SlideShare a Scribd company logo
1 of 13
Download to read offline
Welcome
Identity Federations

October 20th, Vienna
Identity Federations
09:00                                Welcome
                                  Federation Lab
                  Plans and User interface (Andreas) - 10 min
                   Live statistics from Feide (Andreas) - 5 min
        Monitoring and statistics - Monitoring and statistics (Miro) - 15 min
                  Automated SP for testing IdPs (Miro) - 15 min
                     OpenID Connect Lab (Roland) - 40 min
10:30



Coffee Break
11:00
                Federated Provisioning - STINUS (Wayf) - 15 min

                         Moonshot status (Josh) - 20 min

                                       VOOT
                              Sympa Status (Renater)
                              SurfNet Status (SurfNet)
                               Plans and Discussion
12:30


 Lunch

        14:00 Identity Federations + eduGAIN
Identity Federations + eduGAIN

 Lunch
14:00
                      Welcome (Andreas and Valter)

                  Federation Lab and eduGAIN - 25 min
                     Federation Lab in eduGAIN context
                      Service Provider profile validation
                           Attribute set validation
                              Metadata validation

              Discovery and usability, DiscoJuice - 25 min
                     Federation Lab in eduGAIN context
                      Service Provider profile validation
                           Attribute set validation
                              Metadata validation


                 Attribute Semantics (Brook S) - 30 min
15:30



Coffee Break                                                                 may start
                                                                              earlier
16:00       eduGAIN Connectivity Workflow (Valter) - 75 min

                        Workflow of establishing trust
                      between entities within eduGAIN

        Opt-in and opt-out
         Trunctating the list of available IdPs in discovery services
         Federations providing list of trust matrix
         User experience when connectivity is missing
            How to get in contact with the right people, requesting access
            Error messages in IdPs
         SPs handling various set of attributes

                             SAML2int - 15 min
17:30                          to REFEDS?
Federation Lab
Identity Federations

October 20th, Vienna
Federation Lab Version 1.0

✤   Version 1.0 is in operation on https://fed-lab.org

✤   Automated SAML 2.0 SP Testing

✤   SAML Tracer

✤   Web-based debugger
Federation Lab Version 2.0


✤   Test SAML 2.0 SP
✤   Test SAML 2.0 IdP
✤   Test OpenID Connect Provider
✤   Test OpenID Consumer
✤   Test OAuth Provider
✤   Test OAuth Consumer
✤   Validation of Metadata
Version 2.0



✤   Complete new UI to setup and execute the automated testing.

    ✤   Improved user experience, no login required.

✤
FedLab UI - Configuration
FedLab UI - Test execution
Federation Lab - Test federation

✤   IdP Test Federation
     ✤ A feed of operational (test) IdPs that trusts all registered SPs.

     ✤ The purpose is to test Service Providers.

     ✤ Include at least: ProtectNetwork, Feide OpenIdP, ++

✤   SP Test Federation
     ✤ One or more SPs configured to trust all IdPs.

     ✤ Includes a discovery service

     ✤ Simple way to register IdPs

     ✤ Purpose is to test Identity Providers

✤   Focus on eduGAIN
Federation Lab - Test federation

✤   What’s needed:
    ✤   Metadata aggregator
    ✤   Registry
    ✤   Partnerships with various providers
✤   Tight collaboration with eduGAIN
✤   Collaboration with PEER?
✤   Setup DiscoJuice?
Federation Lab - Test federation




✤   Federation Lab Test Federation needs a boost.
✤   One participant should lead the work on this specific task.
Next Up


✤   Statistics Monitoring (Miro) 15 min

✤   Automated SP for testing IdPs (Miro) 15 min

✤   OpenID Connect (Roland) 40 min



✤   Coffee break at 10:30

More Related Content

More from Andreas Åkre Solberg

More from Andreas Åkre Solberg (20)

Dataporten for grunnopplæringa - Workshop September 2017
Dataporten for grunnopplæringa - Workshop September 2017Dataporten for grunnopplæringa - Workshop September 2017
Dataporten for grunnopplæringa - Workshop September 2017
 
Dataporten Workshop
Dataporten WorkshopDataporten Workshop
Dataporten Workshop
 
Dataporten
DataportenDataporten
Dataporten
 
Dataporten for Sigma2, Hell
Dataporten for Sigma2, HellDataporten for Sigma2, Hell
Dataporten for Sigma2, Hell
 
Dataporten intro (workshop with Difi)
Dataporten intro (workshop with Difi)Dataporten intro (workshop with Difi)
Dataporten intro (workshop with Difi)
 
UNINETT Feide Connect (Feide fagdag)
UNINETT Feide Connect (Feide fagdag)UNINETT Feide Connect (Feide fagdag)
UNINETT Feide Connect (Feide fagdag)
 
Connect (UNINETT-konferansen, Tromsø)
Connect (UNINETT-konferansen, Tromsø)Connect (UNINETT-konferansen, Tromsø)
Connect (UNINETT-konferansen, Tromsø)
 
Connect (USIT)
Connect (USIT)Connect (USIT)
Connect (USIT)
 
Feide Connect SUHS 2014
Feide Connect SUHS 2014Feide Connect SUHS 2014
Feide Connect SUHS 2014
 
Feide connect tnc2014
Feide connect   tnc2014Feide connect   tnc2014
Feide connect tnc2014
 
SCIM and VOOT
SCIM and VOOTSCIM and VOOT
SCIM and VOOT
 
Feide Connect
Feide ConnectFeide Connect
Feide Connect
 
OAuth 2.0
OAuth 2.0OAuth 2.0
OAuth 2.0
 
UWAP Tjenesteplattform
UWAP TjenesteplattformUWAP Tjenesteplattform
UWAP Tjenesteplattform
 
UNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP PrototypeUNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP Prototype
 
UNINETT WebApp Park
UNINETT WebApp ParkUNINETT WebApp Park
UNINETT WebApp Park
 
Federation Lab and OpenID Connect
Federation Lab and OpenID ConnectFederation Lab and OpenID Connect
Federation Lab and OpenID Connect
 
Single Logout
Single LogoutSingle Logout
Single Logout
 
SAML2int
SAML2intSAML2int
SAML2int
 
DiscoJuice
DiscoJuiceDiscoJuice
DiscoJuice
 

Recently uploaded

Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Victor Rentea
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
WSO2
 

Recently uploaded (20)

Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 

01 Welcome - Federation Lab

  • 2. Identity Federations 09:00 Welcome Federation Lab Plans and User interface (Andreas) - 10 min Live statistics from Feide (Andreas) - 5 min Monitoring and statistics - Monitoring and statistics (Miro) - 15 min Automated SP for testing IdPs (Miro) - 15 min OpenID Connect Lab (Roland) - 40 min 10:30 Coffee Break 11:00 Federated Provisioning - STINUS (Wayf) - 15 min Moonshot status (Josh) - 20 min VOOT Sympa Status (Renater) SurfNet Status (SurfNet) Plans and Discussion 12:30 Lunch 14:00 Identity Federations + eduGAIN
  • 3. Identity Federations + eduGAIN Lunch 14:00 Welcome (Andreas and Valter) Federation Lab and eduGAIN - 25 min Federation Lab in eduGAIN context Service Provider profile validation Attribute set validation Metadata validation Discovery and usability, DiscoJuice - 25 min Federation Lab in eduGAIN context Service Provider profile validation Attribute set validation Metadata validation Attribute Semantics (Brook S) - 30 min 15:30 Coffee Break may start earlier 16:00 eduGAIN Connectivity Workflow (Valter) - 75 min Workflow of establishing trust between entities within eduGAIN Opt-in and opt-out Trunctating the list of available IdPs in discovery services Federations providing list of trust matrix User experience when connectivity is missing How to get in contact with the right people, requesting access Error messages in IdPs SPs handling various set of attributes SAML2int - 15 min 17:30 to REFEDS?
  • 5. Federation Lab Version 1.0 ✤ Version 1.0 is in operation on https://fed-lab.org ✤ Automated SAML 2.0 SP Testing ✤ SAML Tracer ✤ Web-based debugger
  • 6. Federation Lab Version 2.0 ✤ Test SAML 2.0 SP ✤ Test SAML 2.0 IdP ✤ Test OpenID Connect Provider ✤ Test OpenID Consumer ✤ Test OAuth Provider ✤ Test OAuth Consumer ✤ Validation of Metadata
  • 7. Version 2.0 ✤ Complete new UI to setup and execute the automated testing. ✤ Improved user experience, no login required. ✤
  • 8. FedLab UI - Configuration
  • 9. FedLab UI - Test execution
  • 10. Federation Lab - Test federation ✤ IdP Test Federation ✤ A feed of operational (test) IdPs that trusts all registered SPs. ✤ The purpose is to test Service Providers. ✤ Include at least: ProtectNetwork, Feide OpenIdP, ++ ✤ SP Test Federation ✤ One or more SPs configured to trust all IdPs. ✤ Includes a discovery service ✤ Simple way to register IdPs ✤ Purpose is to test Identity Providers ✤ Focus on eduGAIN
  • 11. Federation Lab - Test federation ✤ What’s needed: ✤ Metadata aggregator ✤ Registry ✤ Partnerships with various providers ✤ Tight collaboration with eduGAIN ✤ Collaboration with PEER? ✤ Setup DiscoJuice?
  • 12. Federation Lab - Test federation ✤ Federation Lab Test Federation needs a boost. ✤ One participant should lead the work on this specific task.
  • 13. Next Up ✤ Statistics Monitoring (Miro) 15 min ✤ Automated SP for testing IdPs (Miro) 15 min ✤ OpenID Connect (Roland) 40 min ✤ Coffee break at 10:30