- DRAFT -

Enabling Federated Authentication For UCSD

Overview

UCSD has created a sign on solution that works for all of its administrative applications. This system unifies the credentials used across all of these applications, and for the web applications allows for a single authentication event to be shared between the different applications. This system is a Java web application that relies on RACF in our mainframe for its credential store.
This project will integrate this single sign on solution with a Shibboleth origin to allow for the UCOP applications UCFY and YBO to use this same authentication method, as well as setting up a presence in UCSD’s portal for the Shibbolized UCFY and YBO entry point.


Project Tasks

  1. Install core Shibboleth Origin Software [Gabriel Lawrence]
  2. Wrap Shibboleth handle service with UCSD authentication method.
  3. Create bridge from Shibboleth attribute service to UCSD authentication attribute service
  4. Join InCommon and InQueue Federations
  5. Configure Shibboleth for InCommon and InQueue Federations
  6. Create entry in business portal for Shibbolized UCFY and YBO