Getting Access Control From Here to There: Are the Right People … · 2017-05-30 · Getting...

Post on 26-May-2020

1 views 0 download

transcript

GettingAccessControlFromHeretoThere:AretheRightPeopleTalkingTogether?

ToddA.CarpenterExecutiveDirector,NISOCNIBriefingSessionDecember13,2016

Isthisatechnicalproblemorasocialproblem?

SoManyIdentityManagementEfforts

OpenIDFoundationInternet2

NISTNSTICworkInternetIdentityWorkshop

Morethan2,200identityprovidersNIHeffort

GeneralwebaccesscontrolBanking/security

Accesscontrolatyourinstitution

HowwelldoesyourlibraryandyourITdepartmentinteract?IsIP-basedauthenticationtheeasiestwaytoNOTinteract?

IdentityManagementatyourinstitution

IdentityManagementandPrivacy

SAMLbaked-inprivacyfromthestartNISOPrivacyPrinciples

Betteraccessmanagementcanbedonewithoutcompromisingprivacy

Let’slearnfromeachother

SeveralSSObestpracticeshavebeendeveloped.Let’susethem!

Whatmoredoweneedtodobeyondimplementandimprove

technology?Thereissomuchmoretothisthanimplementingaspec

Howdoyougetpeopletoknowaboutitandtouseit?

Howdowemakethisanapproacheveryonecan

implement?Noteveryinstitution/publisherhasthesamestaffing,

skills,resources.SAMLimplementationisn’tplugandplaytechnology.

Canwesustainmomentumforyears?

Theonlywaytogetthereistogettheretogether

Let’stalk…

ToddA.CarpenterExecutiveDirector

NationalInformationStandardsOrganization(NISO)tcarpenter@niso.org

@TAC_NISO