edushib va [email protected]. what is edushib va? edushib va (virtual appliance) is a...

8
EduShib VA farhan@perdanauniversity. edu.my

Upload: dwight-simmons

Post on 21-Dec-2015

216 views

Category:

Documents


3 download

TRANSCRIPT

Page 1: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

EduShib VA

[email protected]

Page 2: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

What is EduShib VA?

• EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth IdP.

• The VA helps organizations to setup eduroam and Shibboleth in very reasonable time so that they immediately can participate in the global Identity Federation for internet and web services without having to worry about the complexity to setup eduroam and Shibboleth Idp.

• The VA is developed by Academic Grid Malaysia.

Page 3: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

How to Deploy EduShib VA?

• The EduShib VA requires (minimum):– 25GB Storage– 2GB Rams– 1 Network Interface– 2 CPU Cores– Firewall: Allow connection from internet to port

80 (tcp), 8443 (tcp), 1812 (tcp and udp), 1813 (tcp and udp), 2083 (tcp and udp)

Page 4: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

How to Deploy EduShib VA?

• Even though in the VA may works as well in another type of hypervisor, but it is recommended to install EduShib VA in KVM hypervisor.

• Download the image from http://infohub.sifulan.my/display/EV/Installation+Guide

• Beside computing resources requirements, the administrator need to apply host certificate from MyIFAM CA and register the service to SIFULAN Federation and eduroam Malaysia.

Page 5: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

Limitation

• In general the EduShib VA should works as-it-is with minimum customization at some of the configuration files and able to support small-medium organizations (in some case large organization may also supported by increasing some computer resources (e.g. number of cores, RAM).

Page 6: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

Limitation

• Although the EduShib VA comes with pre-configured openldap, shall the organization already has directory service installation, it is recommended to connect EduShib VA to the existing directory service instead of using the pre-configure openldap.

• For eduroam we assumed that the Access Points are physically connected to separate VLAN in situation where the IT administrator would like to assigned eduroam users to seperate VLAN with the local users.

Page 7: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

For the Training

• We’ll use VirtualBox to deploy EduShib VA• Hence, a special format (OVA) for EduShib VA was

prepared (EduShib VA comes in raw image format)• Each participant will be given one wireless access

point with routing function (It is yours, you can bring it home to deploy eduroam at your organization )

• Tutorial is available here: http://infohub.sifulan.my/display/EV/Installation+Guide

Page 8: EduShib VA farhan@perdanauniversity.edu.my. What is EduShib VA? EduShib VA (Virtual Appliance) is a image based implementation tool for eduroam and Shibboleth

For the Training

Workstation

EduShib VA

Wireless Router

Internet Client