CACTI notes of Tuesday, October 12, 2021

Attending

Members

  • Rob Carter, Duke, (Chair) 
  • Marina Adomeit, SUNET
  • Margaret Cullen, Painless Security
  • Joshua Drake, Indiana University's Center for Applied Cybersecurity Research
  • Matthew Economou, InCommon TAC Representative to CACTI
  • Stoney Gan, University of South Florida
  • Kevin Hickey, Detroit Mercy 
  • Marina Krenz, REN-ISAC  

Internet2 

  • Ann West 
  • Steve Zoppi 
  • Nicole Roy
  • David Walker
  • Netta Caligari
  • Kevin Morooney

Regrets

  • Les LaCroix, Carleton College (Vice-Chair)
  • John Bradley, Independent 
  • Michael Grady, Unicon
  • Barry Johnson, Clemson 

Action item review

  • AI Rob -- reach out to JohnB and Shilen about the U2F issue  Action Item from Aug 3 , 2021
  • AI  Rob,  Les and Nicole - work on putting structure around the discussion of CACTI Spheres of Influence. Action Item from July 20 , 2021
  • AI - Rob and Les - slot the user centric identity  topic into a future CACTI agenda. Action Item from March 30, 2021
  • AI - Rob reach out to the CACTI email list to start to gather contacts and use cases for upcoming discussions around OIDC.  Action Item from March 16, 2021

Discussion 

Announcements and Updates

  • Federation manager move recap and MDQ outage recap 
    • The Federation Manager move to AWS went well yesterday.
    • MDQ outage
      • First observed on 10/7/2021 at 3:47 US EDT. Resolved on 10/8/2021 at  17:15 US EDT.
      • AWS had a problem with character encoding of file names between S3 and their edge nodes.
      • Rob: This is an interesting thing that can happen in cloud services that probably wouldn’t happen the same way otherwise.
      • SteveZ: Also interesting that the entire infrastructure was not down, only a few servers were affected.
        • Nicole: This allowed us to tell people how to bypass malfunctioning nodes.
  • Committee recruitment
  • eAC charter review (Rob)
    • Everyone currently in second of three-year term
    • Charter says it should be reviewed regularly.
    • It's flagged to be reviewed this year; should we?
      • We'll engage w/ the eAC to see what they think, probably in their November meeting.
  • REFEDS Federation 2.0 consultation open (Rob)
    • Please review the Fed 2.0 report. The consultation is open until November 1.

Community Update: Marina Adomeit - SUNET - Seamless Access

  • (Marina will provide the slide deck to be linked here.)
  • SeamlessAccess is…
    • Access button
    • Discovery service
    • Persistence service
  • SeamlessAccess is not…
    • Federation
    • Authentication service
    • Data collection service.
  • Features are still considered beta, but services are HA.
  • Integration Patterns
    • Limited - discovery and persistence
    • Standard - discovery, persistence, and button
    • Advanced - persistence only
  • Aspirational roadmap
    • UX improvements 
    • Internationalization
    • IdP filtering and notification
    • Understanding and responding to browser behavior changes
  • NISO, STM, Internet2, and Géant provide services and governance for SeamlessAccess
  • https://seamlessaccess.org

Discovery Services

  • The current InCommon discovery service is unsustainable for the future.
  • Mathew Economou: The InCommon TAC hasn’t made an official recommendation yet, but there is general unofficial support.
    • The assumption is that the current browser behavior issues will be resolved.
    • Positive aspects
      • It provides a common interface across all services.
      • The user experience is a big improvement over the current service.
  • Matthew is looking into how to integrate SeamlessAccess with their existing discovery service.
  • Geant looking for western hemisphere partner. Internet2 is considering it.
    • Rob: Is InCommon branding desirable?


Next CACTI Meeting: Tuesday, October 26, 2021


  • No labels