Workshop 5: Secure virtual organisations (VOs) for eResearch


Time: Half day: 13:30 - 17:00
Presenters: Paul Davis (VeRSI), Bruc Liong (Macquarie), Alan Lin (Macquarie), James Dalziel (Macquarie)
Who should attend: Researchers, research management and administrators, research related IT management and administrators, and others interested in learning more about eResearch Infrastructures and the potential of applying federated identity and access management to Virtual Organisations.
Abstract:

VeRSI is creating an eResearch infrastructure supporting inter-institutional collaboration and providing a secure virtual organisation (VO) infrastructure. The VO infrastructure includes identity and access management (IAM) enabling VO members' secure access to a range of collaborative tools (generic and domain specific tools, including Grid-based tools). VeRSI will deploy the secure VO infrastructure being developed by Macquarie University ("IAMSuite") which uses Internet2's “Shibboleth” as the underlying IAM mechanism. IAMSuite work follows on from the DEST funded "Meta Access Management System" (MAMS) project which has successfully deployed a 'Testbed Federation' within the Australian Higher Education sector based on Shibboleth middleware for Federated IAM. The IAMSuite VO may be regarded as a 'mini-federation' appearing as a single entity within the broader Federation(s) to which its members belong. The workshop will demonstrate IAMSuite features including efficient set-up and administration of the VO environment and effective integration with collaborative and domain-specific tools including authorisation configuration.

Objectives:

To provide description, demonstration and discussion aimed at promoting an understanding of

  1. Common requirements of Identity and Service Provider Federations and secure Virtual Organisations for eResearch
  2. Use of Internet2's Shibboleth as underlying IAM mechanism for a secure VO ("IAMSuite" project)
  3. VO integration with collaborative and domain-specific tools and services (including Grid interoperability) and authorisation configuration
  4. Administration of VO members, groups, resources, services and workspaces