dark clouds & silver linings: presentation for fam11

15
Dark Clouds & Silver Linings Presentation for FAM11 Martin Hamilton Twitter: @martin_hamilton Blog: martinh.net Scratchpad: goo.gl/Oh9pG

Upload: martin-hamilton

Post on 14-Dec-2014

568 views

Category:

Education


1 download

DESCRIPTION

 

TRANSCRIPT

Page 1: Dark Clouds & Silver Linings: Presentation for FAM11

Dark Clouds&Silver LiningsPresentation for FAM11

Martin HamiltonTwitter: @martin_hamiltonBlog: martinh.net

Scratchpad:goo.gl/Oh9pG

Page 2: Dark Clouds & Silver Linings: Presentation for FAM11

Background: SSO at Loughborough

• Mostly coalesced around Active Directory Kerberos / LDAP authentication

• Not true "Single" Sign-On, as additional logins with same credentials required

• Hacks and bodges to simulate web SSO• Separate user IDs and/or passwords for

oLibrary, Students Union, Agresso etc

Page 3: Dark Clouds & Silver Linings: Presentation for FAM11

Enter: Google Apps for Education

• Requirement for access using University credentials: Trojan Horse for true SSO

• SSO examples using Shibboleth, simpleSAMLphp etc

• Interest in offering Google for Alumni• simpleSAMLphp readily hacked to do our

bidding

Page 4: Dark Clouds & Silver Linings: Presentation for FAM11

Enter: Loughborough University Login

Page 5: Dark Clouds & Silver Linings: Presentation for FAM11

What We Learned: Browser Stats

Page 6: Dark Clouds & Silver Linings: Presentation for FAM11

What We Learned: OS Stats

Page 7: Dark Clouds & Silver Linings: Presentation for FAM11

What We Learned: Phones/Tablets

Page 8: Dark Clouds & Silver Linings: Presentation for FAM11

What We Learned: Location

Page 9: Dark Clouds & Silver Linings: Presentation for FAM11

What We Learned: Location

Page 10: Dark Clouds & Silver Linings: Presentation for FAM11

What We Did

• simpleSAMLphp identity provider, hacked to check against AD & Google

• Integration with Shibboleth (MSL Students Union system)

• Integration with Guanxi (GroupGTI TargetConnect careers system)

• Moodle hacked to provide both Shibboleth and conventional access

Page 11: Dark Clouds & Silver Linings: Presentation for FAM11
Page 12: Dark Clouds & Silver Linings: Presentation for FAM11

What Next?

• Identity management: University tenants and 1,500+ Olympic volunteers

• Shibbolizing Windows (IIS) and Oracle services (Apache/Solaris)

• Collaboration with other institutions, e.g. Midlands Energy Graduate School, Manufacturing Technology Centre

Page 13: Dark Clouds & Silver Linings: Presentation for FAM11
Page 14: Dark Clouds & Silver Linings: Presentation for FAM11

Dark Clouds?

• midata: Identities curated by Google, Facebook, Amazon etc

• SAML vs. OpenID, OAuth, Open Graph etc

• SAML/Shibboleth strategic tech, or niche?

Page 15: Dark Clouds & Silver Linings: Presentation for FAM11

Dark Clouds&Silver LiningsPresentation for FAM11

Martin HamiltonTwitter: @martin_hamiltonBlog: martinh.net

Scratchpad:goo.gl/Oh9pG