27 April Collaboration Infrastructure Niels van Dijk, Frank Pinxt, SURFnet

Size: px
Start display at page:

Download "27 April Collaboration Infrastructure Niels van Dijk, Frank Pinxt, SURFnet"

Transcription

1 27 April 2009 Collaboration Infrastructure Niels van Dijk, Frank Pinxt, SURFnet

2 About the presenters Niels van Dijk, Technical Product Manager Advanced Services Frank Pinxt, Project Manager Advanced Services 2

3 Agenda - SURFnet Organization - The CIFC project - The CIFC results 3

4 SURFnet 4

5 SURFnet in a nutshell - Develops and operates a network for education and research and develops innovative services such as security, authentication and collaboration - Unique example of public/private partnership - More than 160 not-for-profit organizations have joined, 1 million users - Financing Innovation: 50%/50% by government/businesses Operations: user fee 5

6 SURFnet6 - One of the fastest and most advanced networks in the world - More than 8000 km of dark-fibre pairs that reach all the way into the institutions - Own photonic network - Hybrid network services: Internet connection and lightpaths 6

7 Leading in lightpaths Thanks to SURF, Amsterdam has Europe s main Internet exchange 28 april

8 Security SURF s view: Help users make secure use of network services Initiative: - Researches security breaches - Coordinates introduction of solutions - Provides information on security 8

9 Identity management SURF s view: Help users gain secure and easy access to sources of information Initiative: - Access to information and services from various different providers - Based on own organisation s account 9

10 Advanced services SURF s view: Encourage users to use advanced ICT services Initiatives: - SURFgroepen: online collaboration - SURFmedia: simple and secure live and on-demand streaming to play, save and share media files 10

11 Cycle of innovative services When services are offered by the market, SURF gradually withdraws them Based on innovation projects (GigaPort, SURFworks, SURFnet/Kennisnet) Based on operations Technology development Customer requirements Technology Scouting User research Encouraging Feasibility Service Phasing Use 4 Production 5 6 study development out & Support Feedback Plan for feasibility study Business case & SD plan Introduction of service Large-scale service provision Phasing out of service Ceasing service 11

12 The CIFC Project Canadian Ice FishingChampionship 12

13 CIFC - Acronym Definition - CIFC Canadian Independent Film Caucus - CIFC Center for Informed Food Choices - CIFC Cost, Insurance, Freight and Commissio - CIFC Canadian Investment Funds Course - CIFC Commander s Information Fusion Cell - CIFC Christian Inter-Fellowship Council - CIFC Canadian Ice Fishing Championships - CIFC Chinese Internet for Christ - CIFC Cortes Island Forest Committee - CIFC C Is For Cookie (Sesame Street) - CIFC Central Illinois Fuel Company - CIFC Combined Intelligence Fusion Center 13

14 Overview 14

15 Goal Create a coherent infrastructure of loosely coupled collaborative services, based on (emerging) Open Standards and enabled by access federations Investigate how to create such a infrastructure: Gather functional requirements Define governing principals Propose architecture Investigate Open Standards 15

16 Results Report Collaboration Infrastructure Advise (go/no-go) Proof of Concept fase Report federated group management across services Report generic provisioning, deprovisioning and directories Advise (go/no-go) Service development 16

17 Organisation 17

18 Steering Committee Program management Names Erwin Bleumink Role Program mananager Program / project support Names Manon Esmyer Role Program secretary / Projectbureau Steering Committee Names Floor Jas Roel Rexwinkel Harold Teunissen Role Business Executive Senior User Senior Supplier 18

19 Projectteam Projectteam Names Frank Pinxt Niels van Dijk Paul van Dijk Alexander Blanc Maarten Kremers Frank Hogenkamp Roland van Rijswijk / Hans Zandbelt Role Projectmanager Technical Product Manager (TPM) Product Manager Product Manager Future TPM (together with Niels van Dijk) Uitvoering workshopprogramma Technical specialist middleware applications Mark de Jong (Infotectuur) Architect / specialist education / sharepoint Peter Clijsters (Everett) Okke Harsta (Gartner) Architect / specialist middlewaretoepassingen Architect / senior consultant 19

20 Advisory Board Advisory Board Names Frank Benneker Nico Juist Gera Pronk John Doove Michael van Wetering Ken Klingenstein Frederique van Til Peter Wittenburg Erwin Bleumink Henk Eertink David Groep Arjen Barnhard Hans Schaffers Maarten Korz Organisation UvA INHOLLAND SURFfoundation SURFshare SURFfoundation Kennisnet Internet2 JISC CLARIN SURFnet Telematica Instituut NIKHEF INHOLLAND Dialogic / Helsinki School of Economics Rabobank 20

21 Planning Januari: Februari: March.. May: June: Initiation Scoping Research + Preparation Reports Project closure 21

22 27 April 2009 Preliminary results

23 Topics SURFgroepen & SURFfederatie SURFfederatie A bit on SURFgroepen Why CICF? Collaboration Infrastructure Workshop results: Functional requirements Architecture proposal Components Flow 23 Federated Collaboratories Service spanning group management

24 Federation Models Business US: SAML 1.x IDP SP - de-facto - NxN - Shared trust, pt2pt - Education US/Europa IDP IDP SP SP - Shibboleth IDP SP - 2xN - Central gateway (CFC) - New(?) paradigma IDP SP protocol translatie IDP SP - SURFfederatie SURFnet = CFC, IDP, SP IDP CFC SP 24 (C) SURFnet B.V.

25 CORE Functional View 1 december 2007 IDP SURFfederatie Service SP A-Select Cross A-Select A-Select Cross Shibboleth SAML 2.0 PingFederate SAML 2.0 WS-Fed / ADFS WS-Fed / ADFS 25 (C) SURFnet B.V.

26 SURFgroepen april 2009 Functionality Supplies: doc. sharing, wiki, blogs, web conf., IM SSO + Group credentials Guest accounts, invitation based VO as a service Statistics registered users Institution vs. Guest usage : 60% over 40% active users on a monthly basis 700 new users/week teamsites, 30-40% in active use 26

27 Why CICF? Current Setup: Sharepoint + Adobe Connect Need to differentiate in: Functionality Source: SURFnet, Institutions, Third party (SAAS?) Quality :: Core & Beta (labs) Price? 27

28 SURFgroepen weak spots No Open Standards No integration into campus infrastructure Custom code for integration No good deprovisioning Content lockin NO federated access :( 28

29 Functional requirements Results of First Workshop Must have: Groups & self-service service groupmanagement Guest access Presence Calendaring Notifications Document sharing & versioning (User) Adaptable Workflow Search people & (distributed) content repositories Mashup capabilities 29

30 Architecture - Components Consumers Security User Consent Trust Confidentiality Non repudiation CIFC Transformation Service proxy Transformer Consumer proxy Supporting services Identity proxy Group proxy Mashup engine Authenticity Services directory Services 30

31 Security Security User Consent Trust Confidentiality CIFC Transformation Supporting services On every level in the Service infrastructure proxy the security Identity proxy aspects have to be taken into account and recorded Transformer Group proxy Non repudiation Consumer proxy Mashup engine Authenticity Services directory 31

32 Service proxy Security User Consent CIFC Transformation Service proxy Protocol conversion depending on Consumer capabilities Supporting services Transport oriented Identity proxy Trust Confidentiality Non repudiation Transformer Consumer proxy Group proxy Mashup engine Authenticity Services directory 32

33 Transformer CIFC Security Transformation Supporting services User Consent Trust Confidentiality Non repudiation Service proxy Transformer Consumer proxy Enrichment Identity of (meta)data proxy based on context (group/consumer/service) Group proxy Content adaption/mapping Mashup engine Authenticity Services directory 33

34 Consumer Proxy CIFC Security Transformation Supporting services User Consent Service proxy Identity proxy Trust Confidentiality Non repudiation Authenticity Transformer Consumer proxy Group proxy Protocol conversion depending Mashup on Service engine capabilities Transport oriented Services directory 34

35 Identity Proxy CIFC Security User Consent Trust Confidentiality Non repudiation Transformation Identity determination Service proxy Mapping alternate identity Access claim services Transformer Consumer proxy Supporting services Identity proxy Group proxy Mashup engine Authenticity Services directory 35

36 Group proxy CIFC Security Transformation Supporting services User Consent Trust Confidentiality Non repudiation Service proxy Registration of Group MembershipTransformer Conversion of Groups Aggregation of membership Consumer proxy Identity proxy Group proxy Mashup engine Authenticity Services directory 36

37 Mashup & Workflow Security CIFC Transformation Supporting services User Consent Service proxy Identity proxy Trust Confidentiality Non repudiation Authenticity Server based Transformer Mashup before protocol conversion Multi protocol services Consumer proxy enabled Group proxy Mashup engine Services directory 37

38 Services Directory Security CIFC Transformation Supporting services User Consent Service proxy Identity proxy Trust Confidentiality Non repudiation Authenticity Transformer Registration and publishing of available Consumer services proxy Security aware services discovery Group proxy Mashup engine Services directory 38

39 Supported Consumer Unsupported Consumer Adapter Architecture -Flow CIFC Service proxy Services directory Identity management Group management Identity proxy Group proxy Transformer Workflow / Mashup Workflow / Mashup mng Consumer proxy Consumer proxy Adapter Adapter Supported Standard Service Supported Alternate Service Unsupported Legacy Service Unsupported Legacy Service 39

40 Example - Tasks Browser Browser Browser Webpart (SharePoint) Portlet (WebSphere) Widget (SakaiPortal) Task list (Exchange) Task list (Notes) Task list (Sakaitool) 40

41 Example - Tasks Browser Webpart (SharePoint) Portlet (WebSphere) Widget (SakaiPortal) Service proxy Service proxy Consumer proxy Consumer proxy Adapter Task list (Exchange) Task list (Notes) Task list (Sakaitool) 41

42 Federated Collaboratories Creates support services Federative group relations Requires group proxy Requires group manager Centralized provisioning / de-provisioning Centralized Directory 42

43 Group management Requirements Self service provisioning Usable by many services (multi platform) Federated access to the group management tool Project Investigate 10 potential candidates Grouper was found to be the most flexible product PoC Setup Grouper Create self service Gui Demo 43

44 Questions? 44

National R&E Networks: Engines for innovation in research

National R&E Networks: Engines for innovation in research National R&E Networks: Engines for innovation in research Erik-Jan Bos EGI Technical Forum 2010 Amsterdam, The Netherlands September 15, 2010 Erik-Jan Bos - Chief Technology Officer at Dutch NREN SURFnet

More information

The AAF - Supporting Greener Collaboration

The AAF - Supporting Greener Collaboration SPUSC 2008 SOUTH PACIFIC USER SERVICES CONFERENCE The AAF - Supporting Greener Collaboration Stuart Allen MAMS MELCOE Macquarie University sallen@melcoe.mq.edu.au What is the AAF? The Australian Access

More information

Fusion of Bandwidth on Demand and Virtual Organizations

Fusion of Bandwidth on Demand and Virtual Organizations Fusion of Bandwidth on Demand and Virtual Organizations Harold Teunissen and Gerben van Malenstein SURFnet I2JTW12 January 2012 Changing Behaviors Hierarchical Secrecy Loose Alliance Sluggish Novelty Tunnel

More information

Connecting the e-infrastructure chain

Connecting the e-infrastructure chain Connecting the e-infrastructure chain Internet2 Spring Meeting, Arlington, April 23 rd, 2012 Peter Hinrich & Migiel de Vos Topics - About SURFnet - Motivation: Big data & collaboration - Collaboration

More information

The challenges of (non-)openness:

The challenges of (non-)openness: The challenges of (non-)openness: Trust and Identity in Research and Education. DEI 2018, Zagreb, April 2018 Ann Harding, SWITCH/GEANT @hardingar Who am I? Why am I here? Medieval History, Computer Science

More information

Potential for Technology Innovation within the Internet2 Community: A Five-Year View

Potential for Technology Innovation within the Internet2 Community: A Five-Year View Potential for Technology Innovation within the Internet2 Community: A Five-Year View Steve Corbató Managing Director, Technology Direction & Development Industry Strategy Council meeting DTW Westin 17

More information

An introduction to SURFnet. Bram Peeters Head of Network Services

An introduction to SURFnet. Bram Peeters Head of Network Services An introduction to SURFnet Bram Peeters Head of Network Services SURFnet: your NREN - SURFnet is the Dutch National Research & Education Network (NREN) - Services, innovation, knowledge - Not for profit

More information

SURFdrive AN OWNCLOUD SYNC & SHARE SERVICE. TF-storage Rogier Spoor SURFnet 22 SEPT 2014

SURFdrive AN OWNCLOUD SYNC & SHARE SERVICE. TF-storage Rogier Spoor SURFnet 22 SEPT 2014 SURFdrive AN OWNCLOUD SYNC & SHARE SERVICE TF-storage Rogier Spoor SURFnet 22 SEPT 2014 Top 5 reasons to use a personal cloud storage solution 1 2 Users always have access to their documents, regardless

More information

WP JRA1: Architectures for an integrated and interoperable AAI

WP JRA1: Architectures for an integrated and interoperable AAI Authentication and Authorisation for Research and Collaboration WP JRA1: Architectures for an integrated and interoperable AAI Christos Kanellopoulos Agenda Structure and administrative matters Objectives

More information

AARC Overview. Licia Florio, David Groep. 21 Jan presented by David Groep, Nikhef.

AARC Overview. Licia Florio, David Groep. 21 Jan presented by David Groep, Nikhef. AARC Overview Licia Florio, David Groep 21 Jan 2015 presented by David Groep, Nikhef AARC? Authentication and Authorisation for Research and Collaboration support the collaboration model across institutional

More information

Report PoC Mashup-Technology

Report PoC Mashup-Technology indi-2010-012-015 Report PoC Mashup-Technology Project : SURFworks Project Year : 2010 Project Manager : Wladimir Mufty Author(s) : Bas Steen, Peter Clijsters (Everett) Completion Date : December 2010

More information

Warm Up to Identity Protocol Soup

Warm Up to Identity Protocol Soup Warm Up to Identity Protocol Soup David Waite Principal Technical Architect 1 Topics What is Digital Identity? What are the different technologies? How are they useful? Where is this space going? 2 Digital

More information

WebCenter Interaction 10gR3 Overview

WebCenter Interaction 10gR3 Overview WebCenter Interaction 10gR3 Overview Brian C. Harrison Product Management WebCenter Interaction and Related Products Summary of Key Points AquaLogic Interaction portal has been renamed

More information

Extending Services with Federated Identity Management

Extending Services with Federated Identity Management Extending Services with Federated Identity Management Wes Hubert Information Technology Analyst Overview General Concepts Higher Education Federations eduroam InCommon Federation Infrastructure Trust Agreements

More information

SharePoint 2019 and Extranet User Manager

SharePoint 2019 and Extranet User Manager SharePoint 2019 and Extranet User Manager Tuesday, June 5, 2018 12:00-1:00 PM http://eum.co (#) Agenda Introductions SharePoint 2019 Announcements SharePoint On Premises Extranets EUM Features and Licensing

More information

Pilots to support guest users solutions

Pilots to support guest users solutions 08-12-2016 Deliverable DSA1.1 Contractual Date: 31-07-2016 Actual Date: 08-12-2016 Grant Agreement No.: 653965 Work Package: SA1 Task Item: SA1.1 Pilot on Guest Identities Partner: GARR Document Code:

More information

eid Interoperability for PEGS WS-Federation

eid Interoperability for PEGS WS-Federation eid Interoperability for PEGS WS-Federation Workshop Brussels 10 May 2007 Agenda 1 Scope 2 Category 3 Approach and description 4 Relevance for eid Interoperability 5 Pro s and Con s 6 Relationship with

More information

BEYOND AUTHENTICATION IDENTITY AND ACCESS MANAGEMENT FOR THE MODERN ENTERPRISE

BEYOND AUTHENTICATION IDENTITY AND ACCESS MANAGEMENT FOR THE MODERN ENTERPRISE BEYOND AUTHENTICATION IDENTITY AND ACCESS MANAGEMENT FOR THE MODERN ENTERPRISE OUR ORGANISATION AND SPECIALIST SKILLS Focused on delivery, integration and managed services around Identity and Access Management.

More information

AARC Blueprint Architecture

AARC Blueprint Architecture AARC Blueprint Architecture Published Date: 18-04-2017 Revision: 1.0 Work Package: Document Code: Document URL: JRA1 AARC-BPA-2017 https://aarc-project.eu/blueprint-architecture AARC Blueprint Architecture

More information

New trends in Identity Management

New trends in Identity Management New trends in Identity Management Peter Gietz, DAASI International GmbH peter.gietz@daasi.de Track on Research and Education Networking in South East Europe, Yu Info 2007, Kopaionik, Serbia 14 March 2007

More information

Oman Research & Education Network (OMREN)

Oman Research & Education Network (OMREN) Oman Research & Education Network (OMREN) Presented By: Said Al-Mandhari The Research Council Sultanate of Oman said.mandhari@trc.gov.om http://www.trc.gov.om 1 Table of Content OMREN Definition OMREN

More information

SSO Integration Overview

SSO Integration Overview SSO Integration Overview 2006-2014 Ping Identity Corporation. All rights reserved. PingFederate SSO Integration Overview Version 7.2 June, 2014 Ping Identity Corporation 1001 17th Street, Suite 100 Denver,

More information

Using Your Own Authentication System with ArcGIS Online. Cameron Kroeker and Gary Lee

Using Your Own Authentication System with ArcGIS Online. Cameron Kroeker and Gary Lee Using Your Own Authentication System with ArcGIS Online Cameron Kroeker and Gary Lee Agenda ArcGIS Platform Structure What is SAML? Meet the Players Relationships Are All About Trust What Happens During

More information

CA SiteMinder. Federation Manager Guide: Legacy Federation. r12.5

CA SiteMinder. Federation Manager Guide: Legacy Federation. r12.5 CA SiteMinder Federation Manager Guide: Legacy Federation r12.5 This Documentation, which includes embedded help systems and electronically distributed materials, (hereinafter referred to as the Documentation

More information

Configuration Guide - Single-Sign On for OneDesk

Configuration Guide - Single-Sign On for OneDesk Configuration Guide - Single-Sign On for OneDesk Introduction Single Sign On (SSO) is a user authentication process that allows a user to access different services and applications across IT systems and

More information

AARC. Christos Kanellopoulos AARC Architecture WP Leader GRNET. Authentication and Authorisation for Research and Collaboration

AARC. Christos Kanellopoulos AARC Architecture WP Leader GRNET. Authentication and Authorisation for Research and Collaboration Authentication and Authorisation for Research and Collaboration AARC Christos Kanellopoulos AARC Architecture WP Leader GRNET Open Day Event: Towards the European Open Science Cloud January 20, 2016 AARC

More information

The Future of Indoor Plumbing. Dr Ken Klingenstein Director, Internet2 Middleware and Security

The Future of Indoor Plumbing. Dr Ken Klingenstein Director, Internet2 Middleware and Security The Future of Indoor Plumbing Dr Ken Klingenstein Director, Internet2 Middleware and Security Topics The Work So far Indoor, policy-based plumbing IdM in the enterprise Inter-realm and inter-institutional

More information

GÉANT Community Programme

GÉANT Community Programme GÉANT Community Programme Building the community Klaas Wierenga Chief Community Support Officer GÉANT Information day, Tirana, 5 th April 1 Membership Association = very large community to serve GÉANT

More information

ISA 767, Secure Electronic Commerce Xinwen Zhang, George Mason University

ISA 767, Secure Electronic Commerce Xinwen Zhang, George Mason University Identity Management and Federated ID (Liberty Alliance) ISA 767, Secure Electronic Commerce Xinwen Zhang, xzhang6@gmu.edu George Mason University Identity Identity is the fundamental concept of uniquely

More information

Major SAML 2.0 Changes. Nate Klingenstein Internet2 EuroCAMP 2007 Helsinki April 17, 2007

Major SAML 2.0 Changes. Nate Klingenstein Internet2 EuroCAMP 2007 Helsinki April 17, 2007 Major SAML 2.0 Changes Nate Klingenstein Internet2 EuroCAMP 2007 Helsinki April 17, 2007 Tokens, Protocols, Bindings, and Profiles Tokens are requests and assertions Protocols bindings are communication

More information

Trust and Identity Services an introduction

Trust and Identity Services an introduction KEVIN MOROONEY Vice President, Trust and Identity Services OCTOBER, 2016 PACIFIC NORTHWEST GIGAPOP (PNWGP) Trust and Identity Services an introduction ADVISORY COUNCIL MEETING Background Me trust and identity

More information

Challenges in Authenticationand Identity Management

Challenges in Authenticationand Identity Management Sep 05 ISEC INFOSECURITY TOUR 2017 05.09.2017, Buenos Aires, Argentina Challenges in Authenticationand Identity Management CAMINANTE NO HAY CAMINO, SE HACE CAMINO AL ANDAR 2016 SecurIT Who is MerStar?

More information

CA SiteMinder. Federation in Your Enterprise 12.51

CA SiteMinder. Federation in Your Enterprise 12.51 CA SiteMinder Federation in Your Enterprise 12.51 This Documentation, which includes embedded help systems and electronically distributed materials (hereinafter referred to as the Documentation ), is for

More information

Identity Services Overview from 3 rd Party UK federation commercial identity Providers

Identity Services Overview from 3 rd Party UK federation commercial identity Providers Identity Services Overview from 3 rd Party UK federation commercial identity Providers SHIBBOLETH IdP V3 Shibboleth IdP v2 is EOL July 31, 2016 No updates, including security issues Shibboleth IdP v3 was

More information

SAML-Based SSO Solution

SAML-Based SSO Solution About SAML SSO Solution, page 1 Single Sign on Single Service Provider Agreement, page 2 SAML-Based SSO Features, page 2 Basic Elements of a SAML SSO Solution, page 3 Cisco Unified Communications Applications

More information

bwsync&share: A cloud solution for academia in the state of Baden-Württemberg

bwsync&share: A cloud solution for academia in the state of Baden-Württemberg bwsync&share: A cloud solution for academia in the state of Baden-Württemberg Nico Schlitter, Alexander Yasnogor Steinbuch Centre for Computing Karlsruhe Institute of Technology 76128 Karlsruhe Nico.Schlitter@kit.edu

More information

Extranet Identity Management and Authentication for SharePoint On Premise, Office 365 and Beyond

Extranet Identity Management and Authentication for SharePoint On Premise, Office 365 and Beyond Extranet Identity Management and Authentication for SharePoint On Premise, Office 365 and Beyond Presented by Peter Carson President, Envision IT October 22, 2014 Peter Carson President, Envision IT SharePoint

More information

Our broad and deep array of solutions enables you to use the cloud in your own way, at your own pace.

Our broad and deep array of solutions enables you to use the cloud in your own way, at your own pace. Agenda Agenda The New Office overview Rethink productivity possibilities Demo Why Microsoft for productivity Break The New Office architecture Identity management Authentication options Hybrid scenarios

More information

CONDITIONAL ACCESS FROM A TO Z

CONDITIONAL ACCESS FROM A TO Z CONDITIONAL ACCESS FROM A TO Z Peter Daalmans PeterDaalmans.com, pds@ctglobalservices.com, Senior Consultant CTGlobal Jörgen Nilsson Ccmexec.com, jorgen.nilsson@onevinn.se, Principal Consultant Onevinn

More information

Options for Joining edugain. Lukas Hämmerle, SWITCH DARIAH Workshop, Köln 18 October 2013

Options for Joining edugain. Lukas Hämmerle, SWITCH DARIAH Workshop, Köln 18 October 2013 Options for Joining edugain Lukas Hämmerle, SWITCH DARIAH Workshop, Köln 18 October 2013 Outline 1. GE ANT and the Enabling Users task 2. Options to Join edugain 3. Discussion 2 GÉANT (GN3plus) - vital

More information

The Challenges of User Consent

The Challenges of User Consent IAM Online The Challenges of User Consent Wednesday, May 11, 2011 3 p.m. ET Tom Barton, University of Chicago Steve Carmody, Brown University Russell Beall, University of Southern California Tom Scavo,

More information

SAML-Based SSO Solution

SAML-Based SSO Solution About SAML SSO Solution, page 1 SAML-Based SSO Features, page 2 Basic Elements of a SAML SSO Solution, page 2 SAML SSO Web Browsers, page 3 Cisco Unified Communications Applications that Support SAML SSO,

More information

Educator Learning Journeys. Tracy Immel Global Director Teacher Professional Development Programs & Certification

Educator Learning Journeys. Tracy Immel Global Director Teacher Professional Development Programs & Certification Educator Learning Journeys Tracy Immel timmel@microsoft.com Global Director Teacher Professional Development Programs & Certification A Partnership Approach to Education Reform Set Vision and Define Priorities

More information

LionShare: A Hybrid Secure Network for Academic Collaboration. Michael J. Halm, Marek Hatala, Derek Morr and Alex Valentine

LionShare: A Hybrid Secure Network for Academic Collaboration. Michael J. Halm, Marek Hatala, Derek Morr and Alex Valentine LionShare: A Hybrid Secure Network for Academic Collaboration Michael J. Halm, Marek Hatala, Derek Morr and Alex Valentine Presentation Overview Brief LionShare Overview LionShare Security Overview Connecting

More information

eidas cross-sector interoperability

eidas cross-sector interoperability eidas cross-sector interoperability Christos Kanellopoulos GRNET edugain SG October 13 th, 2016 Background information 2013 - STORK-2 collaboration (GN3Plus) 2014-07 Adoption of the eidas Regulation 2014-09

More information

Building a Europe of Knowledge. Towards the Seventh Framework Programme

Building a Europe of Knowledge. Towards the Seventh Framework Programme Building a Europe of Knowledge Towards the Seventh Framework Programme 2007-2013 FP7 /1 EUROPEAN COMMISSION - Research DG - November 2005 EU research: the story so far 1952: ECSC treaty; first projects

More information

EDINBURGH S TELFORD COLLEGE

EDINBURGH S TELFORD COLLEGE Table of Contents Executive Summary 1 Background Information 1 Access Management 2 Methodology 2 Project Experience 4 References 4 Executive Summary This case study describes the experiences at Edinburgh

More information

Expertise that goes beyond experience.

Expertise that goes beyond experience. Pre-Conference Training and Certification Expertise that goes beyond experience. OKTANE18.COM Monday, May 21 - Tuesday, May 22 ARIA Resort & Casino, Las Vegas Contents 03 04 05 Okta Education Services

More information

External Collaboration with Office 365 Project Sites. September 16, 2015

External Collaboration with Office 365 Project Sites. September 16, 2015 External Collaboration with Office 365 Project Sites September 16, 2015 Peter Carson President, Envision IT SharePoint MVP Partner Seller, Microsoft Canada peter.carson@extranetusermanager.com http://blog.petercarson.ca

More information

Office 365 An Introduction to Features and Services

Office 365 An Introduction to Features and Services Office 365 An Introduction to Features and Services Tom Robbins ASPE Training MCT, MCSE, MCITP Course Developer and Instructor at ASPE SharePoint SME & Evangelist Enterprise Social Architect Project Server

More information

Digital Identity Guidelines aka NIST SP March 1, 2017 Ken Klingenstein, Internet2

Digital Identity Guidelines aka NIST SP March 1, 2017 Ken Klingenstein, Internet2 Digital Identity Guidelines aka NIST SP 800-63 March 1, 2017 Ken Klingenstein, Internet2 Topics 800-63 History and Current Revision process Caveats and Comments LOA Evolution Sections: 800-63A (Enrollment

More information

Connect Authenticate

Connect Authenticate Connect Authenticate Streamlined, Secure Credentials If you have a password manager, you re not alone. Technology has made it easier to do our jobs and improve our operations, but at the same time it means

More information

MT. SAN ANTONIO COLLEGE 2018 Educational and Facilities Master Plan HMC ARCHITECTS // COLLABORATIVE BRAIN TRUST

MT. SAN ANTONIO COLLEGE 2018 Educational and Facilities Master Plan HMC ARCHITECTS // COLLABORATIVE BRAIN TRUST MT. SAN ANTONIO COLLEGE 2018 Educational and Facilities Master Plan HMC ARCHITECTS // COLLABORATIVE BRAIN TRUST Agenda / INTRODUCTIONS / PURPOSES OF EFMP / MASTER PLAN STEERING TASK FORCE / PROCESS AND

More information

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme ADV1591BU Delivering Virtual Desktops and Apps via the Digital Workspace with Workspace ONE and VMware Horizon VMworld 2017 Content: Not for publication Peter Bjork @thepeb & Matt Coppinger @mcopping #VMworld

More information

Playing Tag: Managed Metadata and Taxonomies in SharePoint 2010 SharePoint Saturday San Diego February 2011 Chris McNulty

Playing Tag: Managed Metadata and Taxonomies in SharePoint 2010 SharePoint Saturday San Diego February 2011 Chris McNulty Playing Tag: Managed Metadata and Taxonomies in SharePoint 2010 SharePoint Saturday San Diego February 2011 Chris McNulty About Me Working with SharePoint technologies since 2000/2001 20 years consulting

More information

Management der Virtuellen Organisation DARIAH im Rahmen von Shibboleth- basierten Föderationen. 58. DFN- Betriebstagung, Berlin, 12.3.

Management der Virtuellen Organisation DARIAH im Rahmen von Shibboleth- basierten Föderationen. 58. DFN- Betriebstagung, Berlin, 12.3. Management der Virtuellen Organisation DARIAH im Rahmen von Shibboleth- basierten Föderationen 58. DFN- Betriebstagung, Berlin, 12.3.2013 Peter Gietz, DAASI International GmbH DARIAH EU VCC 1 e-infrastructure

More information

Architecture & Deployment

Architecture & Deployment Architecture & Deployment IBM Connections 5.0 Workshop Author: Paul Godby IBM Ecosystem Development Duration: 30 minutes 2014 IBM Corporation Agenda IBM Connections lications Prerequisite Software Deployment

More information

Identity Harmonisation. Nicole Harris REFEDS Coordinator GÉANT.

Identity Harmonisation. Nicole Harris REFEDS Coordinator GÉANT. Identity Harmonisation Nicole Harris REFEDS Coordinator GÉANT http://www.aaiedu.hr/dan2015.html the voice that articulates the mutual needs of research and education identity federations worldwide refeds.org

More information

CA SiteMinder Federation

CA SiteMinder Federation CA SiteMinder Federation Partnership Federation Guide 12.52 This Documentation, which includes embedded help systems and electronically distributed materials, (hereinafter referred to as the Documentation

More information

IDENTITY MANAGEMENT AND FEDERATION BC.Net Conference April 25, 2006

IDENTITY MANAGEMENT AND FEDERATION BC.Net Conference April 25, 2006 IDENTITY MANAGEMENT AND FEDERATION BC.Net Conference April 25, 2006 Lauren Wood Senior Technical Program Manager Business Alliances, CTO Office Sun Microsystems Alex Acton Software Specialist Client Solutions

More information

Microsoft Core Solutions of Microsoft SharePoint Server 2013

Microsoft Core Solutions of Microsoft SharePoint Server 2013 1800 ULEARN (853 276) www.ddls.com.au Microsoft 20331 - Core Solutions of Microsoft SharePoint Server 2013 Length 5 days Price $4290.00 (inc GST) Version B Overview This course will provide you with the

More information

Extranets in SharePoint and SSO for Claims Apps. January 18, 2017

Extranets in SharePoint and SSO for Claims Apps. January 18, 2017 Extranets in SharePoint and SSO for Claims Apps January 18, 2017 Peter Carson President, Envision IT SharePoint MVP Partner Seller, Microsoft Canada peter.carson@extranetusermanager.com http://blog.petercarson.ca

More information

Office 365 External Sharing Webinar November 7, 2017

Office 365 External Sharing Webinar November 7, 2017 Office 365 External Sharing Webinar November 7, 2017 Introductions Peter Carson President, Extranet User Manager and Envision IT SharePoint MVP Partner Seller, Microsoft Canada peter.carson@extranetusermanager.com

More information

1 Copyright 2011, Oracle and/or its affiliates. All rights reserved. Insert Information Protection Policy Classification from Slide 7

1 Copyright 2011, Oracle and/or its affiliates. All rights reserved. Insert Information Protection Policy Classification from Slide 7 1 Copyright 2011, Oracle and/or its affiliates. All rights reserved. Insert Information Protection Policy Classification from Slide 7 ORACLE PRODUCT LOGO 20. oktober 2011 Hotel Europa Sarajevo Platform

More information

CA SiteMinder Federation

CA SiteMinder Federation CA SiteMinder Federation Legacy Federation Guide 12.52 SP1 This Documentation, which includes embedded help systems and electronically distributed materials, (hereinafter referred to as the Documentation

More information

MITA s approach to Open Standards. Presented by: Noel Cuschieri 24 th November 2015

MITA s approach to Open Standards. Presented by: Noel Cuschieri 24 th November 2015 MITA s approach to Open Standards Presented by: Noel Cuschieri 24 th November 2015 MITA Malta s population over 400K inhabitants occupying an area of 316 km 2 Malta Information Technology Agency (http://mita.gov.mt)

More information

CA CloudMinder. SSO Partnership Federation Guide 1.53

CA CloudMinder. SSO Partnership Federation Guide 1.53 CA CloudMinder SSO Partnership Federation Guide 1.53 This Documentation, which includes embedded help systems and electronically distributed materials (hereinafter referred to as the Documentation ), is

More information

Internet of Things (IOT) What It Is and How It Will Impact State Pools

Internet of Things (IOT) What It Is and How It Will Impact State Pools NLC Mutual Insurance Company 660 Capitol Street NW Suite 450 Washington, DC 20001 Internet of Things (IOT) What It Is and How It Will Impact State Pools MAY 19, 2017 RYAN DRAUGHN, DIRECTOR OF INFORMATION

More information

Oracle WebCenter Interaction: Roadmap for BEA AquaLogic User Interaction. Ajay Gandhi Sr. Director of Product Management Enterprise 2.

Oracle WebCenter Interaction: Roadmap for BEA AquaLogic User Interaction. Ajay Gandhi Sr. Director of Product Management Enterprise 2. Oracle WebCenter Interaction: Roadmap for BEA AquaLogic User Interaction Ajay Gandhi Sr. Director of Product Management Enterprise 2.0 and Portals 1 Agenda Enterprise 2.0 and Portal Product Strategy AquaLogic

More information

DARIAH-AAI. DASISH AAI Meeting. Nijmegen, March 9th,

DARIAH-AAI. DASISH AAI Meeting. Nijmegen, March 9th, DARIAH-AAI DASISH AAI Meeting Nijmegen, March 9th, 2014 www.dariah.eu What is DARIAH? DARIAH: Digital Research Infrastructure for the Arts and Humanities One of the few ESFRI research infrastructures for

More information

Federated Identification Architecture

Federated Identification Architecture Federated Identification Architecture Arezoo Haghshenas Department of Computer Tehran South Branch, Islamic Azad University Tehran, Iran Mir Ali Seyyedi Department of Computer Tehran South Branch, Islamic

More information

Microsoft Designing and Deploying Microsoft Exchange Server 2016

Microsoft Designing and Deploying Microsoft Exchange Server 2016 1800 ULEARN (853 276) www.ddls.com.au Microsoft 20345-2 Designing and Deploying Microsoft Exchange Server 2016 Length 5 days Price $4290.00 (inc GST) Version A Overview This course provides experienced

More information

DDS Identity Federation Service

DDS Identity Federation Service DDS Identity Federation Service Sharing Identity across Organisational Boundaries Executive Overview for UK Government Company Profile Daemon Directory Services Ltd. (DDS) is an application service provider

More information

Quick Connection Guide

Quick Connection Guide WebEx Connector Version 1.0.1 Quick Connection Guide 2014 Ping Identity Corporation. All rights reserved. PingFederate WebEx Connector Quick Connection Guide Version 1.0.1 March, 2014 Ping Identity Corporation

More information

PRINCIPLES The IT Infrastructure Coordinating Committee is focused on acting as a steering committee for IT infrastructure issues with a charge to:

PRINCIPLES The IT Infrastructure Coordinating Committee is focused on acting as a steering committee for IT infrastructure issues with a charge to: MISSION The Information Technology Infrastructure Coordinating Committee will be part of the University s IT governance structure, providing recommendations to the Chief Information Officer (CIO) and the

More information

Internet2 Overview, Services and Activities. Fall 2007 Council Briefings October 7, 2007

Internet2 Overview, Services and Activities. Fall 2007 Council Briefings October 7, 2007 Internet2 Overview, Services and Activities Fall 2007 Council Briefings October 7, 2007 Agenda Building Community - Marianne Smith International Partnerships Heather Boyles Middleware and Security - Renee

More information

ONE-ITS Science Gateway

ONE-ITS Science Gateway Science Gateway None of us is as smart as all of us B. Abdulhai, Ph.D., P.Eng. Canada Research Chair in ITS Director, Toronto ITS Centre, U of Toronto M. El-Darieby, Ph.D., P.Eng. Chair, Software Systems

More information

Designing and Deploying Microsoft Exchange Server 2016 ( )

Designing and Deploying Microsoft Exchange Server 2016 ( ) Designing and Deploying Microsoft Exchange Server 2016 (20345-2) Duration: 2 Days Price: $895 Delivery Option: Attend via MOC On-Demand Students Will Learn Planning for Exchange Server deployments Planning

More information

European Open Science Cloud Implementation roadmap: translating the vision into practice. September 2018

European Open Science Cloud Implementation roadmap: translating the vision into practice. September 2018 European Open Science Cloud Implementation roadmap: translating the vision into practice September 2018 European Commission, Directorate General Research & Innovation (DG RTD) Unit A2 Open Data Policy

More information

SLCS and VASH Service Interoperability of Shibboleth and glite

SLCS and VASH Service Interoperability of Shibboleth and glite SLCS and VASH Service Interoperability of Shibboleth and glite Christoph Witzig, SWITCH (witzig@switch.ch) www.eu-egee.org NREN Grid Workshop Nov 30th, 2007 - Malaga EGEE and glite are registered trademarks

More information

Enterprise-ready Unified communications platform

Enterprise-ready Unified communications platform Enterprise-ready Unified communications platform Video gallery HD video or high resolution photos of attendees Consistent and familiar clients Immersive experience optimized for touch Single identity

More information

CA CloudMinder. SSO Partnership Federation Guide 1.51

CA CloudMinder. SSO Partnership Federation Guide 1.51 CA CloudMinder SSO Partnership Federation Guide 1.51 This Documentation, which includes embedded help systems and electronically distributed materials, (hereinafter referred to as the Documentation ) is

More information

Integration Guide. PingFederate SAML Integration Guide (SP-Initiated Workflow)

Integration Guide. PingFederate SAML Integration Guide (SP-Initiated Workflow) Integration Guide PingFederate SAML Integration Guide (SP-Initiated Workflow) Copyright Information 2018. SecureAuth is a registered trademark of SecureAuth Corporation. SecureAuth s IdP software, appliances,

More information

The Africa Utilities Telecom Council Johannesburg CC, South Africa 1 st December, 2015

The Africa Utilities Telecom Council Johannesburg CC, South Africa 1 st December, 2015 The Africa Utilities Telecom Council Johannesburg CC, South Africa 1 st December, 2015 Utilities Telecom Council Global Focus on Utility Information and Communications Technology (ICT) Formed more than

More information

What is Azure Active Directory (and Why Should I care)?

What is Azure Active Directory (and Why Should I care)? What is Azure Active Directory (and Why Should I care)? Eric Kool-Brown (kool@uw.edu) Software Engineer UW-IT Identity and Access Management Presented to the Internet2 2018 Technology Exchange Subtitle:

More information

UNCLASSIFIED. National and Cyber Security Branch. Presentation for Gridseccon. Quebec City, October 18-21

UNCLASSIFIED. National and Cyber Security Branch. Presentation for Gridseccon. Quebec City, October 18-21 National and Cyber Security Branch Presentation for Gridseccon Quebec City, October 18-21 1 Public Safety Canada Departmental Structure 2 National and Cyber Security Branch National and Cyber Security

More information

Proposition to participate in the International non-for-profit Industry Association: Energy Efficient Buildings

Proposition to participate in the International non-for-profit Industry Association: Energy Efficient Buildings Proposition to participate in the International non-for-profit Industry Association: Energy Efficient Buildings Working towards the launch of an EU Joint Technology Initiative on Energy Efficient Buildings

More information

Presented by Max Fritz Senior Systems Consultant, Now Micro. Office 365 for Education What to Use When

Presented by Max Fritz Senior Systems Consultant, Now Micro. Office 365 for Education What to Use When Presented by Max Fritz Senior Systems Consultant, Now Micro Office 365 for Education What to Use When Max Fritz Senior Systems Consultant MCSA Office 365, MCSE Productivity Founder of Minnesota Office

More information

U.S. E-Authentication Interoperability Lab Engineer

U.S. E-Authentication Interoperability Lab Engineer Using Digital Certificates to Establish Federated Trust chris.brown@enspier.com U.S. E-Authentication Interoperability Lab Engineer Agenda U.S. Federal E-Authentication Background Current State of PKI

More information

BELNET R&E federation Technical policy

BELNET R&E federation Technical policy BELNET R&E federation Technical policy Version 1.0 Version Date 0.1 11/03/09 First draft for advisory committee 0.2 11/05/09 Added attribute schema; changes after 1st meeting 0.3 01/07/10 Changed metadata

More information

CANARIE Mandate Renewal Proposal

CANARIE Mandate Renewal Proposal CANARIE Mandate Renewal Proposal Kathryn Anthonisen BCNET Conference April 23, 2018 Let s connect! @kanthonisen canarie.ca @canarie_inc canarie.ca @canarie_inc 2 Core Purpose Advancement of Canada s Knowledge

More information

FeduShare Update. AuthNZ the SAML way for VOs

FeduShare Update. AuthNZ the SAML way for VOs FeduShare Update AuthNZ the SAML way for VOs FeduShare Goals: Provide transparent sharing of campus resources in support of (multiinstitutional) collaboration Support both HTTP and non-web access using

More information

NRENs as Enablers of eresearch

NRENs as Enablers of eresearch NRENs as Enablers of eresearch 8 October 2013 Leon Staphorst Manager: SANReN What are NRENs? NRENs are specialised network infrastructure and service providers that exclusively supports a country s research

More information

Scalable Negotiator for a Community Trust Framework in Federated Infrastructures (Snctfi)

Scalable Negotiator for a Community Trust Framework in Federated Infrastructures (Snctfi) Scalable Negotiator for a Community Trust Framework in Federated Infrastructures (Snctfi) Licia Florio (GÉANT), David Groep (Nikhef), Christos Kanellopoulos (GÉANT), David Kelsey (STFC), Mikael Linden

More information

INTELLIGENT CITY ADVISORY COMMITTEE

INTELLIGENT CITY ADVISORY COMMITTEE INTELLIGENT CITY ADVISORY COMMITTEE 9:00 a.m. Meeting Room 1, City Hall (511 Royal Avenue) MEMBERS PRESENT: Councillor Bill Harper Michael Hybryk Brigid Canil Nelson Eng (10:11am) Gavin McLeod Ian McLeod

More information

A Welcome to Federated Identity Nate Klingenstein, Internet2, USA. Prepared for the Matsuyama University, December 2013

A Welcome to Federated Identity Nate Klingenstein, Internet2, USA. Prepared for the Matsuyama University, December 2013 A Welcome to Federated Identity Nate Klingenstein, Internet2, USA Prepared for the Matsuyama University, December 2013 www.incommon.org Welcome to the presentation and thanks to our hosts What is Federated

More information

Report of the Metro Mobility Task force. Presented to Metropolitan Council Feb 28, 2018

Report of the Metro Mobility Task force. Presented to Metropolitan Council Feb 28, 2018 Report of the Metro Mobility Task force Presented to Metropolitan Council Feb 28, 2018 Task Force Summary 2 Established in 2017 Special Session Laws Goals of Task force: Identify options and methods to

More information

Mashing Up, Wiring Up, Gearing Up: Solving Multi-Protocol Problems in Identity

Mashing Up, Wiring Up, Gearing Up: Solving Multi-Protocol Problems in Identity www.oasis-open.org Mashing Up, Wiring Up, Gearing Up: Solving Multi-Protocol Problems in Identity Eve Maler eve.maler@sun.com 1 A few notes about me and this talk Some relevant affiliations/perspectives:

More information

Define Your Office 365 External Sharing Strategy

Define Your Office 365 External Sharing Strategy Define Your Office 365 External Sharing Strategy Tuesday, April 24, 2018 12:00-1:00 PM Peter Carson President, Extranet User Manager and Envision IT SharePoint MVP Partner Seller, Microsoft Canada peter.carson@extranetusermanager.com

More information

Results from the EARNEST Technical Study

Results from the EARNEST Technical Study EARNEST Workshop, Amsterdam, 8 May 2007 Results from the EARNEST Technical Study Licia Florio, TERENA florio@terena.org Agenda Technical study Lower layers preliminary results Middleware preliminary results

More information