Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Section
Column
width600px500px

Introduction

This is information page of GN4-1-JRA3-T1 also known as the research task on Attributes and Authorisations in the Federated Identity Ecosystem.
If you have any questions or remarks: feel free to contact  Maarten Kremers 

Objectives

The objectives of this research task are to:

  • Further improving group management, by continuing work on VOOT specifications based on input from use-cases and extending additional group-aware applications with VOOT support.
  • Increasing usefulness of groups, by introducing group awareness into appropriate cloud service middleware such as OpenStack.
  • Putting the user in control by working on distributed and user controlled authorisation. Making collaboration and authorisation management platforms such as HEXAA and PERUN interoperate and contributing to the work on User Managed Access (UMA)
  • Stimulate user-centricity for identity federations, by studying implications, benefits and costs of moving from an organization-centric identity management model to a (more) user-centric identity federation model such as provided by eduID developments in various federations.

People

The following people are part of this task

AffiliationName
SURFnetMaarten Kremers (Tasklead)
CESNETMichal Procházka
CESNETSlávek Licehammer
GARRLalla Mantovani
GARRMarco Malavolti
GARR Andrea Biancini
NIIFKristóf Bajnok
NIIF /MTA-SZTAKIMihály Héder
NORDUnet / Umeå UniRoland Hedberg
NORDUnet / Umeå UniRebecka Gulliksson
RedIRIS / Uni MurciaAlejandro Perez Mendez
SWITCHChristoph Graf
SWITCHRolf Brugger

Workitem

In order to reach our goals the objectives are divided in the the following Work Items

  • AA Scalability and interoperability
  • User-Managed Access Controlled Attribute Service
  • Towards User-Centric Identity Management Model: EduKEEP

AA Scalability and interoperability

Panel
titlePeople
Panel
titleGoal / Workplan
 <placeholder>
Panel
titleDocuments / Links

AA Scalability and interoperability Documents on Google Drive (Access on request)

 

User-Managed Access Controlled Attribute Service

Panel
titlePeople
Panel
titleGoal / Workplan

A Proof-of-Concep for a UMA controlled attribute service.

An application which would ultimately allows an user to control access to all her attributes in one place and can be used by SAML2 IdPs and AAs or OpenID Connect OPs as their attribute sources. The way the application is to be build, it will be build independent of the implementation of the IdP and AA. They all should be able to use the same attribute service. All that is need is a common API.

Panel
titleDocuments / Links

Towards User-Centric Identity Management Model: EduKEEP

Panel
titlePeople
Panel
titleGoal / Workplan

<placeholder>

Panel
titleDocuments / Links

Question? / Remarks?

Please contact Maarten Kremers 

 

Column