edugain-discuss AT lists.geant.org
Subject: An open discussion list for topics related to the eduGAIN interfederation service.
List archive
- From: Olivier Salaün <olivier.salaun AT renater.fr>
- To: Thomas Lenggenhager <lenggenhager AT switch.ch>, edugain-discuss AT geant.net
- Subject: Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs
- Date: Wed, 19 Feb 2014 16:58:08 +0100
- List-archive: <https://mail.geant.net/mailman/private/edugain-discuss/>
- List-id: eduGAIN discussion list <edugain-discuss.geant.net>
|
Le 19/02/14 16:33, Thomas Lenggenhager
a écrit :
5304CEBE.90907 AT switch.ch">Having a transition period of that kind makes a lot of sense. We will keep this good idea :)Hi Olivier, Two observations: 1) Would you start with an opt-out period first, so that IdP admins could put their opt-out check mark in your federation registry, before you start publishing the IdPs to eduGAIN? That way, one could avoid of having to remove IdPs after they were visible for some time already. 5304CEBE.90907 AT switch.ch">Our federation technical framework only make the use of the renater-attribute-filters-national.xml attribute filter mandatory. This attribute filter would not include attribute release rules for eduGAIN SPs. We would build an additional renater-attribute-filters-edugain.xml file that IdPs would be free to use. Limiting attribute filter rules we publish to eduGAIN SPs who comply to the CoC is probably the right approach because it guarantees that the data processor is in EU/EEA.2) Responsibilities and risks: FER provides attribute filters. To what extent the IdP admins can influence them individually? If you add the attribute requirements of all eduGAIN SPs into the filters, I think FER may take responsibility for the data export. If you limit it to the SPs with CoC and/or R&S entity category, that might reduce the risk FER takes. We don't see the R&S entity category as a useful information for French IdPs because it does not tell where data is processed. The new Refeds CoC would be more useful for us. 5304CEBE.90907 AT switch.ch">Thomas On 18.02.14 16:41, Olivier Salaün wrote: --
|
- [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Olivier Salaün, 18-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Lukas Hämmerle, 19-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Lukas Hämmerle, 19-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Ian Young, 19-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Olivier Salaün, 19-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Thomas Lenggenhager, 19-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Olivier Salaün, 02/19/2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Mikael Linden, 21-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Nicole Harris, 24-Feb-2014
- Re: [eduGAIN-discuss] RENATER moving to eduGAIN opt-out for IdPs, Lukas Hämmerle, 19-Feb-2014
Archive powered by MHonArc 2.6.19.

