Human Genomes Platform Project: Federated Identity and Access Management Candidate Solutions Evaluation Report
Creators
- Carnuccio, Patrick (Project member)1
- Cowley, Mark (Project member)2, 3
- Davies, Kylie (Project member)1
- Downton, Matthew (Project member)4
- Dumevska, Biljana (Project member)2, 3
- Holliday, Jessica (Project manager)5
- Green, Cherry (Project member)1
- Hobbs, Matthew (Project member)6
- Kummerfeld, Sarah (Project member)6
- Lin, Angela (Project member)2, 3
- Monro, David (Project member)4
- Patterson, Andrew (Project member)7
- Pope, Bernard (Project member)5
- Ravishankar, Shyamsunder (Project member)6
- Robinson, Andrew John (Project member)4
- Scullen, John (Project member)1
- Shadbolt, Marion (Project member)5
- Syed, Mustafa (Project member)2, 3
- Wood, Scott (Project member)8
- Wong-Erasmus, Marie (Project member)2, 3
- 1. Australian Access Federation
- 2. Children's Cancer Institute
- 3. ZERO Childhood Cancer Program
- 4. National Computational Infrastructure
- 5. Australian BioCommons
- 6. Garvan Institute of Medical Research
- 7. The University of Melbourne Centre for Cancer Research
- 8. QIMR Berghofer Medical Research Institute
Description
The Human Genomes Platform Project (hereafter ‘HGPP’ or ‘the project’) is a collaborative research project aiming to enhance secure and responsible sharing of human genomic data for research purposes. National and international connectivity is important to maximise the utility of these sensitive and valuable assets. The project partners represent many of the largest human genome sequencing and analysis organisations in Australia.
Federated Identity and Access Management (IAM) is a collection of standards, policies, and technologies that enable a platform to determine whether to permit access to a user. Federated IAM employs technologies, such as cryptography, and coordinated policies that outline common expectations between ecosystem participants. In a federated environment like the Australian and global genomics communities, IAM is the glue that enables loosely coupled systems to establish strong trust relationships for the purposes of data sharing.
IAM is a core component of the Human Genomes Platform Project (HGPP), designed to explore and implement systems that can be used to confirm that someone being granted access is in fact who they say they are and that their professional identity and role is considered. Federated IAM solutions were piloted across multiple repositories during the project.
Specifically, the federated IAM sub-project aimed to explore and pilot systems that organisations can deploy to leverage:
-
Federated authentication infrastructure to streamline access to genomic data and analysis tools; and
-
Attributes about the user and their home organisation identity to increase the level of confidence, to the point where service providers can make reliable authorisation decisions.
Beginning with a knowledge discovery phase, the federated IAM sub-project team established the formal requirements of the system through community consultation, identified several candidate solutions, and assessed those solutions against selection criteria. CILogon emerged as the leading candidate and was selected for the subsequent pilot implementation phase. In this report, we summarise our approach to testing the deployment of CILogon and its integration with the Beacon network explored in the virtual cohorts sub-project.
Files
Federated IAM_ Candidate Solutions Evaluation Report.pdf
Files
(409.7 kB)
Name | Size | Download all |
---|---|---|
md5:325b8eb664800dc2a429135a32e44bf6
|
409.7 kB | Preview Download |
Additional details
Related works
- References
- Report: 10.5281/zenodo.6644008 (DOI)
Dates
- Available
-
2024-02-28Project Report