1.
|
WLCG Transition from X.509 to Tokens. Status, Plans, and Timeline
/ Dack, Thomas (Rutherford Appleton Laboratory) ; Agostini, Federica (INFN, CNAF) ; Basney, Jim (NCSA, Urbana) ; Cornwall, Linda (Rutherford Appleton Laboratory) ; De Stefano, John Steven, Jr (Brookhaven) ; Dykstra, Dave (Fermilab) ; Giacomini, Francesco (INFN, CNAF) ; Litmaath, Maarten (CERN) ; Miccoli, Roberta (INFN, CNAF) ; Sallé, Mischa (Nikhef, Amsterdam) et al.
Since 2017, the Worldwide LHC Computing Grid (WLCG) has been working towards enabling token-based authentication and authorization throughout its entire middleware stack. Following the initial publication of the WLCG Token Schema v1.0 in 2019, OAuth2.0 token workflows have been integrated across grid middleware. [...]
FERMILAB-CONF-24-0578-CSAID.-
2024 - 6 p.
- Published in : EPJ Web Conf. 295 (2024) 04054
Fulltext: PDF; Fulltext from Publisher: PDF; External link: Fermilab Library Server
In : 26th International Conference on Computing in High Energy & Nuclear Physics, Norfolk, Virginia, Us, 8 - 12 May 2023, pp.04054
|
|
2.
|
|
3.
|
The Second-Factor Authentication System at CERN
/ Ahmad, Adeel (CERN) ; Corman, Asier Aguado (CERN) ; Short, Hannah (CERN) ; Valsan, Liviu (CERN) ; Fava, Maria (CERN) ; Tedesco, Paolo (CERN) ; Lopienski, Sebastian (CERN) ; Lueders, Stefan (CERN) ; Brillault, Vincent (CERN)
In 2022, CERN ran its annual simulated phishing campaign in which 2000 users gave away their passwords. In a real phishing incident, this would have meant 2000 compromised accounts, unless they were protected by Two-Factor Authentication (2FA). [...]
2024 - 7 p.
- Published in : EPJ Web Conf. 295 (2024) 04025
Fulltext: PDF;
In : 26th International Conference on Computing in High Energy & Nuclear Physics, Norfolk, Virginia, Us, 8 - 12 May 2023, pp.04025
|
|
4.
|
WLCG Token Usage and Discovery
/ Bockelman, Brian (Morgridge Inst. Res., Madison) ; Ceccanti, Andrea (INFN, Italy) ; Dack, Thomas (Daresbury) ; Dykstra, Dave (Fermilab) ; Litmaath, Maarten (CERN) ; Sallé, Mischa (Nikhef, Amsterdam) ; Short, Hannah (CERN)
Since 2017, the Worldwide LHC Computing Grid (WLCG) has been working towards enabling token based authentication and authorisation throughout its entire middleware stack. Following the publication of the WLCG Common JSON Web Token (JWT) Schema v1.0 [1] in 2019, middleware developers have been able to enhance their services to consume and validate the JWT-based [2] OAuth2.0 [3] tokens and process the authorization information they convey. [...]
FERMILAB-CONF-21-078-SCD.-
2021 - 6 p.
- Published in : EPJ Web Conf. 251 (2021) 02028
Fulltext: fermilab-conf-21-078-scd - PDF; document - PDF;
In : 25th International Conference on Computing in High-Energy and Nuclear Physics (CHEP), Online, Online, 17 - 21 May 2021, pp.02028
|
|
5.
|
The new (and improved!) CERN Single-Sign-On
/ Ahmad, Adeel (CERN) ; Corman, Asier Aguado (CERN) ; Fava, Maria (CERN) ; Georgiou, Maria V (CERN) ; Rische, Julien (CERN) ; Schuszter, Ioan Cristian (CERN) ; Short, Hannah (CERN) ; Tedesco, Paolo (CERN)
The new CERN Single-Sign-On (SSO), built around an open source stack, has been in production for over a year and many CERN users are already familiar with its approach to authentication, either as a developer or as an end user. What is visible upon logging in, however, is only the tip of the iceberg. [...]
2021 - 6 p.
- Published in : EPJ Web Conf. 251 (2021) 02015
Fulltext: PDF;
In : 25th International Conference on Computing in High-Energy and Nuclear Physics (CHEP), Online, Online, 17 - 21 May 2021, pp.02015
|
|
6.
|
10.5281/zenodo.1035034
|
7.
|
CERN’s Identity and Access Management: A journey to Open Source
/ Corman, Asier Aguado (CERN) ; Rodríguez, Daniel Fernández (CERN) ; Georgiou, Maria V (CERN) ; Rische, Julien (CERN) ; Schuszter, Ioan Cristian (CERN) ; Short, Hannah (CERN) ; Tedesco, Paolo (CERN)
Until recently, CERN had been considered eligible for academic pricing of Microsoft products. Now, along with many other research institutes, CERN has been disqualified from this educational programme and faces a 20 fold increase in license costs. [...]
2020 - 9 p.
- Published in : EPJ Web Conf. 245 (2020) 03012
Fulltext from publisher: PDF;
In : 24th International Conference on Computing in High Energy and Nuclear Physics, Adelaide, Australia, 4 - 8 Nov 2019, pp.03012
|
|
8.
|
Unplugged Computing for Children
/ Alandes Pradillo, Maria (CERN) ; Badinova, Eszter (CERN) ; Chelba, Anda-Catalina (CERN) ; Serans, Miguel Hermo (CERN) ; Kane, Natalie (CERN) ; Kriva, Simona (CERN) ; Short, Hannah (CERN)
The number of women in technical and computing roles in the High Energy Physics (HEP) community hovers at around 15%. At the same time there is a growing body of research to suggest that diversity, in all its forms, brings positive impact on productivity and well-being. [...]
2020 - 8 p.
- Published in : EPJ Web Conf. 245 (2020) 08007
Fulltext from publisher: PDF;
In : 24th International Conference on Computing in High Energy and Nuclear Physics, Adelaide, Australia, 4 - 8 Nov 2019, pp.08007
|
|
9.
|
WLCG Authorisation from X.509 to Tokens
/ Bockelman, Brian (Unlisted, US) ; Ceccanti, Andrea (INFN, Italy) ; Collier, Ian (Daresbury) ; Cornwall, Linda (Daresbury) ; Dack, Thomas (Daresbury) ; Guenther, Jaroslav (CERN) ; Lassnig, Mario (CERN) ; Litmaath, Maarten (CERN) ; Millar, Paul (DESY) ; Sallé, Mischa (Nikhef, Amsterdam) et al.
The WLCG Authorisation Working Group was formed in July 2017 with the objective to understand and meet the needs of a future-looking Authentication and Authorisation Infrastructure (AAI) for WLCG experiments. Much has changed since the early 2000s when X.509 certificates presented the most suitable choice for authorisation within the grid; progress in token based authorisation and identity federation has provided an interesting alternative with notable advantages in usability and compatibility with external (commercial) partners. [...]
arXiv:2007.03602.-
2020 - 8 p.
- Published in : EPJ Web Conf.: 245 (2020) , pp. 03001
Fulltext: PDF;
In : 24th International Conference on Computing in High Energy and Nuclear Physics, Adelaide, Australia, 4 - 8 Nov 2019, pp.03001
|
|
10.
|
Federated identity management for research
/ Barton, Thomas (U. Chicago (main) ; Unlisted, US) ; Gietz, Peter (Unlisted, DE) ; Kelsey, David (Rutherford) ; Koranda, Scott (MIT, Cambridge, LIGO) ; Short, Hannah (CERN) ; Stevanovic, Uros (KIT, Karlsruhe)
Federated identity management (FIM) is an arrangement that can be made among multiple organisations that lets subscribers use the same identification data to obtain access to the secured resources of all organisations in the group. In many research communities there is an increasing interest in a common approach to FIM as there is obviously a large potential for synergies. [...]
2019 - 7 p.
- Published in : EPJ Web Conf. 214 (2019) 03044
Fulltext from publisher: PDF;
In : 23rd International Conference on Computing in High Energy and Nuclear Physics, CHEP 2018, Sofia, Bulgaria, 9 - 13 Jul 2018, pp.03044
|
|