...
Name | Maintain/Continue | Change/Improve | Drop/Retire | Comment |
---|---|---|---|---|
eduroam core servicesETLRS operation Info Contact: Miro Milinovic | +1 (Stefan Winter) +1 (Mario Reale) | +1 (Nicole Harris) | Move to a more sustainable subscription model outside the project. | |
eduroam supporting servicesCAT, monitor.eduroam.org etc. Info Contact: Stefan Winter/Miro Milinovic | +1 (Stefan Winter) +1 (Mario Reale) +1 (T. Wolniewicz) | +1 (Nicole Harris) | Move to a more sustainable subscription model outside the project. | |
eduroam Managed IdP(small and large site approaches) Info Contact: Stefan Winter | +1 (Stefan Winter) +1 (T. Wolniewicz) | develop into production service (Stefan Winter) | ||
eduroam diagnostics(end user diagnostics, probes etc.) Info Contact: Stefan Winter | +1 (Stefan Winter) +1 (Mario Reale) +1 ( T. Wolniewicz) +1 (Nicole Harris) | develop into production service (Stefan Winter) also EAPlab - low usage but quite important for developers | ||
radsec - let's radsecInfo Contact: Stefan Winter/Paul Dekkers | +1 (Brook Schofield) | This is important to move toward RADSEC and Dynamic Peer Discovery | ||
eduGAIN CoreMDS operation, SG secretariat & support for federations Info Contact: Tomasz Wolniewicz (tech)/Brook Schofield | +1 (Thomas Lenggenhager) +1 (Wolfgang Pempe) +1 (SURFnet) +1 (Mario Reale) +1 (T. Wolniewicz) | +1 (Nicole Harris) | Continue the stable service (Thomas Lenggenhager) Move into operations without using project funding (SURFnet) +1 (Nicole Harris) | |
eduGAIN supporting servicesTools such as IsFederated, ECCS etc. aggregated into technical/edugain.org Info Contact: Tomasz Wolniewicz, Lukas Hämmerle | +1 (Thomas Lenggenhager) +1 (Wolfgang Pempe) +1 (SURFnet) +1 (Mario Reale) +1 (T. Wolniewicz) | Consolidate separate tools into one service (SURFnet) | Useful tools (Thomas Lenggenhager) Move into operations, without project funding, where applicable (SURFnet) | |
eduGAIN enhanced supportTroubleshooting coordination/support for complex interfederation issues, central SIRTFI support where needed, SP reg of last resort via UK Federation. Info Contact: Lukas Hämmerle | +1 (Thomas Lenggenhager) +1 (Wolfgang Pempe) +1 (SURFnet) +1 (Mario Reale) +1 (T. Wolniewicz) | Develop model so this can be moved into operations without using project funding (SURFnet) Evaluate the SP of last resort registration (uptake, policy, do we still want / need this?) (SURFnet) | Registry of last resort with good support could be useful. Help candidate fed ops to increase their know-how and learn from others. (Thomas Lenggenhager) Based on the AARC recommendations, I'd advocate for the SP registry to be promoted more not only as an eduGAIN enhancement but as a capability for GEANT to not only broker contracts on behalf of the members but also offer the technical platform to connect SPs to eduGAIN. Specifically I'm referrring to SPs that are explicitly global or pan european in scale and have little direct working relationshoip with federations, and/or those for which GEANT has a framework agreement. See also eduGAIN SG thread eduGAIN-integration" for not-really-interested SPs" from 11/9/2017 | |
eduGAIN BCPRecommended practices for federations and their entities e.g. SIRTFI adoption, Assurance Profiles, MFA BCP etc. Info Contact: Nicole Harris/Pål Axelsson | +1 (SURFnet) +1 (T. Wolniewicz) | +1 (Brook Schofield) | Keep it simple, mainly as a check-list with links to the details. (Thomas Lenggenhager) +1 for Thomas' comment (Wolfgang Pempe) +1 as above (Mario Reale) It has to be new - 'cause it doesn't yet exist. | |
Federation as a ServiceFederation platform: MDA, RR, HSM etc. as a service. Info Contact: Marina Adomeit | +1 (Mario Reale) +1 (T. Wolniewicz) | Investigate how much this can help federation uptake outside EU (SURFnet). | How successful is it? Is it worth the effort to continue? (Thomas Lenggenhager) +1 for Thomas' comment (Wolfgang Pempe) Evaluate how much this has helped the organizations without federation, can we say something about future growth? (SURFnet) Useful to pursue functional integration with Campus IdP and piloting (Mario Reale) Make this run on AliCloud. | |
Campus IdPtoolkits, platform for provisioning and/or managed service Info Contact: Mario Reale | +1 (Mario Reale) | +1 (Thomas Lenggenhager) +1 (Wolfgang Pempe) | Not relevant for us (Thomas Lenggenhager) Promising developments on Docker to be further pursued, Ansible solution very comprehensive and mature, Full fledged Platform development fon Gn4.3 (Mario Reale) | |
InAcademiaNote: Current intent is to operate via GÉANT Org, not project once in production. Info Contact: Niels van Dijk | +1 (Thomas Lenggenhager) +1 (Wolfgang Pempe) +1 (SURFnet) +1 (Mario Reale) +1 (T. Wolniewicz) | |||
eduTEAMSgroup management, ID Hub (guest solution) as basic offer, advanced offer can include HEXXA, Perun etc. Info Contact: Niels van Dijk | +1 (Thomas Lenggenhager) +1 (Wolfgang Pempe) +1 (Mario Reale) +1 (T. Wolniewicz) | Investigate how to operate this wihtout project funding (SURFnet) | Fundamenal role for supporting Res Commun.(Mario Reale) | |
Discoverycentral/common/distributed/federated discovery service with improved usability Info Contact: Lukas Hämmerle | +1 (Wolfgang Pempe) +1 (SURFnet) +1 (T. Wolniewicz) | +1 (Thomas Lenggenhager) +1 (Mario Reale) +1 (Brook Schofield) | Don't forget the hub-and-spokies (SURFnet) An instantiation of the REFEREFEDS Discovery Guide (in at least 1 GÉANT service) | |
eduKEEPUser-centric Identity Federations, eduID initiatives Info Contact: Maarten Kremers | +1 (Thomas Lenggenhager) +1(Constantin Sclifos) +1 (Wolfgang Pempe) +1 (Mario Reale) +1 (T. Wolniewicz) | Investigate role of eduKEEP in disconnecting authentication from attributes. Role of government IDs, eIDAS (SURFnet). | ||
StepUp Services - Assurance & MFAstepUp Assurance, Authentication (MFA) etc. Info Contact: Maarten Kremers | +1 (Wolfgang Pempe) +1 (SURFnet) | +1 (Thomas Lenggenhager) +1 (Mario Reale) +1 (Brook Schofield) | The non-vendor specific StepUpaaS from SURF should be forklifted into the GÉANT community and look at ways of delegating identity vetting via Postal Services and other methods that are country specific. | |
OIDCProfile for eduGAIN, Federation BCP, any needed infrastructure to support global interop Info Contact: Maarten Kremers | +1(Constantin Sclifos) +1 (SURFnet) | +1 (Thomas Lenggenhager) +1 (Wolfgang Pempe) +1 (Mario Reale) | Create OIDC Testbed for FedOps (Wolfgang Pempe) +1 (Mario Reale) Create OIDC2Int (SURFnet) | |
Cross sector interoperabilityesp. interoperability with eIDAS Info Contact: Christos Kanellopolous | +1 (Wolfgang Pempe) +1 (SURFnet) +1 (Mario Reale) +1 (T. Wolniewicz) | +1 (Thomas Lenggenhager) | No priority (Thomas Lenggenhager) Stay connected with the eIDAS folks (Wolfgang Pempe) Work towards pan-european solutions (SURFnet) | |
eduPKIInfo Contact: Reimer Karlsen-Masur | +1(Constantin Sclifos) +1 Reimer Karlsen-Masur | +1 (Brook Schofield) +1 (Nicole Harris) - evolve | Include addition development such as:
Other stuff like this to make the WHOLE landscape around our participation in CA clearer. | |
Certificate TransparencyInfo Contact: Linus Nordberg | +1(Constantin Sclifos) +1 (SURFnet) + 1 (DFN-PKI) | + 1 (DFN-PKI) get the log trusted by Chrome and other browsers | Is anything actually happening here? |
...