wiki:Taskforces/AAI/Meetings/2015-03-19

Submitted by Martin Matthiesen on 27 February 2015

Participants: Thomas Kisler, Kai Zimmer, Mitchell Seaton, Jozef Mišutka, Dieter Van Uytvanck, Sander Maijers, Timm Lehmberg, Martin Matthiesen (chair & minutes),

Guest: Mikael Linden, CSC

Excused: Oliver Schonefeld

Optional: Paul Meurer, Pavel Straňák, Lene Offersgaard, Daan Broeder

Agenda

  1. Formalia: Agreeing on agenda, secretary
  2. Action points from last meeting (5 min)
  3. eduGAIN as SP requirement (10 min)
  4. User survey in Clarin (10 min)
  5. DP-CoC vs entity categories (10 min)
  6. Harmonising interaction with home organisations from other federations (10 min)
  7. Related activities (5 min)
  8. Action points for next meeting (5 min)
  9. Next meeting

1 Formalia

2 Action points from last meeting (5 min)

  • Old APs
    • Thomas: Hook up BAS with the SPF.
      • Tested with Surf and Haka
    • Dieter: Promote the SPF in Zürich: Done
    • Dieter: Contat Feide to opt-in to the SPF
      • Making IDPs available is hard due to Feides Opt-in policy. The IDPs cannot treat the SPF as a block.
      • The CLARIN-EUDAT co-operation might change things to the better. We keep trying, but with low piority.
    • SP Signing: Mitchell and Oliver make sure the SPF XML is signed.
    • Setup Trac for manual login tests across federations.
      • Tested with BAS. Worked well.
      • Todo: We need more volunteers.
      • Todo: Documentation only in Trac, accessible after login. This is good for the contact details, but not good to make the general process visible.
      • Decision: We split the documentation: The list of volunteers will be available only after login. AAI will serve as category for the time being.
    • Meeting on Central Monitoring: Martin prepares a meeting, Jozef and Kai will at least join.
      • Has not happened.
    • eduGAIN as SP Requirement: Martin, Jozef and Oliver prepare the proposal.
      • Done
    • Documentation for SPs: Martin relays feedback to Sander/Dieter.
      • Done, Sander looks through docs, Martin can help.
    • Martin contacts Dieter/Sander on SLAs.
      • Not done. Things that happened: Disco Juice is moved to RZG and has much higher availabilty now, also the homeless IdP will be moved, but likely not get an equally high availability.

3 eduGAIN as SP requirement (10 min)

We discussed the proposal and came to the conclusion that making eduGAIN a requirement at this point the increase in bureaucracy to check this requirement outweighs the benefits. Without a vote we decided not to proceed with this proposal, but to use it to underpin the usefulness for SPs to join eduGAIN. We would still push for the remaining SPs to join eduGAIN. Sweden is a good use case, they made eduGAIN opt-out and SPF will try to use eduGAIN to connect to Sweden. We also discussed the possibility of filtering out "SPF-unwanted" IDPs, via the centralized Discovery Service.

4 User survey in Clarin (10 min)

Jozef prepared a survey on what kind of users do service providers in CLARIN
expect/require: Current Draft: https://www.surveymonkey.com/s/VYQ5BHW
 This was seen as useful and Jozef will go ahead with it. We will discuss the results in the next meeting.

5 DP-CoCo vs entity categories (EC) (10 min)

https://refeds.org/category/research-and-scholarship/ and whether we should support them; There is a discussion on the refeds mailing list on this topic, the eduGAIN folks would like our input on this. Jozef and Martin have already given use cases (Lindat and Korp).

Mikael gave a background to EC vs. DP-CoCo. ECs are set by home federations.

  • The DP-CoCo is legally binding and a statement of the SP.
  • Research-and-Scholarship is weaker in terms of Data protection, but the criteria are quite extensive. The statement is made by the home federation.

We saw little benefit in Research-and-Scholarship at the moment (so far 30 IdPs support it) but are willing to make SPs aware of it. Martin will work this into the "why to join eduGAIN" document derived from agenda item 4.

6 Harmonising interaction with home organisations from other federations (10 min)

Approach: adding another project specific layer i.e. one service provider which would
act as the proxy IdP for all CLARIN SPs. This SP would be in fact a Virtual
Organisation (see http://perun.cesnet.cz/web/ or REMS). Similar/same
approach as ELIXIR project is planning to deploy.

Mikael explained the concept in detail: The proxy would act as an SP towards eduGAIN IDPs and as an IDP towards connected SPs. The benefit of such a solution would be to be able to register one "Proxy" SP to home organisations. This server acts as an IDP to connected SPs and would also be able to enrich home organisation information or support other login methods, like googe or orchid. The system is in the planning phase. Part of the plan is to get attributes via the DP CoCo, it remains to be seen whether the proxy solution is more palatable to IDPs. If this works, Clarin could use the same technology for a similar service. We will closely follow developements.

7 Related activities (5 min)

8 Action points next meeting (5 min)

  • Split the documentation for manual login tests via Trac (Martin)
  • Meeting on Central Monitoring: Martin prepares a meeting, Jozef and Kai will at least join.
  • SP Signing: Taking it into production (Sander)
  • Documentation cleanup (Sander, Martin)
  • SP Survey (Jozef)
  • Publish eduGAIN encouragement letter, including information on ECs (from point 3) (Martin, Jozef)

9 Next meeting

In about 2 months.

Last modified 6 years ago Last modified on 08/15/18 13:19:46