Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

NameMaintain/ContinueChange/ImproveDrop/RetireComment

eduroam core services

ETLRS operation

Info Contact: Miro Milinovic

+1 (Stefan Winter)

+1 (Mario Reale)




eduroam supporting services

CAT, monitor.eduroam.org etc.

Info Contact: Stefan Winter/Miro Milinovic

+1 (Stefan Winter)

+1 (Mario Reale)




eduroam Managed IdP

(small and large site approaches)

Info Contact: Stefan Winter


+1 (Stefan Winter)
develop into production service (Stefan Winter)

eduroam diagnostics

(end user diagnostics, probes etc.)

Info Contact: Stefan Winter


+1 (Stefan Winter)

+1 (Mario Reale)


develop into production service (Stefan Winter)

radsec - let's radsec

Info Contact: Stefan Winter/Paul Dekkers





eduGAIN Core

MDS operation, SG secretariat & support for federations

Info Contact: Tomasz Wolniewicz (tech)/Brook Schofield

+1 (Thomas Lenggenhager)

+1 (Wolfgang Pempe)

+1 (SURFnet)

+1 (Mario Reale)



Continue the stable service (Thomas Lenggenhager)

Move into operations without using project funding (SURFnet)

eduGAIN supporting services

Tools such as IsFederated, ECCS etc. aggregated into technical/edugain.org

Info Contact: Tomasz Wolniewicz, Lukas Hämmerle

+1 (Thomas Lenggenhager)

+1 (Wolfgang Pempe)

+1 (SURFnet)

+1 (Mario Reale)

Consolidate separate tools into one service (SURFnet)


Useful tools (Thomas Lenggenhager)

Move into operations, without project funding, where applicable (SURFnet)

eduGAIN enhanced support

Troubleshooting coordination/support for complex interfederation issues, central SIRTFI support where needed, SP reg of last resort via UK Federation.

Info Contact: Lukas Hämmerle

+1 (Thomas Lenggenhager)

+1 (Wolfgang Pempe)

+1 (SURFnet)

+1 (Mario Reale)

Develop model so this can be moved into operations without using project funding (SURFnet)

Evaluate the SP of last resort registration (uptake, policy, do we still want / need this?) (SURFnet)


Registry of last resort with good support could be useful. Help candidate fed ops to increase their know-how and learn from others. (Thomas Lenggenhager)

Based on the AARC recommendations, I'd advocate for the SP registry to be promoted more not only as an eduGAIN enhancement but as a capability for GEANT to not only broker contracts on behalf of the members but also offer the technical platform to connect SPs to eduGAIN. Specifically I'm referrring to SPs that are explicitly global or pan european in scale and have little direct working relationshoip with federations, and/or those for which GEANT has a framework agreement.

See also eduGAIN SG thread eduGAIN-integration" for not-really-interested SPs" from 11/9/2017


eduGAIN BCP

Recommended practices for federations and their entities e.g. SIRTFI adoption, Assurance Profiles, MFA BCP etc.

Info Contact: Nicole Harris/Pål Axelsson

+1 (SURFnet)

Keep it simple, mainly as a check-list with links to the details. (Thomas Lenggenhager)

+1 for Thomas' comment (Wolfgang Pempe)

+1 as above (Mario Reale)

Federation as a Service

Federation platform: MDA, RR, HSM etc. as a service.

Info Contact: Marina Adomeit

+1 (Mario Reale)Investigate how much this can help federation uptake outside EU (SURFnet).

How successful is it? Is it worth the effort to continue? (Thomas Lenggenhager)

+1 for Thomas' comment (Wolfgang Pempe)

Evaluate how much this has helped the organizations without federation, can we say something about future growth? (SURFnet)

Useful to pursue functional integration with Campus IdP and piloting (Mario Reale)

Campus IdP

toolkits, platform for provisioning and/or managed service

Info Contact: Mario Reale

+1 (Mario Reale)

+1 (Thomas Lenggenhager)

+1 (Wolfgang Pempe)

Not relevant for us (Thomas Lenggenhager)

Promising developments on Docker to be further pursued, Ansible solution very comprehensive and mature, Full fledged Platform development fon Gn4.3 (Mario Reale)

InAcademia

https://inacademia.org

Note: Current intent is to operate via GÉANT Org, not project once in production.

Info Contact: Niels van Dijk

+1 (Thomas Lenggenhager)

+1 (Wolfgang Pempe)

+1 (SURFnet)

+1 (Mario Reale)




eduTEAMS

group management, ID Hub (guest solution) as basic offer, advanced offer can include HEXXA, Perun etc.

Info Contact: Niels van Dijk

+1 (Thomas Lenggenhager)

+1 (Wolfgang Pempe)

+1 (Mario Reale)

Investigate how to operate this wihtout project funding (SURFnet)
Fundamenal role for supporting Res Commun.(Mario Reale)

Discovery

central/common/distributed/federated discovery service with improved usability

Info Contact: Lukas Hämmerle

+1 (Wolfgang Pempe)

+1 (SURFnet)

+1 (Thomas Lenggenhager)

+1 (Mario Reale)


Don't forget the hub-and-spokies (smile) (SURFnet)

eduKEEP

User-centric Identity Federations, eduID initiatives

Info Contact: Maarten Kremers

+1 (Thomas Lenggenhager)

+1(Constantin Sclifos)

+1 (Wolfgang Pempe)

+1 (Mario Reale)

Investigate role of eduKEEP in disconnecting authentication from attributes. Role of government IDs, eIDAS (SURFnet).

StepUp Services - Assurance & MFA

stepUp Assurance, Authentication (MFA) etc.

Info Contact: Maarten Kremers

+1 (Wolfgang Pempe)

+1 (SURFnet)

+1 (Thomas Lenggenhager)

+1 (Mario Reale)



OIDC

Profile for eduGAIN, Federation BCP, any needed infrastructure to support global interop

Info Contact: Maarten Kremers

+1(Constantin Sclifos)

+1 (SURFnet)

+1 (Thomas Lenggenhager)

+1 (Wolfgang Pempe)

+1 (Mario Reale)



Create OIDC Testbed for FedOps (Wolfgang Pempe) +1 (Mario Reale)

Create OIDC2Int (SURFnet)

Cross sector interoperability

esp. interoperability with eIDAS

Info Contact: Christos Kanellopolous

+1 (Wolfgang Pempe)

+1 (SURFnet)

+1 (Mario Reale)


+1 (Thomas Lenggenhager)

No priority (Thomas Lenggenhager)

Stay connected with the eIDAS folks (Wolfgang Pempe)

Work towards pan-european solutions (SURFnet)


eduPKI

Info Contact: Reimer Karlsen-Masur

+1(Constantin Sclifos)

+1 Reimer Karlsen-Masur




Certificate Transparency

Info Contact: Linus Nordberg

+1(Constantin Sclifos)

+1 (SURFnet)

+ 1 (DFN-PKI)

+ 1 (DFN-PKI)

...