Introduction to Identity Federations Brook Schofield eduGAIN Task - - PowerPoint PPT Presentation

introduction to identity federations
SMART_READER_LITE
LIVE PREVIEW

Introduction to Identity Federations Brook Schofield eduGAIN Task - - PowerPoint PPT Presentation

Introduction to Identity Federations Brook Schofield eduGAIN Task Leader, GN3 Project & Project Development Officer, TERENA schofield@terena.org 15 October 2012 Building Federated Identity Policy, GN3 Symposium, Vienna, Austria Innovation


slide-1
SLIDE 1

Innovation through participation

Introduction to Identity Federations

Brook Schofield eduGAIN Task Leader, GN3 Project & Project Development Officer, TERENA schofield@terena.org

15 October 2012 Building Federated Identity Policy, GN3 Symposium, Vienna, Austria

slide-2
SLIDE 2

Innovation through participation

Brook Schofield

  • mailto:schofield@terena.org
  • skype://brookschofield
  • tel:+31651553991
  • http://terena.org/~schofield
  • linkedin.com/in/brookschofield

Australian living in The Netherlands. Grew up on the island state of Tasmania. Task Leader in the GN3 Project for eduGAIN. Secretary of the Global eduroam Governance Committee.

About me…

slide-3
SLIDE 3

Innovation through participation

What ¡is ¡a ¡federa,on? ¡

wayf.dk

slide-4
SLIDE 4

Innovation through participation

Technology 1st focus…

slide-5
SLIDE 5

Innovation through participation

5

connect • communicate • collaborate

What is eduGAIN?

  • Solves the scaling problem
  • eduGAIN entities are a subset of a federation
  • Profiles and policies to harmonize environment
  • More info at http://eduGAIN.org/

5

Federation B Federation A Federation C SP IdP IdP IdP IdP IdP SP SP SP SP SP SP Identity Provider Service Provider SP MDS

Attributes Terms of Use Metadata Web SSO Good Practice Constitution eduGAIN Declaration Me

slide-6
SLIDE 6

Innovation through participation

eduGAIN status (in numbers)

  • 15 participant federations
  • 3 candidate federations & 2 pilot participants
  • 6 European federations not participating

AT, DK, EE, IE, SI, UK

  • 8 federations not participating

AU, CL, CN, IN, JP, NZ, OM, US

  • 18 GN3 Partners without a federation (23 GN3+)
slide-7
SLIDE 7

Slide 7

slide-8
SLIDE 8
slide-9
SLIDE 9
slide-10
SLIDE 10

Innovation through participation

Federa,on ¡models… ¡

wayf.dk

slide-11
SLIDE 11

eduroam ¡

11 ¡

  • Trust based on national policy
  • Security based on 802.1X/RADIUS
  • VLAN assignment to separate users

¡

RADIUS server University ABC RADIUS server University 123

NREN

Central RADIUS Proxy server WiFi Access Point User DB User DB

Visitor VLAN Student VLAN Employee VLAN

user@uniabc.aq

data signaling

slide-12
SLIDE 12

linkedin.com/in/brookschofield facebook.com/brook.schofield skype://brookschofield brook@terena.org @BrookSchofield +31651553991

Slide 12