130 likes | 243 Views
Why Scoping a is MUST HAVE in a centralized federation model. Jacob-Steen Madsen WAYF-sekretariatet (sekretariat@wayf.dk). Charactaristics of models. Charactaristics of models. Todays user experience in WAYF. Best or Worst of both Worlds?. Business case. Price:
E N D
Why Scoping a is MUST HAVE in a centralized federation model Jacob-Steen Madsen WAYF-sekretariatet (sekretariat@wayf.dk)
Business case Price: Password reset costs: 1€ yearly pr. user in direct costs. Inconvinience: It can take up till 3 days
Business case Password reset service using national unique identifier. National unique identifier login is IdP for WAYF National unique identifier login aka’s Bank Login
Commercial Break Please go to JANUS and give us feedback on our Metadata administation module http://sites.google.com/site/simplesamlphpam/links-1 http://code.google.com/p/janus-ssp/
Attribute Collection (JRA3-T2) Digging out attributes from >1 IdP
Exisisting work • Artifact (SWITCH) (SAML2, back channel) • Oauth (FEIDE) (back channel)
YAAAG • Requirements • SAML2 • Front channel aggregation only • (FWPI, Federation Wide Persistent Identifyer)
Plan • Work item lead by WAYF • SAML2 front channel attribute quiry profile • Draft -> circulation -> input -> standardisation • Reference implementation in simpleSAMLphp