120 likes | 276 Vues
In January 2005, a pivotal meeting took place in Zagreb focusing on the advancements in network access through technologies such as dial-up (CMU), wireless/wired access (Srce, CARNet), and eduroam systems. The discussions centered on the integration of UNIX/Linux systems, user identity management via PAM, and centralized authentication through FreeRadius and OpenLDAP. The team explored the implications of user access control, proxy services, and how structured data schemas could enhance user federation. This initiative aimed to foster collaboration among approximately 180,000 users across various educational institutions.
E N D
AAI@EduHr Miroslav Milinović University Computing Centre - Srce <team@aaiedu.hr> TF-EMC2 meeting Zagreb, January 2005
We started with ... Dial-up access (CMU) StuDOM Wireless/wired access (Srce, CARNet, ...) eduroam (http://www.eduroam.org) UNIX/Linux PAM resoruce user ID: user.realm (ID:user@realm.hr) (Lucent Navis) proxy radius server(s) central LDAP server for backup ( radius ) proxy servce Network Home Org X Home org X Home Org Y Home Org Z 204 (167) Home orgs ≈ 180000users SW: FreeRadius & OpenLDAP Radius Radius Radius server server server LDAP server LDAP server LDAP server
Resource Home Org AAI Component AAI Component Directory Entry Point AAI@EduHr Today 202 (189) Home orgs FreeRadius AOSI WS Open LDAP Central AAI@EduHrServices(proxy, FWS/HLS...) User: uid@realm.hr
AOSI-WS LDAP dir. AOSI System Home org AAI@EduHr AOSI Client Schema (XML) Codes, ... (XML) User access Data (XML) Administrator access
LDAP dir. AOSI System (2) Home org AAI@EduHr AOSI Client Schema (XML) PHP Codes, ... (XML) .Net Java Data (XML) AOSI-WS
AAI@EduHr user@realm Federation WS “routing” information Organization B AOSI Directory FWS in AAI@EduHr Organization A Application
AAI@EduHr user@realm Federation WS “routing” information Organization B AOSI Directory HLS in AAI@EduHr Organization A Application
AOSI WS and FWS • Currently based on Perl; FWS to be impemented in Java • Local AOSI WS: • Local service is described in http://ldaphost.homeorg.hr/aosi/aosi.wsdl • Generally runs at https://ldaphost.homeorg.hr:1443/AOSI • Client platforms working with service: • Perl • PHP • .Net • Java • FWS/HLS: • Based on AOSI • http://www.aaiedu.hr/fws/fws.wsdl • Documentation: • http://www.aaiedu.hr/aosi/aosi_wsdl.html • http://www.aaiedu.hr/fws/fws_wsdl.html