Australian Access Federation Workshop 27-31 Aug 2007
Invitation information
http://www.aaf.edu.au/docs/AAF-Workshop-August-2007.pdf
PDF of Slides
Agenda
There are 2 sessions for the AAF August Workshop.
Session 1
- 27 & 28 August for Shibboleth workshop
- 29 August for Public Key Infrastructure workshop
Session 2
- 29 August for Public Key Infrastructure workshop
- 30 & 31 August for Shibboleth workshop
Note: Items marked with * indicates hands-on session
Day 1 (27 Aug 2007)
Day 2 (28 Aug 2007)
- 8:30 Registration/Administration/Tea
- 9:00 Review of the practical sessions & requirements for AAF
- 10:00 ShARPE/Autograph (including Service Description File, Attribute Mapping, eduPersonTargetedId, etc)*
- 11:00 Break
- 11:15 Common Problems/Troubleshooting
- Log file explanation; SAML assertions examination
- Certificates
- Synchronizing time
- 11:45 Shibbolizing a second application
- 1:00 Lunch
- 2:00 Discussions
- Typical scenarios: your institution, AAF, and others
- What services do you want to provide across institution boundaries?
- Applicability of SSO within your institution
- What are the attributes that your application will need?
- 3:45 Break
- 4:00 Advanced Topics (raise issues you'd like to discuss)
- 5:00 Finish
Day 3 (29 Aug 2007)
- 8:30 Registration/Administration/Tea
- 9:00 Public Key Infrastructure and AAF hands-on
- Introduction to the technical foundations of PKI
- Introduction to the PKI features of the AAF
- 11:00 Break
- 11:45 PKI hands-on continue
- How to setup the PKI components: Certification Authority and Registration Authority, including the processes involved (a hands-on workshop installing and using OpenCA? software)
- 1:00 Lunch
- 2:00 PKI hands-on continue
- How to issue and manage certificates
- Work through example certificate use cases
- 3:34 Break
- 4:00 PKI hands-on continue
- Discussions on certificate profiles under the AAF
- Discussions on PKI best practices within the AAF
- 5:00 Finish
Day 4 (30 Aug 2007)
Day 5 (31 Aug 2007)
- 8:30 Registration/Administration/Tea
- 9:00 Review of the practical sessions & requirements for AAF
- 10:00 ShARPE/Autograph (including Service Description File, Attribute Mapping, eduPersonTargetedId, etc)*
- 11:00 Break
- 11:15 Common Problems/Troubleshooting
- Log file explanation; SAML assertions examination
- Certificates
- Synchronizing time
- 11:45 Shibbolizing a second application
- 1:00 Lunch
- 2:00 Discussions
- Typical scenarios: your institution, AAF, and others
- What services do you want to provide across institution boundaries?
- What are the attributes that your application will need?
- 3:45 Break
- 4:00 Advanced Topics (raise issues you'd like to discuss)
- 5:00 Finish
Location
Whitely room, Level 3, SAM Building (C10A),
Macquarie University, Balaclava Road, North Ryde,
New South Wales, 2109
Campus Map
Virtual Machine Settings
During the practical hands-on sessions, participants will be divided into groups of 3.
Each group will work on their own virtual machine.
Pre-downloaded software required for the workshop resides in:
The network settings for each group virtual machine are below:
- Group 3
- Hostname: ws03.mams.org.au
- IP Address: 137.111.246.153
- Group 4
- Hostname: ws04.mams.org.au
- IP Address: 137.111.246.154
- Group 5
- Hostname: ws05.mams.org.au
- IP Address: 137.111.246.155
- Group 6
- Hostname: ws06.mams.org.au
- IP Address: 137.111.246.156
- Group 7
- Hostname: ws07.mams.org.au
- IP Address: 137.111.246.157
- Group 8
- Hostname: ws08.mams.org.au
- IP Address: 137.111.246.158
- Group 9
- Hostname: ws09.mams.org.au
- IP Address: 137.111.246.159
- Group 10
- Hostname: ws10.mams.org.au
- IP Address: 137.111.246.160
- Group 11
- Hostname: ws11.mams.org.au
- IP Address: 137.111.246.161
- Group 12
- Hostname: ws12.mams.org.au
- IP Address: 137.111.246.162
- Group 13
- Hostname: ws13.mams.org.au
- IP Address: 137.111.246.163
- Group 14
- Hostname: ws14.mams.org.au
- IP Address: 137.111.246.164
- Group 15
- Hostname: ws15.mams.org.au
- IP Address: 137.111.246.165
Group 0 to 2 are reserved.
All groups have the same subnet mask, gateway and DNS server:
- Subnet mask: 255.255.255.128
- Gateway: 137.111.246.129
- DNS Server: 137.111.1.11
Network Access
Wireless login:
username:
workshop
passwd:
w0rksh0p
Login to your vmware:
username:
root
password:
m4m5t35t
Hardware:
- Wireless network with 802.11G (eduroam will be enabled too).
- No wired Ethernet will be provided.
- Optional: If you want a copy of your vmware images, you also need to have approx 8GB free on your HDD.
- Optical drive capable of reading DVDs (for PKI workshop)
- A USB flash drive (for PKI workshop)
Software:
- SSH Client + X windows (on windows you can install cygwin + X)
- Web browser
- Optional: VMware Workstation or Server suggested for the PKI workshop, if you want to run your own VM.
Misc
- join http://www.federation.org.au/cgi-bin/mailman/listinfo/testbed-dev mailing list for follow up discussion on workshop and helping out in deploying shibboleth in your institution
- questions and issues on ShARPE and Autograph can be redirected at http://www.federation.org.au/cgi-bin/mailman/listinfo/sharpe-users mailing list
- general federation questions, feel free to direct them to support AT federation DOT org DOT au
Note
- Please let us know if you would like to get a copy of the vmware that you're working on. We can either burn it into CD or transfer directly to your laptop after the workshop.
- all vmwares are going to be deleted after the workshop. This includes the registration of the SP or IdP in the Federation
to top