARIN ERIC)
2. EOSC-hub (Daan Broeder, CLARIN ERIC)SSHOC
 
EGI-EUDAT interoperability| www.eudat.eu |
EGI-EUDAT interoperability| www.eudat.eu | EGI-EUDAT interoperability| www.eudat.eu |
EGI-EUDAT interoperability| www.eudat.eu | EUDAT
 
The EOSC Compute Platform with the EGI-ACE project
The EOSC Compute Platform with the EGI-ACE project The EOSC Compute Platform with the EGI-ACE project
The EOSC Compute Platform with the EGI-ACE project EGI Federation
 

Similar to EOSC-hub AAI architecture (EOSC hub week, Malaga, 16 - 20 April 2018) (20)

Curious about EOSC federated AAI?
Curious about EOSC federated AAI? Curious about EOSC federated AAI?
Curious about EOSC federated AAI?
 
Curious about EOSC federated AAI?
Curious about EOSC federated AAI?Curious about EOSC federated AAI?
Curious about EOSC federated AAI?
 
EOSC-hub - EGI Check-in service
EOSC-hub - EGI Check-in serviceEOSC-hub - EGI Check-in service
EOSC-hub - EGI Check-in service
 
The role of public procurement in the EOSC: previous experience and EOSC-hub ...
The role of public procurement in the EOSC: previous experience and EOSC-hub ...The role of public procurement in the EOSC: previous experience and EOSC-hub ...
The role of public procurement in the EOSC: previous experience and EOSC-hub ...
 
Understanding the demand for digital services in research and the role of pub...
Understanding the demand for digital services in research and the role of pub...Understanding the demand for digital services in research and the role of pub...
Understanding the demand for digital services in research and the role of pub...
 
Access Control in ESDIN: Shibboleth
Access Control in ESDIN: ShibbolethAccess Control in ESDIN: Shibboleth
Access Control in ESDIN: Shibboleth
 
EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...
EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...
EOSC-hub AAI: Initial building blocks (EOSC hub week, Malaga, 16 - 20 April 2...
 
Shibboleth Federations and Secure SDI
Shibboleth Federations and Secure SDIShibboleth Federations and Secure SDI
Shibboleth Federations and Secure SDI
 
OGC Web Service Shibboleth Interoperability Experiment
OGC Web Service Shibboleth Interoperability ExperimentOGC Web Service Shibboleth Interoperability Experiment
OGC Web Service Shibboleth Interoperability Experiment
 
EOSC-hub & RCauth.eu presentation
EOSC-hub & RCauth.eu presentationEOSC-hub & RCauth.eu presentation
EOSC-hub & RCauth.eu presentation
 
DARIAH Thematic Service
DARIAH Thematic ServiceDARIAH Thematic Service
DARIAH Thematic Service
 
WeNMR Suite for Structural Biology
WeNMR Suite for Structural BiologyWeNMR Suite for Structural Biology
WeNMR Suite for Structural Biology
 
Archiver 3rd omc_project_overview
Archiver 3rd omc_project_overviewArchiver 3rd omc_project_overview
Archiver 3rd omc_project_overview
 
Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...
Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...
Some Academic Sector/NMCA outcomes from the OGC Web Service Shibboleth Intero...
 
Shibboleth Access Management Federations as an Organisational Model for SDI
Shibboleth Access Management Federations as an Organisational Model for SDIShibboleth Access Management Federations as an Organisational Model for SDI
Shibboleth Access Management Federations as an Organisational Model for SDI
 
EUDAT Collaborative Data Infrastructure: Data Access and Re-use Service Area
EUDAT Collaborative Data Infrastructure: Data Access and Re-use Service AreaEUDAT Collaborative Data Infrastructure: Data Access and Re-use Service Area
EUDAT Collaborative Data Infrastructure: Data Access and Re-use Service Area
 
Data Processing and Analysis
Data Processing and AnalysisData Processing and Analysis
Data Processing and Analysis
 
2. EOSC-hub (Daan Broeder, CLARIN ERIC)
2. EOSC-hub (Daan Broeder, CLARIN ERIC)2. EOSC-hub (Daan Broeder, CLARIN ERIC)
2. EOSC-hub (Daan Broeder, CLARIN ERIC)
 
EGI-EUDAT interoperability| www.eudat.eu |
EGI-EUDAT interoperability| www.eudat.eu | EGI-EUDAT interoperability| www.eudat.eu |
EGI-EUDAT interoperability| www.eudat.eu |
 
The EOSC Compute Platform with the EGI-ACE project
The EOSC Compute Platform with the EGI-ACE project The EOSC Compute Platform with the EGI-ACE project
The EOSC Compute Platform with the EGI-ACE project
 

More from EOSC-hub project

EOSC-hub Early Adopter Programme
EOSC-hub Early Adopter ProgrammeEOSC-hub Early Adopter Programme
EOSC-hub Early Adopter ProgrammeEOSC-hub project
 
2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - final2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - finalEOSC-hub project
 
Introduction to service management and FitSM
Introduction to service management and FitSMIntroduction to service management and FitSM
Introduction to service management and FitSMEOSC-hub project
 
Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)EOSC-hub project
 
Joining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service ProviderJoining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service ProviderEOSC-hub project
 
PID services - understandability and findability of data
PID services - understandability and findability of dataPID services - understandability and findability of data
PID services - understandability and findability of dataEOSC-hub project
 
Software for data management and exploitation
Software for data management and exploitationSoftware for data management and exploitation
Software for data management and exploitationEOSC-hub project
 
Repositories for long-term preservation - certification
Repositories for long-term preservation - certificationRepositories for long-term preservation - certification
Repositories for long-term preservation - certificationEOSC-hub project
 
EOSC working group on FAIR
EOSC working group on FAIREOSC working group on FAIR
EOSC working group on FAIREOSC-hub project
 
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...EOSC-hub project
 
Services to support FAIR data - Introduction
Services to support FAIR data - IntroductionServices to support FAIR data - Introduction
Services to support FAIR data - IntroductionEOSC-hub project
 
Pathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaborationPathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaborationEOSC-hub project
 
Overview on the HPC CoEs panorama
Overview on the HPC CoEs panoramaOverview on the HPC CoEs panorama
Overview on the HPC CoEs panoramaEOSC-hub project
 
Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...EOSC-hub project
 
ELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hubELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hubEOSC-hub project
 

More from EOSC-hub project (20)

EOSC-hub Early Adopter Programme
EOSC-hub Early Adopter ProgrammeEOSC-hub Early Adopter Programme
EOSC-hub Early Adopter Programme
 
2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - final2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - final
 
Introduction to service management and FitSM
Introduction to service management and FitSMIntroduction to service management and FitSM
Introduction to service management and FitSM
 
Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)
 
Joining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service ProviderJoining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service Provider
 
PID services - understandability and findability of data
PID services - understandability and findability of dataPID services - understandability and findability of data
PID services - understandability and findability of data
 
Software for data management and exploitation
Software for data management and exploitationSoftware for data management and exploitation
Software for data management and exploitation
 
Repositories for long-term preservation - certification
Repositories for long-term preservation - certificationRepositories for long-term preservation - certification
Repositories for long-term preservation - certification
 
EOSC working group on FAIR
EOSC working group on FAIREOSC working group on FAIR
EOSC working group on FAIR
 
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
 
Services to support FAIR data - Introduction
Services to support FAIR data - IntroductionServices to support FAIR data - Introduction
Services to support FAIR data - Introduction
 
EOSC-synergy
EOSC-synergyEOSC-synergy
EOSC-synergy
 
ExPaNDS
ExPaNDSExPaNDS
ExPaNDS
 
EOSC-Pillar
EOSC-PillarEOSC-Pillar
EOSC-Pillar
 
NI4OS-Europe
NI4OS-EuropeNI4OS-Europe
NI4OS-Europe
 
Excellerat CoE
Excellerat CoEExcellerat CoE
Excellerat CoE
 
Pathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaborationPathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaboration
 
Overview on the HPC CoEs panorama
Overview on the HPC CoEs panoramaOverview on the HPC CoEs panorama
Overview on the HPC CoEs panorama
 
Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...
 
ELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hubELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hub
 

Recently uploaded

Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Servicegiselly40
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking MenDelhi Call girls
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEarley Information Science
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slidevu2urc
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024The Digital Insurer
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdflior mazor
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 

Recently uploaded (20)

Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 

EOSC-hub AAI architecture (EOSC hub week, Malaga, 16 - 20 April 2018)

  • 1. eosc-hub.eu @EOSC_eu EOSC-hub receives funding from the European Union’s Horizon 2020 research and innovation programme under grant agreement No. 777536. Nicolas Liampotis (GRNET) EOSC-hub AAI
  • 2. 2 EOSC-hub AAI overall architecture (45’) Initial EOSC-hub AAI building blocks (45’) - B2ACCESS - Check-in - INDIGO IAM - Perun - MasterPortal - WaTTS - RCauth 17/04/2018 Outline
  • 3. 3 EOSC-hub AAI will: Contribute to the EOSC infrastructure implementation roadmap by enabling seamless access to a system of research data and services provided across nations and disciplines Build on existing interoperable AAI solutions from EGI Federation, EUDAT CDI, and INDIGO-DataCloud that have successfully delivered a portfolio of operational services in this field over the last years Leverage eduGAIN identity providers and other institutional or social media credentials to expand the access to researchers, high-education, and business organisations 17/04/2018 In a nutshell
  • 4. 4 Several initiatives, including the AARC project, have explored the requirements for federated identity and access management AARC Analysis of user community and service provider requirements  https://aarc-project.eu/wp- content/uploads/2015/10/AARC-DJRA1.1.pdf - TERENA AAA Study  https://www.terena.org/publications/files/2012-AAA-Study-report- final.pdf - FIMR4 paper  https://cdsweb.cern.ch/record/1442597/files/CERN- OPEN-2012-006.pdf FIM4R version 2  https://fim4r.org/wp- content/uploads/2018/03/FIM4R-Requirements-FROZEN-March- 1st-TIIME-2018.pdf 17/04/2018 General AAI Requirements
  • 5. 517/04/2018 Requirements Summary - AARC Non-web- browser Guest users Persistent Unique Id Credential translation Attribute Aggregation Levels of Assurance Community based AuthZ Social & e- Gov IDs Step-up AuthN User Managed Information User Friendliness Incident Response Best Practices Credential Delegation SP Friendliness Attribute Release
  • 6. 617/04/2018 Requirements Summary – FIM4R Version 2 Onboarding & support Security Research eInfratructure Discovery & Usability Beyond Web Collateral Infrastructure Authorization Assurance Attribute Release Identity Lifecycle Usability
  • 7. 74/18/2018 AARC Blueprint Architecture approach A set of interoperable architectural building blocks on top of eduGAIN for international Research Collaboration
  • 8. 84/18/2018 AARC Blueprint Architecture approach Adopted by e-Infrastructures providers and research infrastructures, e.g. EUDAT B2ACCESS EGI Check-in INDIGO IAM
  • 9. The EOSC-hub AAI comprises different AARC BPA-compliant AAIs - Each of these AAIs acts as a service gateway. It may also act as a community AAI (see next slide) Researchers sign in with their community identity via their Research Community AAI Community-specific services are connected to a single Research Community AAI E-Infra services are connected to a single e-infra AAI service gateway, e.g. B2ACCESS, Check-in, IAM, etc Generic services (e.g. RCauth.eu Online CA) may be connected to more than one AAI proxies 917/04/2018 EOSC-hub AAI: Multi-BPA approach
  • 10. EOSC-hub AAI proxies may serve a dual purpose: - Service gateway - Community identity management Examples: EUDAT B2ACCESS, EGI Check-in, INDIGO IAM 1017/04/2018 EOSC-hub AAI: Dual-purpose proxies
  • 12. 12 Adopt upcoming AARC architecture & policy recommendations on - Attribute harmonisation (e.g. affiliation information) - AUP alignment Complete integration activities between EOSC-hub AAI services Investigate usability, authorization, delegation and user (de)provisioning aspects in complex multi-domain scenarios Investigate EOSC-hub catch-all community AAI for communities that don’t operate their own AAI solution 17/04/2018 Next steps
  • 13. If you want to collaborate, or want more information, please send your comments, questions or suggestions about the EOSC-hub AAI at aai- int@mailman.eosc-hub.eu Get in touch!

Editor's Notes

  1. https://fim4r.org/documents/ Number of groups 11 Number of requirements 39 Identity Lifecycle: Linking & ORCID Discovery & Usability: Service Catalogues, IdP Logos & Smart Discovery Authorization: Realtime, deprovisioning, bona fide & resource allocation Attribute Release & Adoption: Attributes across borders & Entity Attributes Security: Suspension & Incident Response Channels Research eInfrastructure: Federation support & proxy framework Assurance: Step-up & framework adoption Usability: Metadata handling & user experience Beyond Web: Alternative to ECP, translation & delegation Onboarding & Support: Federation dev environment, interfederation support & documentation Critical Collateral Infrastructure: IdP of last resort for all, sustainable operation
  2. The purpose of the AARC Blueprint Architecture (BPA) is to provide set of interoperable architectural building blocks for software architects and technical decision makers, who are designing and implementing access management solutions for international research collaborations.