7
SCIM Use Cases Phil Hunt, [email protected] Bhumip Khasnabish, [email protected] Anthony Nadalin, [email protected] Zachary Zeltsan, [email protected] Kepeng Li, [email protected] s://datatracker.ietf.org/doc/draft-zeltsan-scim-use

SCIM Use Cases Phil Hunt, [email protected]@oracle.com Bhumip Khasnabish, [email protected]@zteusa.com Anthony

Embed Size (px)

Citation preview

Page 2: SCIM Use Cases Phil Hunt, phil.hunt@oracle.comphil.hunt@oracle.com Bhumip Khasnabish, bhumip.khasnabish@zteusa.combhumip.khasnabish@zteusa.com Anthony

Outline

User scenarios Use casesRequirements

Page 3: SCIM Use Cases Phil Hunt, phil.hunt@oracle.comphil.hunt@oracle.com Bhumip Khasnabish, bhumip.khasnabish@zteusa.combhumip.khasnabish@zteusa.com Anthony

Use Cases -- in 00 versionChange of the ownership of a resource

Migration of the identifiers

Single Sign-On (SSO)

Provisioning of the user accounts for a Community of Interest

Update attributes of a user who had previously interacted with a relying party web site

Change notification

Page 4: SCIM Use Cases Phil Hunt, phil.hunt@oracle.comphil.hunt@oracle.com Bhumip Khasnabish, bhumip.khasnabish@zteusa.combhumip.khasnabish@zteusa.com Anthony

Template for a use caseDescription

Pre-condition

Post-condition

Requirements

Page 5: SCIM Use Cases Phil Hunt, phil.hunt@oracle.comphil.hunt@oracle.com Bhumip Khasnabish, bhumip.khasnabish@zteusa.combhumip.khasnabish@zteusa.com Anthony

User Scenarios: SCIM Actors

Page 6: SCIM Use Cases Phil Hunt, phil.hunt@oracle.comphil.hunt@oracle.com Bhumip Khasnabish, bhumip.khasnabish@zteusa.combhumip.khasnabish@zteusa.com Anthony

User Scenarios – added in 01 version

Cloud Service Provider to Cloud Service Provider FlowsCSP -> CSP: Create Identity (Push)CSP -> CSP: Update Identity (Push)CSP -> CSP: Delete Identity (Push)CSP -> CSP: SSO Trigger (Push)CSP -> CSP: SSO Trigger (Pull)CSP -> CSP: Password Reset (Push)

Enterprise Service Provider to Cloud Service Provider FlowsECS -> CSP: Create Identity (Push)ECS -> CSP: Update Identity (Push)ECS -> CSP: Delete Identity (Push)ECS -> CSP: SSO Trigger (Push)

Page 7: SCIM Use Cases Phil Hunt, phil.hunt@oracle.comphil.hunt@oracle.com Bhumip Khasnabish, bhumip.khasnabish@zteusa.combhumip.khasnabish@zteusa.com Anthony

Future work and next stepFuture work

Align with SCIM API and SCIM scheme drafts

More security considerations

More reviews and feedbacks

Next step

Accept it as a WG draft?