Completed activities
Ongoing activities
Pending ideas
Student projects
Active members
Iterations
The GN4-3 WP5 T2 Trust and Identity Incubator (“T&I Incubator”) aims to develop, foster and mature new ideas in the Trust and Identity space in Research and Education. The incubator will investigate new technologies that currently have no place (yet) in the services ecosystem of the GÉANT project. This may include to test and experiment with potential new features for existing GÉANT services. In addition also business case development for potential new services and developments that would improve data protection and privacy aspects in services or software are in scope.
The T&I incubator runs four to eight incubator activities per project year in parallel. These incubators typically take about 6 months and employ an agile methodology to enable rapid development of ideas. Preferably at least two subject matter experts work together with support from the project team. Subject matter experts are recruited from within the team or, preferred, sponsored by their NRENs. In addition, the project team facilitates the incubator track by providing a scrum master and dedicated developers.
Main Incubator Board (MIB) aims to represent a broad view on Trust and Identity related developments in R&E. MIB members are senior subject matter experts from the European NREN trust and identity community. They evaluate new ideas and provide advice to the work package lead. They are also responsible for reviewing activities at the end of each incubator cycle and providing recommendations on how to proceed. The incubator team presents their results regularly to the the MIB's and the wider community. In the middle and at the end of a cycle there are two events public events, so called sprint demos.
Metadata push MDQ
Metadata is at the heart of the trust fabric of current R&E Identity Federations. For the trust to properly propagate, this metadata is first collected from and then distributed by the federation towards the federation members. This activity had investigated a new proposal called "push MDQ", which introduces a new, potentially highly scalable way of distributing metadata.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Community-Based Trust
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent id consectetur nulla, vitae dapibus urna. Etiam volutpat est sed dui egestas, et posuere felis semper. Morbi sed aliquet eros, id consequat nisi. Aenean interdum turpis quis varius consectetur. Curabitur eleifend risus ac aliquet molestie. Proin dictum lectus sed tempus tincidunt. Pellentesque tempus lacinia posuere. Donec metus lorem, rhoncus bibendum consectetur venenatis, dignissim molestie ex. Duis sagittis ligula eget nisl tempus, ac hendrerit dolor finibus. Suspendisse quam lectus, pharetra at risus sit amet, convallis rhoncus urna.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Service Status Reporting
Maecenas malesuada dignissim mauris, tristique auctor magna accumsan id. Aliquam erat volutpat. In viverra interdum ultrices. Vestibulum faucibus purus quis magna ultrices, vel fermentum metus pharetra. Sed id risus sit amet lectus pharetra pharetra. Mauris quis purus tortor. Quisque quis est eu massa pharetra convallis a a quam.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
(De)provisioning connector for Windows
Identity provisioning and deprovisioning are a necessity for building modern authentication and authorization infrastructures. They are straightforward yet technically complicated part of identity and access management. The basic idea is to deliver identity and authorization information to the managed services, which is complicated by a lack of applicable standards in this area. Therefore, most of the Identity and access management solutions rely on a custom solution for provisioning. To overcome this obstacle, this project extends existing IAM capabilities by implementing a connector to easily provision data to services hosted on Windows OS based on SSH.
Activity page-
Results & Deliverables
The following results were created and delivered:
-
Ownership & Utilisation
The aim of this project was to create an easy to use, adoptable software solution to provision server users and provide this tool to the community As part of a case study the solution was implemented for a Czech University (Faculty of informatics MU) which will continue to use the solution afterwards. CESNET will continue to use and maintain the software for the foreseeable future. Besides this, the solution shall be adjusted to the needs of eduTEAMS. The solution will be provided to the eduTEAMS service task to be integrated into the GÉANT service.
WebauthN
Nulla dignissim rutrum mi, nec bibendum est tincidunt sed. Pellentesque varius ex eu laoreet pellentesque. Cras accumsan magna ac tristique facilisis. In egestas dolor eget aliquet varius. Integer luctus elementum enim, ac malesuada lorem laoreet ac. Vivamus fermentum ligula vitae feugiat dapibus. Pellentesque suscipit nunc tellus, in bibendum lorem pellentesque in. Donec tempus dolor vel viverra tempus. Aliquam erat volutpat.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Instant User Provisioning
Some systems, like non-web services, cannot be federated easily because they need user accounts to be provisioned before they can login. A prototype of an instant deployment tool called FEUDAL was developed by KIT. It facilitates provisioning of user accounts using virtual organisations (VO). Feudal is based on OIDC: It is an OIDC client, and it simply transports the information of the /userinfo endpiont along. Feudal is based on the concept of VOs (or authorisation Groups), i.e. the end services provide the information which VOs it supports. Feudal web fronted will only display services for provisioning to a given user based on his VO membership.
Activity page-
Results & Deliverables
The following results were created and delivered:
-
Ownership & Utilisation
The aim of this project was to create an easy to use, adoptable software solution to provision server users and provide this tool to the community. The solution is ready to be picked up and further developed and used by KIT. They plan to use this software in two "Helmholtz" projects HDF and HIFIS in Germany for the foreseeable future. Besides this, the solution was adjusted to the needs of eduTEAMS. The solution was provided to the eduTEAMS service task to be integrated into the GÉANT service.
SFA - Distributed Vetting
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent id consectetur nulla, vitae dapibus urna. Etiam volutpat est sed dui egestas, et posuere felis semper. Morbi sed aliquet eros, id consequat nisi. Aenean interdum turpis quis varius consectetur. Curabitur eleifend risus ac aliquet molestie. Proin dictum lectus sed tempus tincidunt. Pellentesque tempus lacinia posuere. Donec metus lorem, rhoncus bibendum consectetur venenatis, dignissim molestie ex. Duis sagittis ligula eget nisl tempus, ac hendrerit dolor finibus. Suspendisse quam lectus, pharetra at risus sit amet, convallis rhoncus urna.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
IdP as a Service
Nulla dignissim rutrum mi, nec bibendum est tincidunt sed. Pellentesque varius ex eu laoreet pellentesque. Cras accumsan magna ac tristique facilisis. In egestas dolor eget aliquet varius. Integer luctus elementum enim, ac malesuada lorem laoreet ac. Vivamus fermentum ligula vitae feugiat dapibus. Pellentesque suscipit nunc tellus, in bibendum lorem pellentesque in. Donec tempus dolor vel viverra tempus. Aliquam erat volutpat.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Discovery Pilot
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent id consectetur nulla, vitae dapibus urna. Etiam volutpat est sed dui egestas, et posuere felis semper. Morbi sed aliquet eros, id consequat nisi. Aenean interdum turpis quis varius consectetur. Curabitur eleifend risus ac aliquet molestie. Proin dictum lectus sed tempus tincidunt. Pellentesque tempus lacinia posuere. Donec metus lorem, rhoncus bibendum consectetur venenatis, dignissim molestie ex. Duis sagittis ligula eget nisl tempus, ac hendrerit dolor finibus. Suspendisse quam lectus, pharetra at risus sit amet, convallis rhoncus urna.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Shibboleth OIDC Extension
Maecenas malesuada dignissim mauris, tristique auctor magna accumsan id. Aliquam erat volutpat. In viverra interdum ultrices. Vestibulum faucibus purus quis magna ultrices, vel fermentum metus pharetra. Sed id risus sit amet lectus pharetra pharetra. Mauris quis purus tortor. Quisque quis est eu massa pharetra convallis a a quam.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
ORCID as IdP of last resort
Cras non sagittis mi. Nulla volutpat magna turpis. Vivamus aliquet condimentum lacus, efficitur tempus lectus tempus vitae. Mauris lobortis sollicitudin aliquet. Sed elementum vulputate nisi quis pellentesque. Ut pharetra facilisis pretium. Sed commodo ut ipsum hendrerit placerat. Pellentesque ac laoreet neque, nec ultrices augue.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Community Tagging
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent id consectetur nulla, vitae dapibus urna. Etiam volutpat est sed dui egestas, et posuere felis semper. Morbi sed aliquet eros, id consequat nisi. Aenean interdum turpis quis varius consectetur. Curabitur eleifend risus ac aliquet molestie. Proin dictum lectus sed tempus tincidunt. Pellentesque tempus lacinia posuere. Donec metus lorem, rhoncus bibendum consectetur venenatis, dignissim molestie ex. Duis sagittis ligula eget nisl tempus, ac hendrerit dolor finibus. Suspendisse quam lectus, pharetra at risus sit amet, convallis rhoncus urna.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Cryptech HSM
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent id consectetur nulla, vitae dapibus urna. Etiam volutpat est sed dui egestas, et posuere felis semper. Morbi sed aliquet eros, id consequat nisi. Aenean interdum turpis quis varius consectetur. Curabitur eleifend risus ac aliquet molestie. Proin dictum lectus sed tempus tincidunt. Pellentesque tempus lacinia posuere. Donec metus lorem, rhoncus bibendum consectetur venenatis, dignissim molestie ex. Duis sagittis ligula eget nisl tempus, ac hendrerit dolor finibus. Suspendisse quam lectus, pharetra at risus sit amet, convallis rhoncus urna.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Status Reporting & Notification
Cras non sagittis mi. Nulla volutpat magna turpis. Vivamus aliquet condimentum lacus, efficitur tempus lectus tempus vitae. Mauris lobortis sollicitudin aliquet. Sed elementum vulputate nisi quis pellentesque. Ut pharetra facilisis pretium. Sed commodo ut ipsum hendrerit placerat. Pellentesque ac laoreet neque, nec ultrices augue.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
eduLNK
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent id consectetur nulla, vitae dapibus urna. Etiam volutpat est sed dui egestas, et posuere felis semper. Morbi sed aliquet eros, id consequat nisi. Aenean interdum turpis quis varius consectetur. Curabitur eleifend risus ac aliquet molestie. Proin dictum lectus sed tempus tincidunt. Pellentesque tempus lacinia posuere. Donec metus lorem, rhoncus bibendum consectetur venenatis, dignissim molestie ex. Duis sagittis ligula eget nisl tempus, ac hendrerit dolor finibus. Suspendisse quam lectus, pharetra at risus sit amet, convallis rhoncus urna.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
Identity Validation Broker
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent id consectetur nulla, vitae dapibus urna. Etiam volutpat est sed dui egestas, et posuere felis semper. Morbi sed aliquet eros, id consequat nisi. Aenean interdum turpis quis varius consectetur. Curabitur eleifend risus ac aliquet molestie. Proin dictum lectus sed tempus tincidunt. Pellentesque tempus lacinia posuere. Donec metus lorem, rhoncus bibendum consectetur venenatis, dignissim molestie ex. Duis sagittis ligula eget nisl tempus, ac hendrerit dolor finibus. Suspendisse quam lectus, pharetra at risus sit amet, convallis rhoncus urna.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...
pyFF Optimizations
Cras non sagittis mi. Nulla volutpat magna turpis. Vivamus aliquet condimentum lacus, efficitur tempus lectus tempus vitae. Mauris lobortis sollicitudin aliquet. Sed elementum vulputate nisi quis pellentesque. Ut pharetra facilisis pretium. Sed commodo ut ipsum hendrerit placerat. Pellentesque ac laoreet neque, nec ultrices augue.
Activity page-
Results & Deliverables
The activity has created...
- deliverable 1
- ...
-
Ownership & Utilisation
The results were provided to the eduGAIN service task who took the ownership.
The product is used by task/community ...