1 e-authentication the e-authentication/grants demonstration

13
1 E-Authentication The E-Authentication/Grants Demonstration

Upload: christian-leonard

Post on 23-Dec-2015

224 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: 1 E-Authentication The E-Authentication/Grants Demonstration

1

E-Authentication

The E-Authentication/Grants Demonstration

Page 2: 1 E-Authentication The E-Authentication/Grants Demonstration

2

E-Authentication

E-Authentication Grants Pilot

Multiple Federal agency partners

E-Authentication-enabled applications

SAML-based (Security Assertion Markup Lang.)

Demonstrates multi-domain single sign on (MDSSO)

Involving a variety of systems and platforms

Page 3: 1 E-Authentication The E-Authentication/Grants Demonstration

3

E-Authentication

System Components Overview

USDA

Users

ORC Grants.gov

FastLane

Credential Service ProvidersAgency Applications

E-Authentication Portal

Page 4: 1 E-Authentication The E-Authentication/Grants Demonstration

4

E-Authentication

E-Authentication Portal

UsersE-Authentication Portal

•Primary Access Point for E-Authentication•Lists the available applications

•Lists the associated credential service providers

Page 5: 1 E-Authentication The E-Authentication/Grants Demonstration

5

E-Authentication

Credential Service Providers

USDA

Users

ORC

Credential Service Providers

•Provide the logon interface

•Validate the provided credentials

•Are trusted partners

Page 6: 1 E-Authentication The E-Authentication/Grants Demonstration

6

E-Authentication

Agency Applications

Users

Grants.gov

FastLane

Agency Applications

•Provide the agency specific functions

•Must be E-Authentication enabled

Page 7: 1 E-Authentication The E-Authentication/Grants Demonstration

7

E-Authentication

Demonstration Outline

Use of a USDA credential service to access the NSF FastLane application (use of external credentials)

Use of a commercial credential service to access the same agency application (use of third-party credentials)

Use of the USDA credential service to access the Grants.gov portal application and the NSF FastLane application (use of external credentials and single sign on to multiple agency applications)

Page 8: 1 E-Authentication The E-Authentication/Grants Demonstration

8

E-Authentication

Case 1: FastLane application is accessed using an external credential service

User Terry McBride

• Starts at the Firstgov.gov E-Authentication Portal• Selects the NSF FastLane application• Selects the USDA Credential Service• Username and password is validated

Page 9: 1 E-Authentication The E-Authentication/Grants Demonstration

9

E-Authentication

Demo Case 1

Page 10: 1 E-Authentication The E-Authentication/Grants Demonstration

10

E-Authentication

Case 2: FastLane application is accessed using an ORC credential – Terry can use either credential at the FastLane application

User Terry McBride

• Starts at the Firstgov.gov E-Authentication Portal• Selects the NSF FastLane application• Selects the ORC Credential Service• Username and password is validated

Page 11: 1 E-Authentication The E-Authentication/Grants Demonstration

11

E-Authentication

Demo Case 2

Page 12: 1 E-Authentication The E-Authentication/Grants Demonstration

12

E-Authentication

Case 3: USDA credential is used to access the Grants.gov and the NSF FastLane application, demonstrating multi-domain single sign on

User Terry McBride

• Starts at the E-Authentication portal• Selects the NSF FastLane application• Checks Remember Credential Service box• Selects the USDA credential• Selects Grants.gov from favorites and is

redirected without re-authenticating

Page 13: 1 E-Authentication The E-Authentication/Grants Demonstration

13

E-Authentication

Demo Case 3