Participants

Proposers
NameOrganisation

Janusz Ulanowski (enhancements from Mihály Héder, Niels van Dijk)

HEAnet CLG
GN4-3 project team
NameOrganisationRole
Héder MihályKIFU / SZTAKI / IncubatorTechnical Expert
Michael SchmidtLRZ / DFN / IncubatorScrum Master
Janne LaurosCSC / GuestDeveloper Shibboleth
Marko IvančićSRCE / CARNet / GuestDeveloper SimpleSAMLphp


Stakeholders
Name

Organisation

Role 
Davide VaghettiGARReduGAIN Service Owner

Activity overview

Description

Create a user profile page for Shibboleth IdP and SimpleSAMLphp

Activity goals

A user profile page deployed as part of Shibboleth IdP and SimpleSAMLphp would enable end users to gain insight into where their personal data is used and when it was last released to various services, as far as the IdP is aware. This feature should only release information to appropriate user (so after login). We need to consider how storing user data to facilitate this plugin would impact data retention policy of the IdP. We need to learn how both  IdP products currently store information on what was release towards services and how that can be made readily available.

Additional features to consider:

  • In case the IdP is also anOIDC  OP this capability may be extended to also include OIDC based interactions.
  • It should be investigated if this feature could also be used to allow users to retract consent to the release of attributes/claims
  • Integration with CAR

Activity Details

Technical details
  • Describe requirements
  • Investigate storage backend in Shibboleth IdP
  • Investigate storage backend in SSP
  • Implement storage backend
  • Design/Mock GUI components
  • Discuss UI design with community
  • Implement GUI design
Business case

This activity provide users with the ability to track their own login behaviour. This my enhance trust and security too.

Risks

No known risks


Data protection & Privacy

The tool will access personal data at the IdP. However, the data will only be displayed, there will be no additional data storage.


Definition of Done (DoD)

The activity seeks to implement a working prototype of the software.


Sustainability

If the software works as expected, it can be handed over to the developers of Shibboleth/SimpleSAMLphp

Activity Results

Meetings

Date

Activity

Owner

October 25, 2022Public demoNiels van Dijk
December 15, 2022Final demoNiels van Dijk




  • No labels