90 likes | 101 Views
Explore the latest developments in video middleware for Internet2, including video-on-demand applications, resource discovery for videoconferencing, and directory services architecture. Learn about authentication, authorization, and other examples of current research in this field.
E N D
Internet2 MiddlewareBASE CAMPslides Michael R. Gettes Principal Technologist Georgetown University gettes@Georgetown.EDU http://www.georgetown.edu/giia/internet2
Current Research in Middleware Michael Gettes Principal Technologist Georgetown University gettes@Georgetown.EDU Steve Olshansky Internet2 Video Working Group Flywheel steveo@lumnigroup.com
Internet2 Video Middleware (VidMid)http://middleware.internet2.edu/video/ • Video-on-Demand • In VoD applications, directories need to hold attributes about users, content, devices, and usage. • Video asset directory contains a subset of the total metadata (descriptive, administrative, rights) about the video assets • Video endpoint directory also supports implementation of policy as it relates to end devices, such as client applications and video servers. • Such policies might include bandwidth provisioning, and accounting/billing functions, for example, as well as support presence information and resource discovery.
Internet2 Video Middleware (VidMid)http://middleware.internet2.edu/video/ Internet2 Video Middleware (VidMid) • Videoconferencing • Resource Discovery for Videoconferencing • Directory Services Architecture for Video and Voice Conferencing over IP (commObject) • Authentication and Authorization
Current Research (examples) • GROUPER • A special LDAP server (OpenLDAP) engineered to handle group math operations against the enterprise directory for applications that are not group savvy. • Application -> get group BLAH -> GROUPER -> combine 15 groups and remove those in the exclusion group -> give back combined static object as group BLAH
Certificate Parsing Server • Peter Gietz - a draft to describe X.509 certificates as plain old directory objects. Finding certificates becomes easy for directory aware applications. Use PKI operations on the cert you select to verify it. • David Chadwick - a Certificate Parsing Server (CPS). Like GROUPER but only works on add/delete/modify operations and stores cert objects as child objects as well as userCertificate attributes where they are now. • This should have a dramatic impact on Bridge CA model operations.
What to do next? • 1 • 1 • 5 • 11 • 4 • 1 • 4 • 4 • 5 • 0 • 2 • 5 • 1 • 2 • 1 • Directory Policy • PKI Policy • Identity Mgmt Practices • Metadirectories • Dir of Dirs Higher Ed (DoDHE) • LDAP Analyzer • The Art of Directories/Databases • PKI-Lite and S/MIME • Early Harvest for App Developers • Digital Rights Management (DRM) • Outreach and Dissemination • N-Tier Systems (portals) • Filesystems • Selling it • Project Mgmt • 8 • 11 • 2 • 4 • 3 • 0 • 7 • 4 • 1 • 3 • 0 • 0 • 1 • 6 • eduOrg, eduPerson, edu(other …) • Shibboleth • Roles (RBAC) • GIG (Group Implementer’s Guide) • GROUPER, RI-Bot, GASP • Blue Pages • LDAP-Recipe (next?) • Affiliated Directories • HEBCA, Bridge PKI, etc… • Video Middleware (commObject) • GRID AuthN campus integration • GRID AuthZ campus integration • Medical Middleware (MedMid) • Operational Issues (perf/mon)