Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Table of Contents

#Use this template to capture proposal for a new Incubator Activity - delete this line after using the template#

Participants

#Enter the persons who are submitter of the Activity - delete this line after using the template#
Panel
titleProposers


NameOrganisation
Niels van DijkSURF



Panel
titleGN4-3 project team


#Enter the persons who are participating in the team that works on this Activity - delete this line after using the template#

NameOrganisationRole
Branko
Core team member
MihalySZTAKICore team member



#Enter the persons who are internal projects or external stakeholders of this Activity - delete this line after using the template#
Panel
titleStakeholders


Name

Organisation

Role 
ChristosGÉANT
David G

KlaasGÉANT
Leif

Mikeal Linden


Activity overview

#Please describe the high-level goal of the incubator Activity, provide an overview of the anticipated work and needed resources and skills. Please also describe how commitment from various partners is warranted. - delete this line after using the template#

<Enter here>
Panel
titleDescription

This activity explores the use of a distributed approach to provide digital identities.


Panel
titleActivity goals

The aim of this activity is to collect requirements and use cases for the use of distributed identity to enable a subsequent POC.

Activity Details

Panel
titleActivity goals

#Please describe the goals of Activity, including what needs to be delivered, participants, the community(ies) that require a solution. Describe when the Activity is done and how to measure the success of it, in a SMART way. - delete this line after using the template#

<Enter here>

Activity Details

Technical details

Researchers needs access to many, often distributed, resources. For this propose, many services support federated identity, which leverages the identity management solutions from a home institution to handle authentication and provide a basic set of profile information in the form of claims. In most cases, the home institution profile needs to be complemented with information from the research community, like for example group memberships. Also additional registries may need to to be consulted, e.g. to get specific identifiers like ORCID.
The combined set of information is then delivered at a service so it may allow the user in. Today this flow is typically facilitated by a community AAI, where a membership management component acts as the community registry and a proxy is used to collect and then redistribute the required profile information.

A new paradigm, Distributed Identity, tries to let user be in direct control of the profile information they share with services. Rather then letting others provide claims towards a service, the users collects claim themselves from various sources and independently provides these when so requested by services. The services can check the validity of these claims against a central verifiable claims registry.

This activity investigates the functional requirements for such a system by interviewing key stakeholders. Next it tries to create a proof of concept platform to test and validate the requirements. The intent is not to build up a Distributed Identity platform from the ground up, but to use an existing platform. However creation of certain bridging elements to handle protocol translation is assumed to be required as part of the activity.

Panel
titleTechnical details

#Please describe the technical details for the Activity. - delete this line after using the template#

<Enter here>


Panel
titleBusiness case

#What is the business case for the Activity? Who would be beneficiaries of the results of the Activity and what would potential business case look like if applicable? - delete this line after using the template#

<Enter here>



Panel
titleRisks

#Are there risks that influence either the implementation of the activity or its outcomes? - delete this line after using the template#

<Enter here>



Panel
titleData protection & Privacy

#How do The activity does not affect data protection and privacy impact the Activity? Think about e.g. handling of personal data of users - delete this line after using the template#

<Enter here>

or privacy.


Panel
titleDefinition of Done (DoD)

Investigate and report various aspects of the use of distributed identity for allowing access to research services; build a pilot to test the assumptions


#How are the results of the

#Please describe here the set of criteria that the product must meet in order to be considered finished. - delete this line after using the template#

<Enter here>

Panel
titleSustainability


Activity

...

<Enter here>

Activity Results

Panel
titleResults

The results of this activity include presentations and various reports

#Please provide pointers to completed and intermediary results of this activity - delete this line after using the template#

Meetings

Kickoff meeting

Date

Activity

Owner

Minutes

January 1, 2017





















Documents

Attachments