Identity Management and Shibboleth
UABgrid Identity Infrastructure
| Title: | UABgrid Identity Infrastructure (ID: SER08063) | | Author(s): | John-Paul Robinson (University of Alabama at Birmingham) | | Origin: | Presented at Southeast Regional Conferences (06/02/2008) | | Type: | Presentations/Speeches | | Abstract: | This presentation will describe the identity management infrastructure of the UAB grid computing project, known as UABgrid. Its development is based on accomplishments of two NSF middleware projects at UAB, which focused on building NMI-enabled, open source tools for support of collaboration within virtual organizations that span institutional boundaries, are autonomous, and are collections of attributes. The middleware solution is known as myVocs and uses Shibboleth for identity management and attribution distribution, Globus for distributed computations, and GridShib to bind Shibboleth and Globus. UABgrid is now expanding its grid computing components to include metascheduling of jobs across multiple HPC clusters across the Internet. | | View this resource: | |
Architecting the Institutional Directory Service: Advanced Issues, Problems, and Solutions
| Title: | Architecting the Institutional Directory Service: Advanced Issues, Problems, and Solutions (ID: EDU07162) | | Author(s): | Brendan Bellina (University of Southern California) and Robert Banz (University of Maryland, Baltimore County) | | Origin: | Presented at EDUCAUSE Annual Conferences (10/23/2007) | | Type: | Presentations/Speeches | | Abstract: | Institutional directory service architects and designers face a number of unique technical challenges in higher education. Directory architects from the University of Southern California and the University of Maryland, Baltimore County, will share lessons learned while developing and implementing directory services at their institutions. Topics will include designing access controls and institutional object classes; using federation identities, Shibboleth, and administrative tools; managing multiple data sources, members, accounts, and guests; mapping data sources to standard object classes; handling interactive and bulk updates; optimizing and monitoring performance, replication, and integration with external authentication systems; and managing groups and privileges. The solutions offered are based on 14-plus years of practical experience working with the Netscape/iPlanet/Sun directory products. This seminar will focus on intermediate to advanced issues, and most information will be widely applicable to and suitable for any institutional directory effort. | | View this resource: | |
Introduction to Shibboleth Attribute Delivery
| Title: | Introduction to Shibboleth Attribute Delivery (ID: CAMP07216) | | Author(s): | Hugh Barron Johnson (Clemson University) and Paul Caskey (University of Texas System) | | Origin: | Contributed by EDUCAUSE Grant Programs (CAMP) (06/25/2007) | | Type: | Presentations/Speeches | | Abstract: | Many applications (even intracampus) derive benefit from “knowing” something about the browser user. This session will provide an overview of Shibboleth as an option for managing the process of making user attribute information available to distributed applications within a campus. We will also review management and technical topics such as developing a governance process for attribute release, creating appropriate policy and business practices, managing attribute release, and using different data sources for the attribute store. Attendees who are not familiar with identity management are encouraged to attend the preworkshop seminar "Introduction to Identity Management: The Big Picture." | | View this resource: | |
Introduction to Shibboleth WebSSO
| Title: | Introduction to Shibboleth WebSSO (ID: CAMP07213) | | Author(s): | Hugh Barron Johnson (Clemson University) and Keith D. Hazelton (University of Wisconsin-Madison) | | Origin: | Contributed by EDUCAUSE Grant Programs (CAMP) (06/25/2007) | | Type: | Presentations/Speeches | | Abstract: | Whether you're implementing your first WebSSO or transitioning to a new one, this session will provide a brief introduction to the concept and business case for intra-campus WebSSO, and an overview of Shibboleth as an option for WebSSO technology and what it does. In addition, the presenters will review technical and management topics such as the minimum IdM services required to get started, an introduction to the Shibboleth architecture and flows, an overview of the installation process, bringing the software from pilot to production, the basics of connecting in applications, required skill sets and resources, deployment costs, as well as policy and business processes.Whether you're implementing your first WebSSO or transitioning to a new one, this session will provide a brief introduction to the concept and business case for intra-campus WebSSO, and an overview of Shibboleth as an option for WebSSO technology and what it does. | | View this resource: | |
|