SlideShare une entreprise Scribd logo
1  sur  17
Télécharger pour lire hors ligne
Single sign-on for Life Science services
Presenters: Dr. Mikael Linden (ELIXIR Finland), Kostas Koumantaros (GRNET)
Host:Vera Matser (EMBL-EBI)
http://www.corbel-project.eu/webinars
26/04/2018footer 1
CORBEL Webinar Series
26/04/2018footer 2
This webinar is being recorded
AUDIENCE Q&A SESSION
26/04/2018footer 3
Please write your
questions in the
questions window of
the GoToWebinar
application
BACKGROUND
4
Since 2015, thirteen ESFRI Research Infrastructures from the field
of BioMedical Science (BMS RI) joined their scientific capabilities
and services to transform the understanding of biological
mechanisms and accelerate its translation into medical care.
• biobanking & biomolecular
resources
• curated databases
• marine model organisms
• systems biology
• translational research
• functional genomics
• screening & medicinal
chemistry
• microorganisms
• clinical trials
• structural biology
• biological/medical imaging• plant phenotyping
• highly pathogenic
microorganisms
CORBEL MISSION
5
Modern biological and biomedical research involves complex
projects and a variety of different technologies.
Some of the most important discoveries are made at the
interface between different disciplines.
CORBEL will harmonise access and services for complex
research projects involving more than one RI that offer:
• biological and medical technologies
• biological samples and
• data services
TODAY’S PRESENTERS
26/04/2018footer 6
Dr. Mikael Linden coordinates the Life
Science AAI (authentication and authorization
infrastructure) specification work and is the
editor of the requirements specification for
the Life Science AAI. He works for the Finnish
ELIXIR node and leads the AAI task in ELIXIR.
He holds a doctoral degree in information
security fromTampere University of
Technology.
TODAY’S PRESENTERS
26/04/2018footer 7
Kostas Koumantaros, Msc, is a Project Manager and Software
Engineer on GRID and CloudTechnologies at GRNET SA.
From April 2004 tillApril 2010 he was acting as the Regional
Operations Centre technical manager for South-East-Europe
(Greece, Cyprus, Israel, Romania, Bulgaria) for the series EC
project EGEE-1,2,3 (Enabling Grids for e-Science in Europe).
SinceApril 2010 he is acting as the NGI Manager for
NGI_GRNET. Kostas is currently coordinating the Joint effort by
GEANT, EGI and EUDAT to provide an AAI solution for the
LifeScience Community
.
OUTLINE
26/04/2018footer 8
• Federated Identity/Access management (or ”AAI”)
• Why Life Science RI collaboration onAAI
• History and future of Life Science AAI
• Some technical features of Life Science AAI
• Demo LifeScienceID
1.
2.
3.
4.
Identity and Access management
Bob
Smith
Resource
(e.g. dataset)
3. Username
Password
Authentication
(verification of identity)
Resource
owner
(e.g. Data
Access
Committee)Authorisation
Audit/report
Auditor
4. Who has
permission?
1. Bob is issued
an identity
Identity
Name: Bob Smith
username: bobr
Federated identity/access management
Identity
Provider
Authenticates
Releases attributes
Manages
- User identity (attributes)
- User authentication
Decides who
has access
Relying
Service
Managed by
research infrastructures
Managed by
research service providers
Relying
Service
Relying
Service
Example: ELIXIR AAI
(authentication and authorisation infrastructure)
ELIXIR AAI
External authentication
(e-infrastructures)
Relying services
eduGAIN IdPs Common IdPs
ELIXIR Proxy IdP
ELIXIR
Directory
Bona fide management
Dataset authorisation
management (REMS)
Group/role mgmt (PERUN)
Credential
translation
EGA eLearning
Cloud Intranet
wiki
Data archive
… …
Attribute self-management
Step-up
AuthN
Why Life Science RI collaboration on AAI
• Researchers using services from several LS RIs
• Less identities and usernames
• Single-sign on to services
• Many LS RIs have similar needs
• Developing and operating AAI is expensive
• More features with less costs when done centrally
• Finding a sustainable model
• Collaboration with e-infrastructures
• AAI is not a core competence for research infrastructures
12
History of AAI collaboration in Life Science
• 5/2016 AARC/CORBELWP5 workshop for BMS AAI developers
• Autumn 2016: Collect use cases for Life Science AAI
• Spring 2017: Develop requirements specification for LS AAI
• goo.gl/zvTQmB
• 5/2017 AARC2 starts (BBMRI, ELIXIR, Infrafrontier, INSTRUCT)
• Pilot on Life ScienceAAI included
• 11/2017 LS AAI Pilot with e-infrastructures starts
• Based on EGI, EUDAT and GEANT proposal
• 1/2018 First phase of LS AAI Pilot ends
13
LS AAI in EOSC-Life project proposal
• Deploying LS AAI into production part of EOSC-LifeWP5
• Based on the AARC2 pilot
• Finding a sustainable model
• Partnering with e-infrastructures for LS AAI operations
• Service ownership in LS community
• Service operations in e-infrastructures
14
Some technical features of LS AAI
• External authentication
• Researcher’s Home Organisation
• Commercial (Google, Linkedin)
• Hostel IdP as the last resort
• Multi-factor authentication
• Technical interfaces for
relying services
• SAML2 and OpenIDConnect
• X.509 credential translation
• Provisioning/deprovisioning
• User attributes/authorisation
• Home Organisation affiliation(s)
• Home research infrastructure(s)
• Researcher qualifications
(bona fide researcher)
• Dataset permissions
• Group memberships
• Active role selection
Requirements specification:
goo.gl/zvTQmB
15
Demo LifeScienceID
You can try it yourself at https://goo.gl/5dv6ns
And Select LS AAI
26.4.2018 16
NEXT WEBINAR
26/04/2018footer 17
Title:The BBMRI-ERIC ELSI Helpdesk – Personalising ELSI Support
Speaker: Jasjote Grewal (BBMRI-ERIC)
Date: 10th July 2018
Time: 15:30 CET
Registration and details
http://www.corbel-project.eu/webinars

Contenu connexe

Plus de CORBEL

CORBEL West-Life webinar slides
CORBEL West-Life webinar slidesCORBEL West-Life webinar slides
CORBEL West-Life webinar slidesCORBEL
 
CORBEL ELSI webinar slides
CORBEL ELSI webinar slidesCORBEL ELSI webinar slides
CORBEL ELSI webinar slidesCORBEL
 
CORBEL Code of Conduct webinar slides
CORBEL Code of Conduct webinar slidesCORBEL Code of Conduct webinar slides
CORBEL Code of Conduct webinar slidesCORBEL
 
CORBEL Quality Management Webinar Slides
CORBEL Quality Management Webinar SlidesCORBEL Quality Management Webinar Slides
CORBEL Quality Management Webinar SlidesCORBEL
 
CORBEL Network with Industry webinar slides
CORBEL Network with Industry webinar slidesCORBEL Network with Industry webinar slides
CORBEL Network with Industry webinar slidesCORBEL
 
CORBEL FitSM webinar slides
CORBEL FitSM webinar slidesCORBEL FitSM webinar slides
CORBEL FitSM webinar slidesCORBEL
 
CORBEL Aria webinar slides
CORBEL Aria webinar slidesCORBEL Aria webinar slides
CORBEL Aria webinar slidesCORBEL
 

Plus de CORBEL (7)

CORBEL West-Life webinar slides
CORBEL West-Life webinar slidesCORBEL West-Life webinar slides
CORBEL West-Life webinar slides
 
CORBEL ELSI webinar slides
CORBEL ELSI webinar slidesCORBEL ELSI webinar slides
CORBEL ELSI webinar slides
 
CORBEL Code of Conduct webinar slides
CORBEL Code of Conduct webinar slidesCORBEL Code of Conduct webinar slides
CORBEL Code of Conduct webinar slides
 
CORBEL Quality Management Webinar Slides
CORBEL Quality Management Webinar SlidesCORBEL Quality Management Webinar Slides
CORBEL Quality Management Webinar Slides
 
CORBEL Network with Industry webinar slides
CORBEL Network with Industry webinar slidesCORBEL Network with Industry webinar slides
CORBEL Network with Industry webinar slides
 
CORBEL FitSM webinar slides
CORBEL FitSM webinar slidesCORBEL FitSM webinar slides
CORBEL FitSM webinar slides
 
CORBEL Aria webinar slides
CORBEL Aria webinar slidesCORBEL Aria webinar slides
CORBEL Aria webinar slides
 

Dernier

English-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdf
English-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdfEnglish-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdf
English-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdfblazblazml
 
Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...
Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...
Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...Thomas Poetter
 
Cyber awareness ppt on the recorded data
Cyber awareness ppt on the recorded dataCyber awareness ppt on the recorded data
Cyber awareness ppt on the recorded dataTecnoIncentive
 
Conf42-LLM_Adding Generative AI to Real-Time Streaming Pipelines
Conf42-LLM_Adding Generative AI to Real-Time Streaming PipelinesConf42-LLM_Adding Generative AI to Real-Time Streaming Pipelines
Conf42-LLM_Adding Generative AI to Real-Time Streaming PipelinesTimothy Spann
 
Advanced Machine Learning for Business Professionals
Advanced Machine Learning for Business ProfessionalsAdvanced Machine Learning for Business Professionals
Advanced Machine Learning for Business ProfessionalsVICTOR MAESTRE RAMIREZ
 
Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...
Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...
Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...Boston Institute of Analytics
 
Semantic Shed - Squashing and Squeezing.pptx
Semantic Shed - Squashing and Squeezing.pptxSemantic Shed - Squashing and Squeezing.pptx
Semantic Shed - Squashing and Squeezing.pptxMike Bennett
 
FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024
FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024
FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024Susanna-Assunta Sansone
 
SMOTE and K-Fold Cross Validation-Presentation.pptx
SMOTE and K-Fold Cross Validation-Presentation.pptxSMOTE and K-Fold Cross Validation-Presentation.pptx
SMOTE and K-Fold Cross Validation-Presentation.pptxHaritikaChhatwal1
 
Unveiling the Role of Social Media Suspect Investigators in Preventing Online...
Unveiling the Role of Social Media Suspect Investigators in Preventing Online...Unveiling the Role of Social Media Suspect Investigators in Preventing Online...
Unveiling the Role of Social Media Suspect Investigators in Preventing Online...Milind Agarwal
 
convolutional neural network and its applications.pdf
convolutional neural network and its applications.pdfconvolutional neural network and its applications.pdf
convolutional neural network and its applications.pdfSubhamKumar3239
 
Student Profile Sample report on improving academic performance by uniting gr...
Student Profile Sample report on improving academic performance by uniting gr...Student Profile Sample report on improving academic performance by uniting gr...
Student Profile Sample report on improving academic performance by uniting gr...Seán Kennedy
 
The Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptx
The Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptxThe Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptx
The Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptxTasha Penwell
 
INTRODUCTION TO Natural language processing
INTRODUCTION TO Natural language processingINTRODUCTION TO Natural language processing
INTRODUCTION TO Natural language processingsocarem879
 
Student profile product demonstration on grades, ability, well-being and mind...
Student profile product demonstration on grades, ability, well-being and mind...Student profile product demonstration on grades, ability, well-being and mind...
Student profile product demonstration on grades, ability, well-being and mind...Seán Kennedy
 
Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...
Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...
Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...Boston Institute of Analytics
 
Defining Constituents, Data Vizzes and Telling a Data Story
Defining Constituents, Data Vizzes and Telling a Data StoryDefining Constituents, Data Vizzes and Telling a Data Story
Defining Constituents, Data Vizzes and Telling a Data StoryJeremy Anderson
 
Decoding Patterns: Customer Churn Prediction Data Analysis Project
Decoding Patterns: Customer Churn Prediction Data Analysis ProjectDecoding Patterns: Customer Churn Prediction Data Analysis Project
Decoding Patterns: Customer Churn Prediction Data Analysis ProjectBoston Institute of Analytics
 

Dernier (20)

English-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdf
English-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdfEnglish-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdf
English-8-Q4-W3-Synthesizing-Essential-Information-From-Various-Sources-1.pdf
 
Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...
Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...
Minimizing AI Hallucinations/Confabulations and the Path towards AGI with Exa...
 
Cyber awareness ppt on the recorded data
Cyber awareness ppt on the recorded dataCyber awareness ppt on the recorded data
Cyber awareness ppt on the recorded data
 
Insurance Churn Prediction Data Analysis Project
Insurance Churn Prediction Data Analysis ProjectInsurance Churn Prediction Data Analysis Project
Insurance Churn Prediction Data Analysis Project
 
Conf42-LLM_Adding Generative AI to Real-Time Streaming Pipelines
Conf42-LLM_Adding Generative AI to Real-Time Streaming PipelinesConf42-LLM_Adding Generative AI to Real-Time Streaming Pipelines
Conf42-LLM_Adding Generative AI to Real-Time Streaming Pipelines
 
Advanced Machine Learning for Business Professionals
Advanced Machine Learning for Business ProfessionalsAdvanced Machine Learning for Business Professionals
Advanced Machine Learning for Business Professionals
 
Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...
Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...
Data Analysis Project : Targeting the Right Customers, Presentation on Bank M...
 
Semantic Shed - Squashing and Squeezing.pptx
Semantic Shed - Squashing and Squeezing.pptxSemantic Shed - Squashing and Squeezing.pptx
Semantic Shed - Squashing and Squeezing.pptx
 
FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024
FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024
FAIR, FAIRsharing, FAIR Cookbook and ELIXIR - Sansone SA - Boston 2024
 
SMOTE and K-Fold Cross Validation-Presentation.pptx
SMOTE and K-Fold Cross Validation-Presentation.pptxSMOTE and K-Fold Cross Validation-Presentation.pptx
SMOTE and K-Fold Cross Validation-Presentation.pptx
 
Unveiling the Role of Social Media Suspect Investigators in Preventing Online...
Unveiling the Role of Social Media Suspect Investigators in Preventing Online...Unveiling the Role of Social Media Suspect Investigators in Preventing Online...
Unveiling the Role of Social Media Suspect Investigators in Preventing Online...
 
convolutional neural network and its applications.pdf
convolutional neural network and its applications.pdfconvolutional neural network and its applications.pdf
convolutional neural network and its applications.pdf
 
Student Profile Sample report on improving academic performance by uniting gr...
Student Profile Sample report on improving academic performance by uniting gr...Student Profile Sample report on improving academic performance by uniting gr...
Student Profile Sample report on improving academic performance by uniting gr...
 
The Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptx
The Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptxThe Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptx
The Power of Data-Driven Storytelling_ Unveiling the Layers of Insight.pptx
 
Data Analysis Project: Stroke Prediction
Data Analysis Project: Stroke PredictionData Analysis Project: Stroke Prediction
Data Analysis Project: Stroke Prediction
 
INTRODUCTION TO Natural language processing
INTRODUCTION TO Natural language processingINTRODUCTION TO Natural language processing
INTRODUCTION TO Natural language processing
 
Student profile product demonstration on grades, ability, well-being and mind...
Student profile product demonstration on grades, ability, well-being and mind...Student profile product demonstration on grades, ability, well-being and mind...
Student profile product demonstration on grades, ability, well-being and mind...
 
Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...
Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...
Decoding the Heart: Student Presentation on Heart Attack Prediction with Data...
 
Defining Constituents, Data Vizzes and Telling a Data Story
Defining Constituents, Data Vizzes and Telling a Data StoryDefining Constituents, Data Vizzes and Telling a Data Story
Defining Constituents, Data Vizzes and Telling a Data Story
 
Decoding Patterns: Customer Churn Prediction Data Analysis Project
Decoding Patterns: Customer Churn Prediction Data Analysis ProjectDecoding Patterns: Customer Churn Prediction Data Analysis Project
Decoding Patterns: Customer Churn Prediction Data Analysis Project
 

CORBEL Single sign-on webinar slides

  • 1. Single sign-on for Life Science services Presenters: Dr. Mikael Linden (ELIXIR Finland), Kostas Koumantaros (GRNET) Host:Vera Matser (EMBL-EBI) http://www.corbel-project.eu/webinars 26/04/2018footer 1 CORBEL Webinar Series
  • 3. AUDIENCE Q&A SESSION 26/04/2018footer 3 Please write your questions in the questions window of the GoToWebinar application
  • 4. BACKGROUND 4 Since 2015, thirteen ESFRI Research Infrastructures from the field of BioMedical Science (BMS RI) joined their scientific capabilities and services to transform the understanding of biological mechanisms and accelerate its translation into medical care. • biobanking & biomolecular resources • curated databases • marine model organisms • systems biology • translational research • functional genomics • screening & medicinal chemistry • microorganisms • clinical trials • structural biology • biological/medical imaging• plant phenotyping • highly pathogenic microorganisms
  • 5. CORBEL MISSION 5 Modern biological and biomedical research involves complex projects and a variety of different technologies. Some of the most important discoveries are made at the interface between different disciplines. CORBEL will harmonise access and services for complex research projects involving more than one RI that offer: • biological and medical technologies • biological samples and • data services
  • 6. TODAY’S PRESENTERS 26/04/2018footer 6 Dr. Mikael Linden coordinates the Life Science AAI (authentication and authorization infrastructure) specification work and is the editor of the requirements specification for the Life Science AAI. He works for the Finnish ELIXIR node and leads the AAI task in ELIXIR. He holds a doctoral degree in information security fromTampere University of Technology.
  • 7. TODAY’S PRESENTERS 26/04/2018footer 7 Kostas Koumantaros, Msc, is a Project Manager and Software Engineer on GRID and CloudTechnologies at GRNET SA. From April 2004 tillApril 2010 he was acting as the Regional Operations Centre technical manager for South-East-Europe (Greece, Cyprus, Israel, Romania, Bulgaria) for the series EC project EGEE-1,2,3 (Enabling Grids for e-Science in Europe). SinceApril 2010 he is acting as the NGI Manager for NGI_GRNET. Kostas is currently coordinating the Joint effort by GEANT, EGI and EUDAT to provide an AAI solution for the LifeScience Community .
  • 8. OUTLINE 26/04/2018footer 8 • Federated Identity/Access management (or ”AAI”) • Why Life Science RI collaboration onAAI • History and future of Life Science AAI • Some technical features of Life Science AAI • Demo LifeScienceID
  • 9. 1. 2. 3. 4. Identity and Access management Bob Smith Resource (e.g. dataset) 3. Username Password Authentication (verification of identity) Resource owner (e.g. Data Access Committee)Authorisation Audit/report Auditor 4. Who has permission? 1. Bob is issued an identity Identity Name: Bob Smith username: bobr
  • 10. Federated identity/access management Identity Provider Authenticates Releases attributes Manages - User identity (attributes) - User authentication Decides who has access Relying Service Managed by research infrastructures Managed by research service providers Relying Service Relying Service
  • 11. Example: ELIXIR AAI (authentication and authorisation infrastructure) ELIXIR AAI External authentication (e-infrastructures) Relying services eduGAIN IdPs Common IdPs ELIXIR Proxy IdP ELIXIR Directory Bona fide management Dataset authorisation management (REMS) Group/role mgmt (PERUN) Credential translation EGA eLearning Cloud Intranet wiki Data archive … … Attribute self-management Step-up AuthN
  • 12. Why Life Science RI collaboration on AAI • Researchers using services from several LS RIs • Less identities and usernames • Single-sign on to services • Many LS RIs have similar needs • Developing and operating AAI is expensive • More features with less costs when done centrally • Finding a sustainable model • Collaboration with e-infrastructures • AAI is not a core competence for research infrastructures 12
  • 13. History of AAI collaboration in Life Science • 5/2016 AARC/CORBELWP5 workshop for BMS AAI developers • Autumn 2016: Collect use cases for Life Science AAI • Spring 2017: Develop requirements specification for LS AAI • goo.gl/zvTQmB • 5/2017 AARC2 starts (BBMRI, ELIXIR, Infrafrontier, INSTRUCT) • Pilot on Life ScienceAAI included • 11/2017 LS AAI Pilot with e-infrastructures starts • Based on EGI, EUDAT and GEANT proposal • 1/2018 First phase of LS AAI Pilot ends 13
  • 14. LS AAI in EOSC-Life project proposal • Deploying LS AAI into production part of EOSC-LifeWP5 • Based on the AARC2 pilot • Finding a sustainable model • Partnering with e-infrastructures for LS AAI operations • Service ownership in LS community • Service operations in e-infrastructures 14
  • 15. Some technical features of LS AAI • External authentication • Researcher’s Home Organisation • Commercial (Google, Linkedin) • Hostel IdP as the last resort • Multi-factor authentication • Technical interfaces for relying services • SAML2 and OpenIDConnect • X.509 credential translation • Provisioning/deprovisioning • User attributes/authorisation • Home Organisation affiliation(s) • Home research infrastructure(s) • Researcher qualifications (bona fide researcher) • Dataset permissions • Group memberships • Active role selection Requirements specification: goo.gl/zvTQmB 15
  • 16. Demo LifeScienceID You can try it yourself at https://goo.gl/5dv6ns And Select LS AAI 26.4.2018 16
  • 17. NEXT WEBINAR 26/04/2018footer 17 Title:The BBMRI-ERIC ELSI Helpdesk – Personalising ELSI Support Speaker: Jasjote Grewal (BBMRI-ERIC) Date: 10th July 2018 Time: 15:30 CET Registration and details http://www.corbel-project.eu/webinars