Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

When and where

2016-06-07, Rome, University of Roma 317, Prague

Occasion

IDEM DAY 2016, the annual workshop of IDEM Federation, TNC2016, 2016 June 612-8 17 https://wwwtnc16.idem.garr.it/idemday2016geant.org

Website

https://wwwtnc16.idemgeant.garr.itorg/idemday2016core/separa-programma/7-giugno-corso-internazionalizzazione-con-edugainevent/39

Description

AARC Training: Defining a training module for scalable attribute release in federation and interfederation’ workshop 

AARC project team will seek feedback on a proposed training package to support Identity Providers in the attribute release process. 
 

*About the training*

Federated BECOME INTERNATIONAL WITH EDUGAIN: Towards a scalable and safe users attribute release
Training for all Identity Provider operators. In the afternoon Open Space Technology.
The federated access is an essential mechanism for the efficient, safe and secure access to shared resources and shared services. In this context, the identity federation must Identity federations ensure that access remains simple for the user, without letting it run into errors that blocking access to resources. This is why the IDEM Federation intends to facilitate collaboration between all the Identity Providers in IDEM Federation and all the active resources in eduGAIN interfederation. The biggest obstacle faced by users when thet try to access eduGAIN services is the failure to obtain user attributes from the IdP. This course aims to promote best practices and tools to help organizations to legally manage a safe and effective release of the attributes. For this purpose Entity Categories have been defined and are spreading. Entity Categories enable to distinguish the resources (SPs) and Identity Providers (IdP) into categories based on common characteristics they hold. By supporting Entity Category "Research and Scholarship" and "Code Of Conduct", an Identity Provider can:

  • Automatically select all of eduGAIN SPs ensuring compliance with rules on the processing of personal data and belong to the community research and education;
  • Preventing the disruption created to end users due to the impossibility to release its attributes;
  • Contribute to the achievement of a more usable interfederazione eduGAIN, with a view to ensuring easier access to thousands of services.

 

This day will be devoted to the knowledge of the Entity Category adopted from IDEM and will provide the Identity Provider managers of semi-automatic tools able to support Entity Category and simplify the management of scalable attributes to its end users.

Agenda

09:00 - 10:30 Corso parte I

10:30 - 11:00 Pausa Caffè

11:00 - 12:30 Corso parte II

12:30 - 14:00 Pausa Pranzo e Reti di Persone

14:00 - 16:00 Open Space Technology

  • Problematiche giuridiche e politiche nelle organizzazioni per l'applicazione di R&S e Data Protection CoCo
  • Problematiche tecniche nelle organizzazioni per l'applicazione di R&S e Data Protection CoCo
  • Nuove Entity Category per IDEM

16:00 - 16:30Pausa Caffè

16:30 - 17:30 Wrap up e Assemblea finale

Teachers

Lalla Mantovani

Simona Venuti

Marco Malavolti

Participants

federated access runs smoothly and seamlessly for theuser. To make this happen federation operators facilitate collaboration between multiple parties and, in this work, face many challenges. One of these challenges concerns adopting best practices and offering tools to help home institutions to efficiently manage attribute release.
The AARC training module on attribute release aims to address this challenge.

The training aims to provide a common approach for IdPs to implement an effective and legally compliant attribute release. The proposed module is built upon the REFEDS Entity Categories approach and a set of best practices coming from experienced federations. The training package will
enable federations adopting it to be aware of a workflow and tools that the federation operator can adopt and adapt to their needs; obtain training materials that the federation operator can re-use to train their home organisations; learn about existing practices in the field (IDEM GARR AAI, Edugate (Jagger), SWITCH AAI (Resource Registry), InCommon (Attribute Filter rules proposed for R&S entity category)); and to network with like-minded peers and discuss the prospects and future of the role of federation operators in the attribute release solution.
 
 

*About the workshop*

The workshop is a consultation about the proposal for federation operators to take a stronger role in navigating home organisations through the attribute release process. 
 

*About AARC*

AARC is an EC-funded project that seeks to increase the uptake of federated access through inter-operable authentication and authorisation infrastructures for research and education infrastructures. To achieve this vision, AARC aspires, via a number of training modules, to promote
the adoption of existing best practices in the field of federated access.

Agenda

13:00 – 13:15 Welcome to Workshop

13:15 – 13:50 Introduction and Goals

The Federation Operator role

Q and A

13:50 – 14:00 a break

14:00 – 15:00 Presentation of the training material (summary):

Part I: Attribute release - understanding the problem

Part II: Solutions – theory and practice of entity categories

Part III: Solutions – federation registry

15:00 – 15:10 a break

15:10 – 15:40 Work group: review the material and answer the questions

15:40 – 16:00 Report from the groups, Debriefing and Summary

Teachers

Lalla Mantovani - GARR

Simona Venuti - GARR

Marco Malavolti - GARR

Facilitator

Irina Mikhailava - GÉANT

Participants

About 20 people https://eventr.geant.org/events/243140 people in presence (and 80 people remote during the morning session)