edugain-discuss AT lists.geant.org
Subject: An open discussion list for topics related to the eduGAIN interfederation service.
List archive
- From: Mikael Linden <mikael.linden AT csc.fi>
- To: <edugain-discuss AT geant.net>
- Subject: [eduGAIN-discuss] Data Protection CoC -- monitor available
- Date: Mon, 16 Dec 2013 10:52:41 +0200 (EET)
- List-archive: <https://mail.geant.net/mailman/private/edugain-discuss/>
- List-id: eduGAIN discussion list <edugain-discuss.geant.net>
Dear eduGAIN,
Thanks to Miro, eduGAIN has now an automated tool that helps SPs (and federation operators) to check their technical compliance with the GÉANT Data Protection Code of Conduct.
The monitor consumes eduGAIN metadata and performs following steps for SPs asserting compliance with the CoC: - checks that the SP’s SAML2 metadata complies with the SAML2 metadata profile for the CoC - checks that the SP’s Privacy policy is on-line and references the Data protection Code of Conduct - archives the Privacy policy page for audit trail (currently every one hour)
The monitor has two interfaces: - on-line in: http://monitor.edugain.org/coc/ - JSON feed in: http://monitor.edugain.org/coc/json.php
The monitor shows three traffic lights: - green: SP is OK (metadata OK, privacy policy page available and references the CoC) - yellow: SP is OK but some RECOMMENDED elements (mdui: displayname, mdui:description) missing - red: something REQUIRED missing - white: the SP does not assert compliance with the CoC
Monitor instructions are available in: https://wiki.edugain.org/Monitoring_tool_instructions
Any comments welcome!
Cheers, mikael |
- [eduGAIN-discuss] Data Protection CoC -- monitor available, Mikael Linden, 12/16/2013
Archive powered by MHonArc 2.6.19.