Participants
Name | Organisation |
---|---|
Mihály Héder | SZTAKI/KIFÜ |
Niels van Dijk | SURF |
Name | Organisation | Role |
---|---|---|
Martin | SURF | Team member |
Mihály | SZTAKI/KIFÜ | Team member |
Halil | GRNET | Team member |
Andrej | Team member |
Name | Organisation | Role |
---|---|---|
Davide Vaghetti | GARR | Task lead of eduGAIN service team |
Leif Johansson | SUNET | HSM operator |
Halil Adem | GRNET | federation operator |
Activity overview
#Please describe the high-level goal of the incubator Activity, provide an overview of the anticipated work and needed resources and skills. Please also describe how commitment from various partners is warranted. - delete this line after using the template#
With the growth of the metadata feeds all over the world, together with the increased need for catering for multiple federations at once, Service Providers are increasingly reliant on the MetaData Query (MDQ) protocol, for Relying Party metadata lookup.
(MDQ is also commonly referred to as MDX (MetaData eXchange) for historical reasons: the name of a mailing list where the spec was discussed.)
For MDQ there is only one implementation in common use: pyFF. The MDQ protocol is quite simple however,
The aim is to deliver EntityDescriptors as flat files in such a way this mimics MDQ protocol and combine that with Global DNS to create a super fast and highly redundant distribution mechanism for MDQ.
Activity Details
#Please describe the technical details for the Activity. - delete this line after using the template#
Potential features of such an alternative MDX solution are:
- Federations must remain in control of metadata signing
- Solution must not depend on how federations sign metadata
- Solution must respect SAML metadata ‘business rules’ with regard to TTL
- Effort for participation in distribution network should be minimal
- Solution should be highly available
- Solution should support almost real-time updates
#What is the business case for the Activity? Who would be beneficiaries of the results of the Activity and what would potential business case look like if applicable? - delete this line after using the template#
<Enter here>
#Are there risks that influence either the implementation of the activity or its outcomes? - delete this line after using the template#
<Enter here>
#How do data protection and privacy impact the Activity? Think about e.g. handling of personal data of users - delete this line after using the template#
<Enter here>
- An alternative MDX solution is designed and a PoC is implemented
- Architecture overview with MVP
- Geographically distributed MDQ (geoDNS)
- A test suite and trial site is created/deployed
- An infrastructure deployment is tested with some federation operators
- A documentation for installation and configuration is provided
- The design, source code and documentation will be made available to the community
- A hosted, distributed MDX solution could be provided to support federations that do not run an MDQ
Activity Results
Meetings
Date | Activity | Owner | Minutes |
---|---|---|---|
January 1, 2017 | Kickoff meeting | ||
Documents