Shibboleth: Motivations
  • Library/Publisher/Content-Provider problem
    • Many materials provided to campus users via site-license
    • Site licenses mostly managed by IP-level controls
    • Providers want scalability, better security
    • Campuses want ease of use, ease of compliance

  • Similar projects elsewhere
    • UK Sparta Project, EU Rediris, NL Giganet
    • DLF PKI-based access project

  • Related industry work
    • OASIS Security-Services TC
    • IBM support

  • Problems with large-scale client-cert PKI
    • Cert profile differences
    • Privacy vs well-known identifiers in certs
    • Browser issues
    • Shared client machines
    • All that legal junk

Internet2 Shibboleth, OASIS Security Services
50th
IETF, March 2001
RL "Bob" Morgan, rlmorgan@ washington.edu