carpenter: getting access control from here to there

13
Getting Access Control From Here to There: Are the Right People Talking Together? Todd A. Carpenter Executive Director, NISO CNI Briefing Session December 13, 2016

Upload: national-information-standards-organization-niso

Post on 07-Jan-2017

34 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Carpenter: Getting Access Control from Here to There

GettingAccessControlFromHeretoThere:AretheRightPeopleTalkingTogether?

ToddA.CarpenterExecutiveDirector,NISOCNIBriefingSessionDecember13,2016

Page 2: Carpenter: Getting Access Control from Here to There

Isthisatechnicalproblemorasocialproblem?

Page 3: Carpenter: Getting Access Control from Here to There

SoManyIdentityManagementEfforts

OpenIDFoundationInternet2

NISTNSTICworkInternetIdentityWorkshop

Morethan2,200identityprovidersNIHeffort

GeneralwebaccesscontrolBanking/security

Page 4: Carpenter: Getting Access Control from Here to There

Accesscontrolatyourinstitution

HowwelldoesyourlibraryandyourITdepartmentinteract?IsIP-basedauthenticationtheeasiestwaytoNOTinteract?

Page 5: Carpenter: Getting Access Control from Here to There

IdentityManagementatyourinstitution

Page 6: Carpenter: Getting Access Control from Here to There

IdentityManagementandPrivacy

SAMLbaked-inprivacyfromthestartNISOPrivacyPrinciples

Page 7: Carpenter: Getting Access Control from Here to There

Betteraccessmanagementcanbedonewithoutcompromisingprivacy

Page 8: Carpenter: Getting Access Control from Here to There

Let’slearnfromeachother

SeveralSSObestpracticeshavebeendeveloped.Let’susethem!

Page 9: Carpenter: Getting Access Control from Here to There

Whatmoredoweneedtodobeyondimplementandimprove

technology?Thereissomuchmoretothisthanimplementingaspec

Howdoyougetpeopletoknowaboutitandtouseit?

Page 10: Carpenter: Getting Access Control from Here to There

Howdowemakethisanapproacheveryonecan

implement?Noteveryinstitution/publisherhasthesamestaffing,

skills,resources.SAMLimplementationisn’tplugandplaytechnology.

Canwesustainmomentumforyears?

Page 11: Carpenter: Getting Access Control from Here to There

Theonlywaytogetthereistogettheretogether

Page 12: Carpenter: Getting Access Control from Here to There

Let’stalk…

Page 13: Carpenter: Getting Access Control from Here to There

ToddA.CarpenterExecutiveDirector

NationalInformationStandardsOrganization(NISO)[email protected]

@TAC_NISO