dvn
19.01
February 13, 2013
dvn
#dvn Meeting
Meeting started by pdurbin at 19:01:38 UTC
(full logs ).
Meeting summary
intro (pdurbin , 19:01:49)
summarizing how authentication works in a Dataverse Network today (pdurbin , 19:05:40)
reaching a common understanding of what Shibboleth is (pdurbin , 19:11:03)
http://shibboleth.net/about/basic.html
has more about the main "actors" in Shibboleth. I want to focus on
the Identity Provider (IdP) vs. the Service Provider (SP) (pdurbin ,
19:11:35)
https://github.com/dvn/shibpoc
contains all the configuration for how I set up dvn-vm2 (pdurbin ,
19:17:23)
https://dvn-vm2.hmdc.harvard.edu/secure/
example show protecting files from download (pdurbin ,
19:28:34)
roughing out a plan for how to integrate Shibboleth into the DVN (pdurbin , 19:28:57)
option 1: fronting Glassfish with Apache
(pdurbin ,
20:02:55)
option 2: OpenAM (pdurbin ,
20:03:50)
option 3: write our own Service Provider (SP)
with OpenSAML (pdurbin ,
20:09:24)
AGREED : use
testshib.org first, then Harvard's test IdP when available
(pdurbin ,
20:22:22)
ACTION : pdurbin to
add basic, non-shib auth to iqss-javaee-template and later OpenAM
for testing with testshib.org (pdurbin ,
20:24:32)
discussing implications of Shibboleth integration (pdurbin , 20:26:21)
IDEA : make sure we can
support multiple IdPs (pdurbin ,
20:27:07)
shib-enabled DVNs will probably still need
local login as well (pdurbin ,
20:27:43)
http://irclog.iq.harvard.edu/dvn/2013-02-13#i_855
discussion of local login and other implications of enabling
Shibboleth in a DVN (pdurbin ,
20:29:03)
Meeting ended at 20:33:16 UTC
(full logs ).
Action items
pdurbin to add basic, non-shib auth to iqss-javaee-template and later OpenAM for testing with testshib.org
Action items, by person
pdurbin
pdurbin to add basic, non-shib auth to iqss-javaee-template and later OpenAM for testing with testshib.org
People present (lines said)
pdurbin (159)
marlena (49)
sbmarks (13)
bobtreacy (7)
gdurand (6)
zodbot (2)
Generated by MeetBot 0.1.4.