Blog from February, 2017

InCommon Shibboleth Installation Workshop
April 4-5, 2017

University of Michigan (Arbor Lakes Dome)
Ann Arbor, Michigan
www.incommon.org/shibtraining

Registration is open for the first InCommon Shibboleth Installation Workshop of 2017, April 4-5, at the University of Michigan in Ann Arbor. This two-day training session covers both the Identity Provider and Service Provider software, as well as some integration issues. The IdP portion of the workshop is based on IdPv3.

We will focus the training sessions on people who wish to learn about and deploy IdPv3. Here is what you can expect:

  • A two-day, directed self-paced workshop
  • Hands-on installation of the identity provider and service provider software
  • Experienced trainers providing overviews and one-on-one help
  • Discussions on configuration and suggested practices for federation
  • Attendance is limited to 40
  • Registration closes March 17

The workshops will offer the chance to:

  • Install a prototype Shibboleth identity or service provider in a virtual machine environment
  • Discuss how to configure and running the software in production
  • Learn about integration with other identity management components such as LDAP and selected service providers

Knowledge of identity management concepts and related implementation experience is strongly recommended. Organizations are encouraged to send one or two attendees who best represent the following functions:

  • System install, integration, and ongoing support staff
  • Campus technology architects


For more information and a link to register, go to https://spaces.at.internet2.edu/x/9wJ-Bg

To learn more about Shibboleth, see the Shibboleth wiki (wiki.shibboleth.net). More information on federated identity can be found at www.incommon.org.

Nominations are open for the instantiation of CACTI, the Community Architecture Committee for Trust and Identity. This new committee will provide technical guidance and inform the strategic direction for Internet2's Trust and Identity (T&I) services. CACTI membership must comprise and connect a range of perspectives and experiences, established and rising community technical leaders, and national and international backgrounds.

Nominations for membership, including self-nominations, may be made using this nomination form. Nominations will be accepted through midnight (EST), March 8, 2017. The goal is for the first meeting of CACTI to occur online shortly before the upcoming Internet2 Global Summit, April 23-26 in Washington DC.

CACTI's charter describes its duties, membership, and other details, and its role in the ecosystem of T&I related Internet2-sponsored community guidance is described in https://internet2.box.com/v/commarchguideI2TI.

Over the years, the Internet2 community together with national and international partners has helped to shape the research and education identity and trust landscape. Going forward, CACTI will play a large part in continuing this important work.

At the request of the InCommon Certificate Service community, Comodo has created a new system that will greatly streamline the issuance of EV (extended validation) certificates. This new system is called “Anchor Certificates.” Cert Service subscribers can now request an Anchor Certificate, and apply it to all of their domains, then go through the industry-mandated EV process once for all of the domains, which will streamline future EV certificate requests. This will not actually create a new certificate, but uses the same validation process as with EV certificate requests. Once the Anchor Certificate is set, EV cert requests are treated just like any other cert, without going through the EV validation process again for 13 months. Under the current process, each EV cert request went through the entire validation process.

In conjunction with Comodo, we have published a wiki page that details the process of ordering an anchor certificate.
 
The InCommon Certificate Service Working Group surveyed certificate subscribers last year and had a number of recommendations. This is one step toward improving the EV documentation and process. Survey results and the 2017 work plan will be detailed over the next few weeks.