Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The confederation infrastructure relies on a distributed set of AAA servers. The current configuration uses RADIUS as the AAA protocol. There are various transport protocols to carry RADIUS payloads, as of May 2012, the following protocols exist: RADIUS/UDP, RADIUS/TCP, RADIUS/DTLS and RADIUS/TLS. eduroam supports transport over RADIUS/UDP and RADIUS/TLS, and recommends the use of RADIUS/TLS. Routing of RADIUS messages, independently of the transport used, is implemented in two ways: a baseline routing model, based on a hierarchy of RADIUS servers, and a dynamic-routing model, based on DNS service discovery. The dynamic-routing model is only supported over RADIUS/TLS.European Top-level RADIUS Servers (ETLRS) for the European Confederation are operated by SURFnet (Netherlands) and DeIC (Denmark)  as part of eduroam OT. Top-level RADIUS Servers are deployed using Radiator software.

Complete explanation of technology infrastructure is provided in the eduroam Service Definition.

The following table is a list of products and resources used to deliver main functionalities of the eduroam service.

Service main element

Description

Technologies used in delivery

Access URL

(two) European Top Level Radius servers - ETLREach server has a list of connected, federation top-level domains (.nl, .dk, .hr, .de etc.) serving the appropriate NRENs. The servers also maintain exception rules for domains whose federation membership is not immediately identifiable in the realm (typically gTLD realms such as ’.edu’, ‘.eu’, ‘.net’, etc.).
The servers accept requests for the federation domains they are responsible for, and subsequently forward them to the associated RADIUS server for that federation, and transport the response (i.e. result of the authentication request) back.

...

Radiator

-

 


Supporting infrastructure

The following table is a list of products and resources used to deliver eduroam supporting services. 

Service supporting element

Description

Technologies used in delivery

Access URL

...

Complete explanation of technology infrastructure is provided in the eduroam Service Definition.

...

Monitoring, Diagnostics and Metering tools in monitor.eduroam.org

The basic purpose of the eduroam monitoring, diagnostics and metering service is:  

  • to test the functionality of the FLRSs, TLRSs and the whole confederation infrastructure.
  • to collect information about the authentication traffic from the FLRSs

...

  • .

...

The eduroam monitoring and diagnostics element reports the results of the tests

...

. An alert system is also implemented in order to inform OT and NRO responsible stuff about any malfunctions

...

.

...

The metering element relies on the F-Ticks tool

...

.

...

Some of those info are public, while others are restricted to predefined user groups. The decision on the availability of the information lies with the eduroam Steering Group (SG)

...

.


https://monitor.eduroam.org/

https://monitor.eduroam.org/f_ticks_about.php

eduroam Database

eduroam database stores information about eduroam service such as:

  • NRO representatives and respective contacts.
  • eduroam SP and IdP official contacts.
  • Information about eduroam Service Providers (SP location, technical info).
  • Monitoring information.
  • Information about the usage of the service.

It is the obligation of the NROs to provide the above mentioned information.

Information about the eduroam database design and data collection practice is available via

...

...

...

A web interface to the database is implemented, and it allows various views of the database content. Some of these are public, while others are restricted to predefined user groups

...

.The decision on the availability of the information lies

...

with

...

the eduroam SG.



Trouble Ticketing System (TTS)

First level support uses Trouble Ticketing System (TTS) to receive and process user requests. TTS system used is based on Request Tracker software and is provided by GEANT association. The support is available at help@eduroam.org  

eduroam Website

...

...

 is the central information point for eduroam users at the same time providing information and links for all user groups. It is built by using WordPress CMS. The website is run and

...

maintained by ?? . The content is edited by the PR team with support of the subject matter experts from OT.

...

...

wiki provides technical information, guides and manuals targeting technical personnel in NRO, IdP and SP organisations that are responsible for deploying different parts of eduroam infrastructure. To smaller extent, the content is as well provides technical information targeting eduroam end-users. The wiki pages are run as part of GEANT projects wiki pages, that are maintained and run by GEANT Ltd. The content is provided as volunteer contribution by the eduroam community, and edited by the subject matter experts from the eduroam OT. 

...

...

 is described in part Monitoring, Diagnostics and Metering



eduroam CAT

The eduroam Configuration Assistant Tool (CAT) has been developed to help organisations offering their users eduroam access. The tool builds customised installers for a range of popular PC and smartphone platforms and enhances the security for the end user.
The tool ensures that users are protected against rogue wi-fi hotspots accessing usernames and passwords.

The tool builds a specific configuration for each participating organisation and so users should ensure they are downloading the correct installer.  

eduroam CAT is available

...

at eduroam cat web siteeduroam CAT e is hosted and run by SRCE (Croatia) as part of eduroam OT. eduroam CAT is an in-house development for GEANT project, developed and maintained by GN4-2 JRA3 activity

...

 as part of eduroam development activitySource code is available at ?



Cost Benefit Analysis

Provide URL to last valid CBA

...