SlideShare a Scribd company logo
1 of 13
Download to read offline
Welcome
Identity Federations

October 20th, Vienna
Identity Federations
09:00                                Welcome
                                  Federation Lab
                  Plans and User interface (Andreas) - 10 min
                   Live statistics from Feide (Andreas) - 5 min
        Monitoring and statistics - Monitoring and statistics (Miro) - 15 min
                  Automated SP for testing IdPs (Miro) - 15 min
                     OpenID Connect Lab (Roland) - 40 min
10:30



Coffee Break
11:00
                Federated Provisioning - STINUS (Wayf) - 15 min

                         Moonshot status (Josh) - 20 min

                                       VOOT
                              Sympa Status (Renater)
                              SurfNet Status (SurfNet)
                               Plans and Discussion
12:30


 Lunch

        14:00 Identity Federations + eduGAIN
Identity Federations + eduGAIN

 Lunch
14:00
                      Welcome (Andreas and Valter)

                  Federation Lab and eduGAIN - 25 min
                     Federation Lab in eduGAIN context
                      Service Provider profile validation
                           Attribute set validation
                              Metadata validation

              Discovery and usability, DiscoJuice - 25 min
                     Federation Lab in eduGAIN context
                      Service Provider profile validation
                           Attribute set validation
                              Metadata validation


                 Attribute Semantics (Brook S) - 30 min
15:30



Coffee Break                                                                 may start
                                                                              earlier
16:00       eduGAIN Connectivity Workflow (Valter) - 75 min

                        Workflow of establishing trust
                      between entities within eduGAIN

        Opt-in and opt-out
         Trunctating the list of available IdPs in discovery services
         Federations providing list of trust matrix
         User experience when connectivity is missing
            How to get in contact with the right people, requesting access
            Error messages in IdPs
         SPs handling various set of attributes

                             SAML2int - 15 min
17:30                          to REFEDS?
Federation Lab
Identity Federations

October 20th, Vienna
Federation Lab Version 1.0

✤   Version 1.0 is in operation on https://fed-lab.org

✤   Automated SAML 2.0 SP Testing

✤   SAML Tracer

✤   Web-based debugger
Federation Lab Version 2.0


✤   Test SAML 2.0 SP
✤   Test SAML 2.0 IdP
✤   Test OpenID Connect Provider
✤   Test OpenID Consumer
✤   Test OAuth Provider
✤   Test OAuth Consumer
✤   Validation of Metadata
Version 2.0



✤   Complete new UI to setup and execute the automated testing.

    ✤   Improved user experience, no login required.

✤
FedLab UI - Configuration
FedLab UI - Test execution
Federation Lab - Test federation

✤   IdP Test Federation
     ✤ A feed of operational (test) IdPs that trusts all registered SPs.

     ✤ The purpose is to test Service Providers.

     ✤ Include at least: ProtectNetwork, Feide OpenIdP, ++

✤   SP Test Federation
     ✤ One or more SPs configured to trust all IdPs.

     ✤ Includes a discovery service

     ✤ Simple way to register IdPs

     ✤ Purpose is to test Identity Providers

✤   Focus on eduGAIN
Federation Lab - Test federation

✤   What’s needed:
    ✤   Metadata aggregator
    ✤   Registry
    ✤   Partnerships with various providers
✤   Tight collaboration with eduGAIN
✤   Collaboration with PEER?
✤   Setup DiscoJuice?
Federation Lab - Test federation




✤   Federation Lab Test Federation needs a boost.
✤   One participant should lead the work on this specific task.
Next Up


✤   Statistics Monitoring (Miro) 15 min

✤   Automated SP for testing IdPs (Miro) 15 min

✤   OpenID Connect (Roland) 40 min



✤   Coffee break at 10:30

More Related Content

More from Andreas Åkre Solberg (20)

Dataporten for grunnopplæringa - Workshop September 2017
Dataporten for grunnopplæringa - Workshop September 2017Dataporten for grunnopplæringa - Workshop September 2017
Dataporten for grunnopplæringa - Workshop September 2017
 
Dataporten Workshop
Dataporten WorkshopDataporten Workshop
Dataporten Workshop
 
Dataporten
DataportenDataporten
Dataporten
 
Dataporten for Sigma2, Hell
Dataporten for Sigma2, HellDataporten for Sigma2, Hell
Dataporten for Sigma2, Hell
 
Dataporten intro (workshop with Difi)
Dataporten intro (workshop with Difi)Dataporten intro (workshop with Difi)
Dataporten intro (workshop with Difi)
 
UNINETT Feide Connect (Feide fagdag)
UNINETT Feide Connect (Feide fagdag)UNINETT Feide Connect (Feide fagdag)
UNINETT Feide Connect (Feide fagdag)
 
Connect (UNINETT-konferansen, Tromsø)
Connect (UNINETT-konferansen, Tromsø)Connect (UNINETT-konferansen, Tromsø)
Connect (UNINETT-konferansen, Tromsø)
 
Connect (USIT)
Connect (USIT)Connect (USIT)
Connect (USIT)
 
Feide Connect SUHS 2014
Feide Connect SUHS 2014Feide Connect SUHS 2014
Feide Connect SUHS 2014
 
Feide connect tnc2014
Feide connect   tnc2014Feide connect   tnc2014
Feide connect tnc2014
 
SCIM and VOOT
SCIM and VOOTSCIM and VOOT
SCIM and VOOT
 
Feide Connect
Feide ConnectFeide Connect
Feide Connect
 
OAuth 2.0
OAuth 2.0OAuth 2.0
OAuth 2.0
 
UWAP Tjenesteplattform
UWAP TjenesteplattformUWAP Tjenesteplattform
UWAP Tjenesteplattform
 
UNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP PrototypeUNINETT IoU - UWAP Prototype
UNINETT IoU - UWAP Prototype
 
UNINETT WebApp Park
UNINETT WebApp ParkUNINETT WebApp Park
UNINETT WebApp Park
 
Federation Lab and OpenID Connect
Federation Lab and OpenID ConnectFederation Lab and OpenID Connect
Federation Lab and OpenID Connect
 
Single Logout
Single LogoutSingle Logout
Single Logout
 
SAML2int
SAML2intSAML2int
SAML2int
 
DiscoJuice
DiscoJuiceDiscoJuice
DiscoJuice
 

Recently uploaded

Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native ApplicationsWSO2
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Angeliki Cooney
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobeapidays
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024The Digital Insurer
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Victor Rentea
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusZilliz
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Orbitshub
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businesspanagenda
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...Zilliz
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDropbox
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxRustici Software
 

Recently uploaded (20)

Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with Milvus
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 

01 Welcome - Federation Lab

  • 2. Identity Federations 09:00 Welcome Federation Lab Plans and User interface (Andreas) - 10 min Live statistics from Feide (Andreas) - 5 min Monitoring and statistics - Monitoring and statistics (Miro) - 15 min Automated SP for testing IdPs (Miro) - 15 min OpenID Connect Lab (Roland) - 40 min 10:30 Coffee Break 11:00 Federated Provisioning - STINUS (Wayf) - 15 min Moonshot status (Josh) - 20 min VOOT Sympa Status (Renater) SurfNet Status (SurfNet) Plans and Discussion 12:30 Lunch 14:00 Identity Federations + eduGAIN
  • 3. Identity Federations + eduGAIN Lunch 14:00 Welcome (Andreas and Valter) Federation Lab and eduGAIN - 25 min Federation Lab in eduGAIN context Service Provider profile validation Attribute set validation Metadata validation Discovery and usability, DiscoJuice - 25 min Federation Lab in eduGAIN context Service Provider profile validation Attribute set validation Metadata validation Attribute Semantics (Brook S) - 30 min 15:30 Coffee Break may start earlier 16:00 eduGAIN Connectivity Workflow (Valter) - 75 min Workflow of establishing trust between entities within eduGAIN Opt-in and opt-out Trunctating the list of available IdPs in discovery services Federations providing list of trust matrix User experience when connectivity is missing How to get in contact with the right people, requesting access Error messages in IdPs SPs handling various set of attributes SAML2int - 15 min 17:30 to REFEDS?
  • 5. Federation Lab Version 1.0 ✤ Version 1.0 is in operation on https://fed-lab.org ✤ Automated SAML 2.0 SP Testing ✤ SAML Tracer ✤ Web-based debugger
  • 6. Federation Lab Version 2.0 ✤ Test SAML 2.0 SP ✤ Test SAML 2.0 IdP ✤ Test OpenID Connect Provider ✤ Test OpenID Consumer ✤ Test OAuth Provider ✤ Test OAuth Consumer ✤ Validation of Metadata
  • 7. Version 2.0 ✤ Complete new UI to setup and execute the automated testing. ✤ Improved user experience, no login required. ✤
  • 8. FedLab UI - Configuration
  • 9. FedLab UI - Test execution
  • 10. Federation Lab - Test federation ✤ IdP Test Federation ✤ A feed of operational (test) IdPs that trusts all registered SPs. ✤ The purpose is to test Service Providers. ✤ Include at least: ProtectNetwork, Feide OpenIdP, ++ ✤ SP Test Federation ✤ One or more SPs configured to trust all IdPs. ✤ Includes a discovery service ✤ Simple way to register IdPs ✤ Purpose is to test Identity Providers ✤ Focus on eduGAIN
  • 11. Federation Lab - Test federation ✤ What’s needed: ✤ Metadata aggregator ✤ Registry ✤ Partnerships with various providers ✤ Tight collaboration with eduGAIN ✤ Collaboration with PEER? ✤ Setup DiscoJuice?
  • 12. Federation Lab - Test federation ✤ Federation Lab Test Federation needs a boost. ✤ One participant should lead the work on this specific task.
  • 13. Next Up ✤ Statistics Monitoring (Miro) 15 min ✤ Automated SP for testing IdPs (Miro) 15 min ✤ OpenID Connect (Roland) 40 min ✤ Coffee break at 10:30