Containerization of Shibboleth IdP as access management single sign-on (SSO) service based on integrated Kubernetes cluster with GitLab CI automation.

Autor: Setiawan, Mukhammad Andri, Fathony, Ikhwan Alfath Nurul
Předmět:
Zdroj: AIP Conference Proceedings; 2023, Vol. 2508 Issue 1, p1-12, 12p
Abstrakt: The idea for this project stems from the use of the authentication system at Universitas Islam Indonesia (UII) with Shibboleth. In this case, UII controls several services including, UIIGateway student academic services, the learning management system, student email access, and many other platforms through Shibboleth. Shibboleth is a system that gives a single login service in a computer networking system and the internet. The system helps users to login to more than one system run by different organizations or institutions with only one identity. The Shibboleth Internet2 middleware initiative set up an open-sources project that can provide services with authentication and authorization based on identity management and infrastructure authorization or acting as access control as identity management based on Security Assertion Markup Language (SAML). Identity Provider (IdP) acts as users' information provider whereas service provider (SP) acts from a system with SSO Service can use the information needed and give access to the content safely with necessary attributes. To provide optimal authorization services, an effective containerization strategy is needed for Shibboleth IdP as a user authentication provider. With the help of the Kubernetes cluster, Shibboleth IdP can perform scalable activities on the container and can provide convenience to the SP integration process as well as transparency in the development process. Also, the application of automation technology using GitLab CI as a Continuous Integration/Continuous Deployment (CI/CD) process has made changes inserted Kubernetes cluster automatically. [ABSTRACT FROM AUTHOR]
Databáze: Complementary Index