SlideShare a Scribd company logo
1 of 13
Download to read offline
Welcome
Identity Federations

October 20th, Vienna
Identity Federations
09:00                                Welcome
                                  Federation Lab
                  Plans and User interface (Andreas) - 10 min
                   Live statistics from Feide (Andreas) - 5 min
        Monitoring and statistics - Monitoring and statistics (Miro) - 15 min
                  Automated SP for testing IdPs (Miro) - 15 min
                     OpenID Connect Lab (Roland) - 40 min
10:30



Coffee Break
11:00
                Federated Provisioning - STINUS (Wayf) - 15 min

                         Moonshot status (Josh) - 20 min

                                       VOOT
                              Sympa Status (Renater)
                              SurfNet Status (SurfNet)
                               Plans and Discussion
12:30


 Lunch

        14:00 Identity Federations + eduGAIN
Identity Federations + eduGAIN

 Lunch
14:00
                      Welcome (Andreas and Valter)

                  Federation Lab and eduGAIN - 25 min
                     Federation Lab in eduGAIN context
                      Service Provider profile validation
                           Attribute set validation
                              Metadata validation

              Discovery and usability, DiscoJuice - 25 min
                     Federation Lab in eduGAIN context
                      Service Provider profile validation
                           Attribute set validation
                              Metadata validation


                 Attribute Semantics (Brook S) - 30 min
15:30



Coffee Break                                                                 may start
                                                                              earlier
16:00       eduGAIN Connectivity Workflow (Valter) - 75 min

                        Workflow of establishing trust
                      between entities within eduGAIN

        Opt-in and opt-out
         Trunctating the list of available IdPs in discovery services
         Federations providing list of trust matrix
         User experience when connectivity is missing
            How to get in contact with the right people, requesting access
            Error messages in IdPs
         SPs handling various set of attributes

                             SAML2int - 15 min
17:30                          to REFEDS?
Federation Lab
Identity Federations

October 20th, Vienna
Federation Lab Version 1.0

✤   Version 1.0 is in operation on https://fed-lab.org

✤   Automated SAML 2.0 SP Testing

✤   SAML Tracer

✤   Web-based debugger
Federation Lab Version 2.0


✤   Test SAML 2.0 SP
✤   Test SAML 2.0 IdP
✤   Test OpenID Connect Provider
✤   Test OpenID Consumer
✤   Test OAuth Provider
✤   Test OAuth Consumer
✤   Validation of Metadata
Version 2.0



✤   Complete new UI to setup and execute the automated testing.

    ✤   Improved user experience, no login required.

✤
FedLab UI - Configuration
FedLab UI - Test execution
Federation Lab - Test federation

✤   IdP Test Federation
     ✤ A feed of operational (test) IdPs that trusts all registered SPs.

     ✤ The purpose is to test Service Providers.

     ✤ Include at least: ProtectNetwork, Feide OpenIdP, ++

✤   SP Test Federation
     ✤ One or more SPs configured to trust all IdPs.

     ✤ Includes a discovery service

     ✤ Simple way to register IdPs

     ✤ Purpose is to test Identity Providers

✤   Focus on eduGAIN
Federation Lab - Test federation

✤   What’s needed:
    ✤   Metadata aggregator
    ✤   Registry
    ✤   Partnerships with various providers
✤   Tight collaboration with eduGAIN
✤   Collaboration with PEER?
✤   Setup DiscoJuice?
Federation Lab - Test federation




✤   Federation Lab Test Federation needs a boost.
✤   One participant should lead the work on this specific task.
Next Up


✤   Statistics Monitoring (Miro) 15 min

✤   Automated SP for testing IdPs (Miro) 15 min

✤   OpenID Connect (Roland) 40 min



✤   Coffee break at 10:30

More Related Content

More from Andreas Åkre Solberg (20)

Dataporten for grunnopplæringa - Workshop September 2017
Dataporten for grunnopplæringa - Workshop September 2017Dataporten for grunnopplæringa - Workshop September 2017
Dataporten for grunnopplæringa - Workshop September 2017
 
Dataporten Workshop
Dataporten WorkshopDataporten Workshop
Dataporten Workshop
 
Dataporten
DataportenDataporten
Dataporten
 
Dataporten for Sigma2, Hell
Dataporten for Sigma2, HellDataporten for Sigma2, Hell
Dataporten for Sigma2, Hell
 
Dataporten intro (workshop with Difi)
Dataporten intro (workshop with Difi)Dataporten intro (workshop with Difi)
Dataporten intro (workshop with Difi)
 
UNINETT Feide Connect (Feide fagdag)
UNINETT Feide Connect (Feide fagdag)UNINETT Feide Connect (Feide fagdag)
UNINETT Feide Connect (Feide fagdag)
 
Connect (UNINETT-konferansen, Tromsø)
Connect (UNINETT-konferansen, Tromsø)Connect (UNINETT-konferansen, Tromsø)
Connect (UNINETT-konferansen, Tromsø)
 
Connect (USIT)
Connect (USIT)Connect (USIT)
Connect (USIT)
 
Feide Connect SUHS 2014
Feide Connect SUHS 2014Feide Connect SUHS 2014
Feide Connect SUHS 2014
 
Feide connect tnc2014
Feide connect   tnc2014Feide connect   tnc2014
Feide connect tnc2014
 
SCIM and VOOT
SCIM and VOOTSCIM and VOOT
SCIM and VOOT
 
Feide Connect
Feide ConnectFeide Connect
Feide Connect
 
OAuth 2.0
OAuth 2.0OAuth 2.0
OAuth 2.0
 
UWAP Tjenesteplattform
UWAP TjenesteplattformUWAP Tjenesteplattform
UWAP Tjenesteplattform
 
UNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP PrototypeUNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP Prototype
 
UNINETT WebApp Park
UNINETT WebApp ParkUNINETT WebApp Park
UNINETT WebApp Park
 
Federation Lab and OpenID Connect
Federation Lab and OpenID ConnectFederation Lab and OpenID Connect
Federation Lab and OpenID Connect
 
Single Logout
Single LogoutSingle Logout
Single Logout
 
SAML2int
SAML2intSAML2int
SAML2int
 
DiscoJuice
DiscoJuiceDiscoJuice
DiscoJuice
 

Recently uploaded

New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
APIForce Zurich 5 April Automation LPDG
APIForce Zurich 5 April  Automation LPDGAPIForce Zurich 5 April  Automation LPDG
APIForce Zurich 5 April Automation LPDGMarianaLemus7
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 

Recently uploaded (20)

New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
APIForce Zurich 5 April Automation LPDG
APIForce Zurich 5 April  Automation LPDGAPIForce Zurich 5 April  Automation LPDG
APIForce Zurich 5 April Automation LPDG
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 

01 Welcome - Federation Lab

  • 2. Identity Federations 09:00 Welcome Federation Lab Plans and User interface (Andreas) - 10 min Live statistics from Feide (Andreas) - 5 min Monitoring and statistics - Monitoring and statistics (Miro) - 15 min Automated SP for testing IdPs (Miro) - 15 min OpenID Connect Lab (Roland) - 40 min 10:30 Coffee Break 11:00 Federated Provisioning - STINUS (Wayf) - 15 min Moonshot status (Josh) - 20 min VOOT Sympa Status (Renater) SurfNet Status (SurfNet) Plans and Discussion 12:30 Lunch 14:00 Identity Federations + eduGAIN
  • 3. Identity Federations + eduGAIN Lunch 14:00 Welcome (Andreas and Valter) Federation Lab and eduGAIN - 25 min Federation Lab in eduGAIN context Service Provider profile validation Attribute set validation Metadata validation Discovery and usability, DiscoJuice - 25 min Federation Lab in eduGAIN context Service Provider profile validation Attribute set validation Metadata validation Attribute Semantics (Brook S) - 30 min 15:30 Coffee Break may start earlier 16:00 eduGAIN Connectivity Workflow (Valter) - 75 min Workflow of establishing trust between entities within eduGAIN Opt-in and opt-out Trunctating the list of available IdPs in discovery services Federations providing list of trust matrix User experience when connectivity is missing How to get in contact with the right people, requesting access Error messages in IdPs SPs handling various set of attributes SAML2int - 15 min 17:30 to REFEDS?
  • 5. Federation Lab Version 1.0 ✤ Version 1.0 is in operation on https://fed-lab.org ✤ Automated SAML 2.0 SP Testing ✤ SAML Tracer ✤ Web-based debugger
  • 6. Federation Lab Version 2.0 ✤ Test SAML 2.0 SP ✤ Test SAML 2.0 IdP ✤ Test OpenID Connect Provider ✤ Test OpenID Consumer ✤ Test OAuth Provider ✤ Test OAuth Consumer ✤ Validation of Metadata
  • 7. Version 2.0 ✤ Complete new UI to setup and execute the automated testing. ✤ Improved user experience, no login required. ✤
  • 8. FedLab UI - Configuration
  • 9. FedLab UI - Test execution
  • 10. Federation Lab - Test federation ✤ IdP Test Federation ✤ A feed of operational (test) IdPs that trusts all registered SPs. ✤ The purpose is to test Service Providers. ✤ Include at least: ProtectNetwork, Feide OpenIdP, ++ ✤ SP Test Federation ✤ One or more SPs configured to trust all IdPs. ✤ Includes a discovery service ✤ Simple way to register IdPs ✤ Purpose is to test Identity Providers ✤ Focus on eduGAIN
  • 11. Federation Lab - Test federation ✤ What’s needed: ✤ Metadata aggregator ✤ Registry ✤ Partnerships with various providers ✤ Tight collaboration with eduGAIN ✤ Collaboration with PEER? ✤ Setup DiscoJuice?
  • 12. Federation Lab - Test federation ✤ Federation Lab Test Federation needs a boost. ✤ One participant should lead the work on this specific task.
  • 13. Next Up ✤ Statistics Monitoring (Miro) 15 min ✤ Automated SP for testing IdPs (Miro) 15 min ✤ OpenID Connect (Roland) 40 min ✤ Coffee break at 10:30