Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Table of Contents

Participants

...

Please provide contact details for GN4-3 project participants involved in this activity

Please provide names and contact details for additional (external) organisations involved in this Incubator project

 Commercial proxy operators
Panel
titleContact data
NameEmailRoleSubmitter name & email:Niels,
Klaas
P.I.

Other participants

Scrum master...Dev...Dev...Mentor
Panel
titleContact data of Parties involved
Organisation Name
Person names
Person emailRole within pilot

 Companies

Proposers


#Enter the persons who are submitter of the Activity - delete this line after using the template#

NameOrganisation
SURFnet
GÉANT



Panel
titleGN4-3 project team

#Enter the persons who are participating in the team that works on this Activity - delete this line after using the template#

NameOrganisationRole




















Panel
titleStakeholders

#Enter the persons who are internal projects or external stakeholders of this Activity - delete this line after using the template#

Name

Organisation

Role 
Christos Kanellopoulos (stale)GEANTeduTEAMS service owner
Davide VaghettiGARReduGAIN service owner


Activity overview

Panel
titleDescription

Many research collaborations as well as campus services need a solution to deal with guest identity, as in many cases not all users are members of the academic Identity Federations.

In several cases these users are working for a commercial company that has a relation with the research community of or the campus. Rather then force these users to use e.g. social accounts to authenticate for academic servicesaccounts, or have accounts created locally, this project activity investigates if and how the exiting existing IdM within the companies they work for may be used as external IdPs.


Panel
titleActivity goals
This activity should investigate technical, legal and business case aspects and report on these. If so appropriate a technical pilot could be conducted.

Activity Details

Panel
titleTechnical details

One angle to invistigate investigate here is a possible collaboration with commertial commercial providers of hosted proxy solutions like e.g. Ping Identity and OKTA to investigate of discuss if we can connect to their proxies for shared benefit for to our and their customersThis pilot aims to bring such Identity Providers into the IDhub solution, with formal support from the vendors. It also investigates the (technical) improvements needed to better scale the IDhub solution and will begin a dialog with the service activities to make the pilot move towards a full service offering under the GEANT umbrella.


Panel
titlePilot goals

Please describe the goals of pilot, including activities, participants, the community(ies) that require a solution. Describe when the pilot is done and how to measure the success of it, in a SMART way.

<Enter here>

Project Details

Panel
titleTechnical details

Please describe the technical details for this pilot.

<Enter here>

Panel
titleBusiness case

What is the business case for this Incubator project? Who would be customers of this solution and what would potential business case look like?

<Enter here>

Business case
Enabling company IDs to be used in the context of R&E would:
  • support public - private collaboration which is core to scientific collaborations. 
  • allow institutions to more easily offer courses to corporate
  • would make corporate IdP users first class citizens; 
  • would potentially improve LoA of guest login; 
  • would enhance eduGAIN as the source of federated identity in R&E


Panel
titleRisks
  • (Perceived) legal issues at the companies disallowing this
  • Unable to contact right people at PING, OKTA, etc.
  • Unable to in a timely fashion engage with commercial vendors and/or companies


Panel
titleData protection & Privacy

How do data protection and privacy impact this Incubator project? Think about e.g. handling of personal data of users

<Enter here>

The investigation on the GDPR compliant way of deal with PI in this case is part of the activity


Please describe here the set of criteria that the product must meet in order to be considered finished.

<Enter here>
Panel
titleDefinition of Done (DoD)
A report on how corporate accounts may be introduced into eduTEAMS and eduGAIN


Panel
titleSustainability
The proposed solution could be implemented by eduTEAMS or in a more generic eduGAIN solution

Activity Results

Panel
titleSustainability

When this Incubator project is completed, do you intend to continue using the solution? If yes, can you describe how you intent to sustain it? (E.g. through own staff, by using an e-Infrastructure provider, ...)

<Enter here>

Results
  • A report on the feasibility of and model for using corporate Identity in R&E federations
  • Optionally a test implementation, e.g. in collaboration with eduTEAMS


Meetings

Date

Activity

Owner

Minutes

January 1, 2017

Kickoff meeting



















Documents

(Attach any documents to this page to get them listed.)

Attachments