0 sign-on

DATE: 21 November 2012

TIME: 10:30

ROOM: Main

TOPIC:

CONVENER: Klaas

SCRIBE: Brook

# of ATTENDEES: 12 (Lukas, Anders, Nicole, Rhys, Tom, Ajay, Milan, Niels, Marten, Marko)

MAIN ISSUES DISCUSSED 

  1. eduroam profile can be installed on a device and an unlocked device is always on.
  2. What is the differentiation between this + Moonshot? Very different.
  3. How is this similar/dissimilar to DANE?
  4. This works for eduroam - but does your "starbucks" login carry forward?
  5. Many school districts are purchasing devices that are "loaned" to students for a period of time.
  6. Compelling case of joining "network login" with "application login"?
  7. Current profiles on mobile devices require multiple usernames and passwords to be requested.
  8. This is very similar to the provisioning of a client certificate.
  9. Is InCert a solution for this? The user only needs to link the cert with the IdP.
  10. There is a device setup (provisioning) problem AND an authentication (corporate, network) problem to solve.
  11. EAP-TLS is prone to the RADIUS fragmentation problem. Moonshot team are looking at solving this. But it will take time.
  12. Device support for client certificate is poor. Only Android 4 supports this - and only with the default browser - not with Firefox.

ACTIVITIES GOING FORWARD / NEXT STEPS

  1. Discuss with Stefan a revision to the collaboration between InCert and CAT.

RESOURCES

  • ...

If slides, websites or other pointers for information are used in the session, please attach them to this page or send them to the secretary for posting.

If you don't have an account on the TERENA wiki you can post your notes as a comment to this page - and they'll be incorporated into the notes and then deleted.

  • No labels