You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 5 Current »

Participants

Proposers


#Enter the persons who are submitter of the Activity - delete this line after using the template#

NameOrganisation
SURFnet
GÉANT
GN4-3 project team

#Enter the persons who are participating in the team that works on this Activity - delete this line after using the template#

NameOrganisationRole



















Stakeholders

#Enter the persons who are internal projects or external stakeholders of this Activity - delete this line after using the template#

Name

Organisation

Role 
Christos Kanellopoulos (stale)GEANTeduTEAMS service owner
Davide VaghettiGARReduGAIN service owner

Activity overview

Description

Many research collaborations as well as campus services need a solution to deal with guest identity, as in many cases not all users are members of the academic Identity Federations.

In several cases these users are working for a commercial company that has a relation with the research community or the campus. Rather then force these users to use e.g. social accounts, or have accounts created locally, this activity investigates if and how the existing IdM within the companies may be used as external IdPs.

Activity goals
This activity should investigate technical, legal and business case aspects and report on these. If so appropriate a technical pilot could be conducted.

Activity Details

Technical details

One angle to investigate here is a possible collaboration with commercial providers of hosted solutions like e.g. Ping Identity and OKTA to discuss if we can connect to their proxies for shared benefit to our and their customers.

Business case
Enabling company IDs to be used in the context of R&E would:
  • support public - private collaboration which is core to scientific collaborations. 
  • allow institutions to more easily offer courses to corporate
  • would make corporate IdP users first class citizens; 
  • would potentially improve LoA of guest login; 
  • would enhance eduGAIN as the source of federated identity in R&E
Risks
  • (Perceived) legal issues at the companies disallowing this
  • Unable to contact right people at PING, OKTA, etc.


Data protection & Privacy
The investigation on the GDPR compliant way of deal with PI in this case is part of the activity


Definition of Done (DoD)
A report on how corporate accounts may be introduced into eduTEAMS and eduGAIN


Sustainability
The proposed solution could be implemented by eduTEAMS or in a more generic eduGAIN solution

Activity Results

Results
  • A report on the feasibility of and model for using corporate Identity in R&E federations
  • Optionally a test implementation, e.g. in collaboration with eduTEAMS


Meetings

Date

Activity

Owner

Minutes

January 1, 2017

Kickoff meeting



















Documents

No files shared here yet.

  • No labels