from authentication to privilege management to the attribute economy: marketing runs amok…

Post on 10-Jan-2016

29 Views

Category:

Documents

0 Downloads

Preview:

Click to see full reader

DESCRIPTION

From Authentication to Privilege Management to the Attribute Economy: Marketing runs amok…. Topics. The simple life The Simple Life GUI The full IdM life The full IdM Life GUI The attribute economy Living in an attribute economy Make sure the trust fabrics support the assertions. - PowerPoint PPT Presentation

TRANSCRIPT

From Authentication to Privilege Management to the Attribute Economy:Marketing runs amok…

Topics

• The simple life

• The Simple Life GUI

• The full IdM life

• The full IdM Life GUI

• The attribute economy

• Living in an attribute economy• Make sure the trust fabrics support the assertions

User

Application access controls(including network devices)

IdP

Shib

p2p Source ofAuthority

Source ofAuthority

Source ofAuthority

A Simple Life

User

Application access controls(including network devices)

IdP

Shib

p2p Source ofAuthority

Source ofAuthority

Source ofAuthority

Authn

Autograph

A Simple Life GUI

User

Application access controls(including network devices)

IdP

Shib

p2p Source ofAuthority

Source ofAuthority

Source ofAuthority

A Full IdM Life

Local apps

User

Application access controls(including network devices)

Shib

p2p Source ofAuthority

Source ofAuthority

Source ofAuthority

Authn

Autograph

A Full Life GUI

Signet/Grouper

IdP Local apps

User

Application access controls(including network devices)

IdP

Shib

p2p Source ofAuthority

Source ofAuthority

Source ofAuthority

Portal

Gateway

Proxy

Source ofAuthority

Source ofAuthority

Source ofAuthority

Source ofAuthority

Source ofAuthority

Real Life

User

Application access controls(including network devices)

IdP

Shib

p2p Source ofAuthority

Source ofAuthority

Source ofAuthority

VO ServiceCenter

Gateway

Source ofAuthority

Source ofAuthority

Source ofAuthority

IdP

An Example Flow in the Attribute Economy

User

Application access controls(including network devices)

IdP

Shib

p2p

Autograph

Authn

Source ofAuthority

Source ofAuthority

S/GS/G

Portal

User

Application access controls(including network devices)

IdP

Shib

p2p

Autograph

Authn

Source ofAuthority

Source ofAuthority

S/GS/G

VO Service Center

Source ofAuthority

S/G

A VO Service Center Flow

Inviting Attributes into your life…

• For privacy and secrecy• For better security• For efficiency

Peering

Possible peering parameters

• LOA • Attribute mapping• Economics• Liability• Privacy

VOs plumbed to federations

top related