120 likes | 247 Views
GTRI Presentation to IDESG TFTM. Matt Moyer 11 Jun 2014. Agenda. Componentization of FICAM TFS into Trustmarks Sample FICAM Trustmark Definition Overview of Trustmark Issuance and Binding. Componentization of FICAM TFS. Analyzed full set of FICAM TFS v2 requirements Looked at LOA1 to LOA4
E N D
GTRI Presentation toIDESG TFTM Matt Moyer 11 Jun 2014
Agenda • Componentization of FICAM TFS into Trustmarks • Sample FICAM Trustmark Definition • Overview of Trustmark Issuance and Binding
Componentization of FICAM TFS • Analyzed full set of FICAM TFS v2 requirements • Looked at LOA1 to LOA4 • Focused only on SAML identity scheme • Componentized FICAM in conjunction with NIEF • Primary objective is maximal reuse of components • Identified 41 total FICAM components (trustmarks) • 30 pertain to FICAM SAML IDPs • Others pertain to FICAM RPs and BAE endpoints • 32 can be reused within NIEF now
A Sample Trustmark Definition(Partial Screen Shots of Components)
Trustmark Assessment Tool Process Flow Trustmark Provider FICAM LOA 2 Authn Process TD Trustmark Recipient Trustmark Assessment Tool 2. Receive request for trustmark from Trustmark Recipient candidate 1. Load TDs into Assessment Tool 3. Perform assessment of Trustmark Recipient candidate 4. Store assessment artifacts / evidence in database Trustmark Assessment Tool Database 5. Issue trustmark to Trustmark Recipient Trustmark Definitions
NIEF Trustmark Issuance Process Flow NIEF Trustmark Assessment Processes Trustmark Assessment Tool Trust Fabric Entry Editor NIEF Trust Fabric Entry NIEF Trust Fabric Registry Trustmark 1 NIEF Member Agency (Trustmark Recipient) Trustmark 2 Trustmark 1 Trustmark 2 Trustmark N Trustmark N Signed by NIEF Trust Fabric Registry Manager Tool
NIEF Trustmark Usage Process Flow Trust Interoperability Profile NIEF Trust Fabric Registry Trustmark Relying Party 1. Query for trust fabric entries with required trustmarks, in accordance with local TIP 2. Receive matching trust fabric entries 3. Install entries in local product