Working Groups. Swiss edu-id a joint effort. Petra Kauer-Ott

Similar documents
Swiss edu-id Working Groups

SWITCH edu-id becomes reality

Migration Strategy Planning???

Swiss edu-id Architecture. Rolf Brugger

SWITCH edu-id for Beginners

GÉANT project update. eduteams - AAI as a Service for Collaborative organisations. InAcademia Simple affiliation validation as a Service

InAcademia. Simple Validation Service

Joint Councils Meeting February 27, 2013

Lufthansa accelerates the progress of travel innovation. DXC Technology services designs and implements Open API for leading German airline

NSW DIGITAL GOVERNMENT STRATEGY. digital nsw DRIVING WHOLE OF GOVERNMENT DIGITAL TRANSFORMATION DESIGNING IN OUR NSW DIGITAL FUTURE

Report. Market Analysis of IdM Solutions for Swiss edu-id. Name Surname Job Title. Created: Last changes:

Vodafone Global M2M. Smart utilities solutions

Frequently Asked Questions NGO Benchmarking Model

Dynamics insights for SMB Partners

Sustainability Models for Guest IdPs

Digital government toolkit

Ανοικτή Διακυβέρνηση & τρόποι εφαρμογής της Σεπτέμβριος 2015

MICROSOFT DYNAMICS NAV FOR INTERNATIONAL

Asset Strategy Optimization from GE Digital. Part of our Asset Performance Management suite

COURSE LISTING. Courses Listed. with SAP S/4HANA. 24 December 2017 (16:15 GMT)

How to Make IT the Underpinning of the Enterprise Strategy

Annex: Amendment Procurement Plan 2018

THE RISE OF DIGITAL IDENTITIES: Plugging the digital gap in financial services onboarding

Bringing the End User to the Table

Guide Superfast Broadband technology and the creative sector

Strategic Planning Forum! 18 November 2013! Buenos Aires!

Persistent Identifier and Linking Infrastructure (PILIN)*

THE ARRIVAL OF PIN ON MOBILE. An Introduction to the Next Generation of Face-to-Face Mobile Payment Acceptance

IT Strategic Plan

Husqvarna Group IT s engagement in digitalised product IT

FirstEnergy, generating excellent service.

Long-Term Preservation (LTP) of Digital Information: City of Toronto Case Study

e-sens white paper D3.4 Preliminary Proposal for a governance body Instruments Deliverable 3.4, version 3

The digitally coherent public sector

MSc Programmes in Construction Management and Engineering

MANAGED PRINT MANAGED PRINT

Flash Insight: Are OTT Attackers in Pole Position to Make Use of esim? June 2017

SOLUTION BRIEF CA MANAGEMENT CLOUD FOR MOBILITY. Overview of CA Management Cloud for Mobility

Proposal for a Regulation on Electronic identification and trust services for electronic transactions in the internal market

Shibboleth Access Management Federations as an Organisational Model for SDI

Building next generation consortium services. Part 2: Next generation IT-services why, what, when?

The future is web-scale

Level 3 Diploma in Warehousing and Storage ( )

SECURE SSO TO OFFICE 365 & OTHER CLOUD APPLICATIONS WITH A CLOUD-BASED AUTHENTICATION SOLUTION

SuisseID My digital self

How Cisco IT Modernizes Shopping for IT Services with estore

South Pacific Tourism Organisation JOB VACANCY

itsmf Annual Conference 2012

From Things to Value

Select Plus for Government. Licensing guide

FMCSA IT Workshop Salt Lake City, Utah. Overview, Collaboration, and the Mobile Client

CSP Forum 2014, Athens, May

Designing Infrastructure Management for the New Era of IT

Decentralized software development Pitfalls and challenges A software engineering viewpoint

Report. Report findings, at a glance. 360 degree feedback trends. Summary

Qualification Specification. Level 2 Award in INFORMATION, ADVICE OR GUIDANCE

USING BPM TO ACHIEVE MICROSOFT DYNAMICS AX SUCCESS IN MIDSIZED MANUFACTURERS

Robotic Process Automation for Financial Services

2016 Sabre GLBL Inc. All rights reserved.

October 20 th,

Communication Is Hard

InAcademia Simple Validation Service

THE DANISH ELECTRICITY RETAIL MARKET. Introduction to DataHub and the Danish supplier-centric model

Faster Payments Effectiveness Criteria - What s Next?

The European Network of Centres of Pharmacoepidemiology & Pharmacovigilance (ENCePP)

INTEROPERABILITY UNIT

EUDAT How manage Data into the Collaborative Data Infrastructure: a general overview of EUDAT services

Commonwealth of Pennsylvania. Enterprise Portal. Digital Government: Government-to-Citizen (G to C)

Circular Economy SPIRE Opportunities for

10 GOOD REASONS TO MIGRATE TO MAGO4

Copyright All rights reserved. Page 1

How to map excellence in research and technological development in Europe

Need a Security Workforce Management Platform?

Office 365 Beyond The Office Apps

SAP Road Map for Governance, Risk, and Compliance Solutions

About the IQ IAM Level 3 Certificate in Business and Administrative Management (VRQ)

Principal Lecturer, Interim Course Leader Performance Arts, Course Leader BA Drama, Applied Theatre and Education.

TOGAF 9.1. About Edureka

IT STRATEGY

run() MOB 101 SAP and Apple: Revolutionize the Mobile Work Experience

Oracle Talent Management Cloud Release 12. What s New

St John operates as a Registered Training Organisation under the name of The College of Pre-Hospital Care No Web:

Siemens ENEAS. Always ahead of the field with comprehensive system solutions for energy automation. Answers for energy.

Educating the next generation of Leaders in Sport Management Sport Marketing and Sponsorship

COURSE LISTING. Courses Listed. with SAP S/4HANA. 4 February 2018 (03:51 GMT)

Recipes for Success in Creating Customer Identity. An API Approach To Building the Identity, and Identity Data, Ecosystem

In response to the reports written by Estyn, the Wales Audit Office and the Public Accounts Committee on absence management, the Welsh Government

Facing the Data Challenge : Institutions, Disciplines, Services & Risks

Windows 10: Digital transformation platform

Recruit Helping you recruit more effectively

City & Guilds Customer Journey

UCAS: Clearing House to Digital Ecosystem. Fatuma Mahad Director of Technology & Operations

FURTHER EDUCATION AND TRAINING CERTIFICATE: TOURIST GUIDING (71549) LEVEL 4).

Understanding Your Enterprise API Requirements

Delivering ILM qualifications to Operations/Departmental Manager Trailblazer Apprenticeship Standards

ITK Technical Forum Wednesday 26 th January pm 16.30pm National Motorcycle Museum, West Midlands, B92 0EJ

General Assembly SCTO

Delivering ILM qualifications to Management Trailblazer Apprenticeship Standards

This post involves regular travel within Malawi, including to remote field locations, and occasional international travel.

Five Guiding Principles of a Successful Center of Excellence

Transcription:

Working Groups Swiss edu-id a joint effort Petra Kauer-Ott petra.kauer@switch.ch Berne, August 13 2014

Goals Record the community s needs as to user-centrism specific IdM processes interoperability implementation of Swiss edu-id and transfer them to exemplary applications: Pilots Later we will look also for Pilot Attribute Authorities! 2

Pre-Project Work 3 groups already active: High Level Architecture WG: ETHZ, ETH Library, UNIBAS, UNIGE, UNIL, UNISG, USI, UZH, SWITCH AAI Attribute Task Force: Discussion about eduperson, swissedulibraryperson, ORCID, Swiss edu-id/identifier Identifier Specification WG: BFH, ETH library, SWITCH 3

Call Working Groups A. Processes B. Regulations C. ORCID D. Mobile App Support E. Governance Model F. Business Model 4

A. Processes WG IdM processes specification describe IdM related processes Work in detail: enrolment, exmatriculation; administration; charging of services; issue identification cards/badges/certificates/ diplomas; etc. describe interfaces Remarks à further project steps à pilots (call 15.2.2015) Member Profile: IdM specialists Profile people involved in IdM of redesign profound participants understanding of processes (organisational / technical) Workload and timeframe 2-3 days, Oct. May 2 meetings & interview 5

B. Regulations WG Legal framework identify regulations and discuss/clarify relevant questions within institutions define policies institutions need bring in institutional experiences with end user policies Group will be accompanied by legal experts Member Profile: legal know-how overview of regulations, policies and IdM-related processes within institution contacts with legal representatives work at cutting point between technical and administrative tasks 2 days, Nov. May 2 meetings, document review, feedback 7

C. ORCID WG ORCID integration describe current and possible future use of ORCID describe processes for integration at institutions & possibilities of ORCID provisioning for institutional processes à further project steps à pilots (call 15.2.2015) Member Profile: institutions considering implementation of ORCID involved in development of systems and services with relation to ORCID librarians managers and developers of publication systems 1-2 days, Oct. Jan. Meetings, ev. visits, feedback 8

D. Mobile App Support WG Better mobile support describe requirements of institutions/users discuss ideas for better mobile support evaluate existing solutions Member Profile: experience with integration of mobile solutions mobile developers and integrators with knowledge about protocols as OAuth2 IdM and application managers researchers (in the field of mobile technologies) à further project steps à pilots (call 15.2.2015) 1-2 days, Oct. Jan. 2 meetings, feedback 9

E. Governance Model WG Governance documents act out cases to check usability and robustness of governance model identify points to be adapted/improved discuss issues with legal representatives at institution à some important changes of roles (IdP, AA, user) Member Profile: knowledge of governance models familiar with SWITCH governance and governance of AAI 1 day, Q1 2015 1-2 meetings in person 10

F. Business Model WG Business models discuss and evaluate different model options à medium- & long-term perspectives Member Profile: good knowledge of business models background knowledge about SWITCH and tariff Ca. ½ day, Q2 2015 1 meeting in person 11

Participate! Please distribute the call within your institution! Use the feedback form for comments, working group subscriptions and pilot suggestions. Details about call: http://swit.ch/eduid_workgroups Contact: swisseduid@switch.ch 12

Outlook Project Updates at info events of SUK P-2: Sept. 11, 2014 in Lausanne Sept. 25, 2014 in Bern October/November : first working group meetings February 15 2015 next call SUK P-2 13

Call: Swiss edu-id - the next generation Identity Management for Swiss HEI s Would you like to play a part in the next phase of AAI's evolution towards a usercentric identity management solution? We are looking for members of universities, libraries and research institutions to help us create a new digital identity known as the Swiss edu-id. Contribute to one of the working groups with your expertise and practical knowhow (details: http://swit.ch/eduid_workgroups): - Processes - Regulations - ORCID - Mobile App Support - Governance Model - Business Model Please contact us and let us know for what working group with an open call you would volunteer: swisseduid@switch.ch 14

Swiss edu-id The next-generation Swiss Educational Identity Management Consider future needs & expectations Technological change increasingly impacts the behaviour and working environments of students, researchers, life-long learners and university staff. While in the past the individuals working environment was mostly preset and specified by the organization they were affiliated with, we can now observe a trend towards more self-reliant personalities. They tend to choose their individual set of tools and they autonomously develop their skills to manage and protect personal data. In addition to the classical desktop working mode, ubiquitous mobile access to personal and professional data is preferred. Substantially extend AAI towards a user-centric IdM To address these trends SWITCH is suggesting a substantial extension of the existing AAI infrastructure. Identity management, which controls access to tools and data is to become more user-centric and less organization-centric. Embed new Identity Provider & support identity linking The central platform of the Swiss edu-id will become an Identity Provider in the AAI framework and thus maintain full interoperability including interfederation. The Swiss edu-id will allow linking of relevant external identifiers like ORCID. Linking with social media identities will further improve interoperability with popular 3rd party communication and collaboration services. Provide a long-living identity From the perspective of an individual the digital identity is stabilized and sustained. With the first contact of an individual with a higher education institution the individual is assigned a permanent Swiss edu-id. The barriers for an individual to create a Swiss edu-id are low. After leaving a university, the Swiss edu-id will no longer carry role information from that university, but otherwise remain active. The individual can still update personal information on an on-going basis, and will still get access to resources not requiring such role information. Re-entering a university for further education purposes as well as cross-organisational activities are simplified. Streamline institutional Identity Management From the perspective of an organization, identity management is streamlined. New identities do not have to be constructed from scratch, but can be initialized based on existing profile information from an individual s Swiss edu-id. While AAI is based on a widely decentralized architecture, the Swiss edu-id is substantially relying on centrally provided services run by SWITCH to operate elements like storage of long-term core attributes, authentication service and interfaces to resources and attribute authorities. Providing high quality attribute information about individuals will remain in the authority of participating organisations, e.g. the universities, as is the case today in AAI. The Swiss edu-id will actively seek interoperability with relevant e-government standards and services nationally, e.g. SuisseID, and internationally, e.g. eid/stork. Identity Provider Attribute Authority Service Providers SWITCHaai Run by each university individually for their current users Run by each university individually for their current users (as part of the IdP) SWITCH Community, Swiss edu-id partners, interfederation participants Swiss edu-id Swiss edu-id compared to SWITCHaai One central instance run by SWITCH Run by each university individually for their current and former users SWITCH Community, Swiss edu-id partners, interfederation participants 1 2

Initial version functional in 2015 An initial version V1.0 of the Swiss edu-id service with limited capabilities will be operable starting 2015. It will allow individuals to create a long-lived Swiss edu-id identity. Focus is on students who are soon going to lose their existing SWITCHaai account and on individuals without a strong affiliation with an organisation in the SWITCH Community and therefore without possibility to get a SWITCHaai account. Attribute Authorities Swiss edu-id Members (SWITCH community) Service Providers Swiss edu-id Members (SWITCH community) Take the next steps Stakeholder groups will refine the operational framework of the Swiss edu- ID on the basis of the high-level architecture from mid-2014 to mid-2015 and set the cornerstone of the next version 2.0 of the Swiss edu-id and beyond. Version 2.0 will allow participating organisations to enrich the user attributes and thus make the Swiss edu-id cover all functionality of SWITCHaai identities with additional longevity. The main focus in the years 2017 onwards is to increase service adoption. This will also include implementing renewed student registration processes together with all relevant stakeholders. The program P-2 covers two substantial activities of the Swiss edu-id project, i.e. the set-up of the initial service version and the refinement of the operational framework in collaboration with the stakeholder groups. Follow-up projects (preferably within the scope of P-2) will be initiated to implement the subsequent steps in this roadmap. Swiss edu-id Partners Identity Provider Swiss edu-id Partners Call: Participate in working groups & pilots Interested people are welcome to participate in one of the initiated working groups (please find details at http://swit.ch/eduid_workgroups ): Processes: IdM related processes, issuing, interfaces Regulations: existing regulations & policies, needs, user policies ORCID: possible use, integration processes Mobile App Support: requirements, improved support, evaluation Governance Model, Business Model Interfederation Participants Interfederation Participants Primary Role Secondary Role Swiss edu-id stakeholders and flow of attributes The integration possibilities will be tested and demonstrated with some pilots. Test candidates should be web and non-web applications (e.g. based on OAuth2 or Open ID connect), mobile applications, applications using ORCID, other IDs & ID frameworks (e.g. community IDs, SuisseID, Mobile ID, STORK). Assure high quality & extension possibilities Contact / News / Registration for working groups: swisseduid@switch.ch The Swiss edu-id is built to match the requirements of the SWITCH Community. This means that high security and data protection standards are adopted to gain trust and acceptance. This also means that 3rd party organizations can participate in Swiss Events: Sept. 11 at UNIL and Sept. 25 2014 at UniBE: CUS P-2 Project Update edu-id provided that the SWITCH Community requires it. The proven governance and financing models of the SWITCH Community will be fully applied to Swiss edu-id. This flyer is mainly an extract of the Swiss edu-id High Level Architecture document: 3 http://swit.ch/eduid/swisseduidarchitecture.pdf 4