guest idp and social login
play

Guest IdP and Social login Eefje van der Harst SURFnet Once upon a - PowerPoint PPT Presentation

Guest IdP and Social login Eefje van der Harst SURFnet Once upon a timein 2010 SURFfederatie: 50 IdPs & 500k users Potential:160 IdPs 1.000.000 users What about non-fed users? They wanted to access our services Main


  1. Guest IdP and Social login Eefje van der Harst SURFnet

  2. Once upon a time…in 2010 • SURFfederatie: 50 IdPs & 500k users • Potential:160 IdPs 1.000.000 users

  3. What about non-fed users? • They wanted to access our services • Main driver: SURFmedia (video service) • So we created a guest IdP: SURFguest

  4. SURFguest • Not part of SURFfederatie • No trust! • At first to facilitate access to SURFnet-services only – Full member (check: e-mail validation) – Member • But soon it became much more…

  5. Now…almost two years later • We have a collaboration infrastructure: SURFconext • With multiple connected collaboration tools • Guests need access to those services (not just the SURFnet ones anymore)

  6. Key figures 2012 • We have 90 IdPs with 800.000 users (out of maximum 160 IdPs and 1.000.000 users) • SURFguest: already 9.000 users (but not all active) • SURFmedia is about to stop (end 2012)

  7. Time to rethink our strategy • SURFguest statistics showed us: % for test purposes % for not-yet-federated users % for ‘real guests’ that are not eligible to join our federation • If we do not stop it now…are we stuck forever?

  8. Considerations • Is it our role to deliver a Guest IdP? • Do users want yet another ID? • Why not let Social ID providers take up on this role?

  9. Decision time • Keep SURFguest running for SURFnet-guests, but persuade them to run their own IdP: – Support team sponsored by SURFnet – Commercial Identity-as-a-service providers • Let ‘real guests’ use one of their Social IDs • Authorization by SP, use group-membership to support this

  10. Challenges • What if one of the social ID-providers stops? How can users still access their content? • How to map multiple (social) IDs? • Do content licenses allow guest users? • How to build trust

  11. Eefje.vanderharst[at]surfnet.nl @evanderharst Creative Commons “Attribution” license: http://creativecommons.org/licenses/by/3.0/

Download Presentation
Download Policy: The content available on the website is offered to you 'AS IS' for your personal information and use only. It cannot be commercialized, licensed, or distributed on other websites without prior consent from the author. To download a presentation, simply click this link. If you encounter any difficulties during the download process, it's possible that the publisher has removed the file from their server.

Recommend


More recommend