COPYRIGHT RESERVED 2009 BY MAX TSAI



Visit Max Tsai at Facebook | Twitter | atom

Wednesday, June 27, 2007

JA-SIG Day4 - KUSP (Shib)

This is my notes. The official presentation slides will be at:
http://www.ja-sig.org/wiki/display/JCON/Denver+2007+presentations

Kent University
b.ferguson@kent.ac.uk

Shibbolethized Portal

Background:
  • Move from Athens to Shibboleth to get access to Libary resources
  • Shibboleth implemented:
    • IdP SP InQueue
    • uPortal 2.5.1
    • VLE (LMS)
    • SSO integration
  • FAM (Federated access management)
    • IdP --> SP
    • register once
    • inter-op SAML
    • USA: InCommon (Federation)
Shibboleth Explained
  • Authentication request <---> authtication assertion
  • attribute request <--> attribute assertion
  • WAYF to discover IdP to be used - migrated to SP
  • IdP: User Db and provide auth and user attrib.
  • SP: Shib. module protects web-based applications
  • https://spaces.internet2.edi/display/SHIB/
    http://www.natu.ac.uk.docs/
KUSP
Implementation ..

To be noted:
  1. Guanxi: one IdP and one SP instead od one SP per application
  2. Shib. uPortal
    Oxford University, UK.: http://spie.oucs.ox.ac.uk/
    The aim of the Shibboleth-aware Portals and Information Environments (SPIE) project is to contribute to shared national middleware infrastructure by building on the outcomes of earlier nationally-funded projects relating to the development of access management functionality within the JISC Information Environment (IE) and Institutional IEs.

    http://spie.oucs.ox.ac.uk/Wiki.jsp?page=ShibbolethIntegration

No comments:

Post a Comment