17
http://aarc-project.eu Authentication and Authorisation for Research and Collaboration Licia Florio I2 Global Summit User-Driven Innovation in the R&E Community Chicago, 16 May 2016 AARC Project Coordinator

User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

  • Upload
    others

  • View
    0

  • Download
    0

Embed Size (px)

Citation preview

Page 1: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu

AuthenticationandAuthorisationforResearchandCollaboration

LiciaFlorio

I2GlobalSummit

User-DrivenInnovationintheR&ECommunity

Chicago,16May2016

AARCProjectCoordinator

Page 2: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu

• EnablefederatedaccessforeScience projects.• Aproposalforapossiblearchitecturetoachievetheintegration.• Aproposaltofixthingswhenansecurityincidenthappens.

2

Aboutthissession

Page 3: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 3

TheGlobalNatureofResearch

Page 4: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 4

Wehaveallheard

Research doesnotendattheborders

Weshouldsupportourresearchers

Whyshouldwechangesomanythingsforafewresearchers?

Wherearetheseresearchers?

Page 5: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 5

The‘fewresearchers’madethenews

Page 6: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 6

BottomupApproach

Users'requirementsledthedevelopmentsofT&Iinfrastructures

Differentflavors,differenttechnologies:stillonegoal

Page 7: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 7

FromLocaltoGlobal- T&IInfrastructures

107

• Toenable federatedaccesstothenetwork

• Inproductionsince2004

• Toenable federatedaccesstoservices operatedbynational R&Eidentity federations

• Inproductionsince2011

Builtonnationalinfrastructures!

Page 8: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 8

Ande-Researchfederatedworld

wLCGFIM4R pilot

Page 9: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 9

ThinkGlobal,ActLocal

Notreally–Research&e- infrastructuresagreeonreusingratherthanreinventing

Page 10: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 10

ThinkGlobal:theAARCproject

AvoidafutureinwhichnewresearchcollaborationsdevelopindependentAAIs

Page 11: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 11

ThinkGlobal– Theproject

11

• Two-yearEC-fundedproject• 20partners• NRENs, e-InfrastructureprovidersandLibrariesasequalpartners

• About3Meurobudget• Startingdate1stMay,2015• https://aarc-project.eu/

AuthenticationandAuthorisationforResearchandCollaboration

Page 12: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu

Innovationviausers,integrationviaresearch-e-infrastructures,outreachviatraining

12

AARCApproach

Support e-infrastructures todeploy AARC results

Pilot relevant use-cases to test policies and technologies

Promote results viatraining asneeded

Researchers-drivenapproach todesign an

integratedAAIarchitecture

Page 13: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 13

AddressingTheRequirements

Non-web-browser

Guestusers

PersistentUniqueId

Credentialtranslation

AttributeAggregation

AttributeRelease

LevelsofAssurance

CommunitybasedAuthZ

Social&e-Gov IDs

Step-upAuthN

UserManagedInformation

UserFriendliness

IncidentResponse

BestPractices

CredentialDelegation

SPFriendliness

Page 14: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 14

ATokenTranslationsServiceforEuropeUse-cases:• HidePKIXcomplexityfromtheusers.• FederatedAccesstowebandnon-webresources.• Supportdifferenttypeofcredentialsanddelegation.• Enablesaccesstodifferentresourceviaportal.

Benefits:• AllowsforVOservices, ie.VOMS• Offeredtoresearchcommunitiesasservice

Page 15: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 15

Flow

15

• Sirtfi• REFEDS“R&S”

Page 16: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu 16

Summary

16

FederatedApproachisthewaytogo(butthetechnologymaychange)

Muchmoreawareness aboutAAIs,righttimeforcrossinfrastructurescollaboration

AARChasshownthataframeworkinplacefacilitate collaboration

Mainchallenge todateislackofattributes

Page 17: User-Driven Innovation in the R&E Community · 5/16/2016  · (but the technology may change) Much more awareness about AAIs, right time for cross infrastructures collaboration AARC

http://aarc-project.eu

©GEANT onbehalf of theAARCproject.Theresearchleading totheseresultshasreceivedfundingfromtheEuropeanUnion’sHorizon2020researchandinnovationprogrammeunderGrantAgreementNo.653965(AARC).

ThankyouAnyQuestions?

[email protected]