Common ELIXIR Service for Researcher Authentication and Authorisation
Language English Country England, Great Britain Media electronic-ecollection
Document type Journal Article, Research Support, Non-U.S. Gov't
PubMed
30254736
PubMed Central
PMC6124379
DOI
10.12688/f1000research.15161.1
PII: ELIXIR-1199
Knihovny.cz E-resources
- Keywords
- GA4GH, GDPR, IAM, authentication, authorisation, data access,
- MeSH
- Biomedical Research methods MeSH
- Humans MeSH
- Software * MeSH
- Database Management Systems * MeSH
- User-Computer Interface MeSH
- Computational Biology methods MeSH
- Research Personnel MeSH
- Computer Security * MeSH
- Check Tag
- Humans MeSH
- Publication type
- Journal Article MeSH
- Research Support, Non-U.S. Gov't MeSH
A common Authentication and Authorisation Infrastructure (AAI) that would allow single sign-on to services has been identified as a key enabler for European bioinformatics. ELIXIR AAI is an ELIXIR service portfolio for authenticating researchers to ELIXIR services and assisting these services on user privileges during research usage. It relieves the scientific service providers from managing the user identities and authorisation themselves, enables the researcher to have a single set of credentials to all ELIXIR services and supports meeting the requirements imposed by the data protection laws. ELIXIR AAI was launched in late 2016 and is part of the ELIXIR Compute platform portfolio. By the end of 2017 the number of users reached 1000, while the number of relying scientific services was 36. This paper presents the requirements and design of the ELIXIR AAI and the policies related to its use, and how it can be used for serving some example services, such as document management, social media, data discovery, human data access, cloud compute and training services.
See more in PubMed
Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation). Reference Source
University of Helsinki.Finngen project.
AARC project: Recommandations on minimal assurance level relevant for low-risk research use cases.2015. Reference Source
Droz S, Graf C, Hassenstein G, et al. : Concept for an Electronic Academic Community in Switzerland and the creation of a Common Authentication and Authorization Infrastructure (AAI) for the Swiss Higher Education System.2001. Reference Source
REFEDS - The Voice of Research and Education Identity Federations. Reference Source
Internet2: eduPerson Object Class Specification (201602).2016. Reference Source
Linden M, Nyrönen T, Lappalainen I: Resource Entitlement Management System. Selected papers of TNC2013 conference Reference Source
Scollen S, Rambla J, Linden M, et al. : ELIXIR Beacon. 15th European Conference on Computational Biology (ECCB)2016. Reference Source
Dyke SO, Kirby E, Shabani M, et al. : Registered access: a ‘Triple-A’ approach. Eur J Hum Genet. 2016;24(12):1676–1680. 10.1038/ejhg.2016.115 PubMed DOI PMC
Prochazka M, Licehammer S, Matyska L: Perun – Modern Approach for User and Service Management. IST-Africa Conference2014. Reference Source
M'Raihi D, Machani S, Pei M, et al. : TOTP: Time-Based One-Time Password Algorithm.RFC 6238.2011. 10.17487/RFC6238 DOI
Tuomi A: Haka MFA. Reference Source
ELIXIR: Acceptable Usage Policy and Conditions of Use.2016. Reference Source
European Strategy Forum on Research Infrastructures: Strategy Report on Research Infrastructures.Roadmap.2016. Reference Source
Linden M, Holub P, Lappalainen I, et al. : Common Authentication and Authorisation service for Life Science Research. TNC18 conference Reference Source
Cabili MN, Carey K, Dyke SOM, et al. : Simplifying research access to genomics and health data with Library Cards. Sci Data. 2018;5: 180039. 10.1038/sdata.2018.39 PubMed DOI PMC
Zlámal P, Stava M, Licehammer S, et al. : CESNET/perun: Release 3.1.0 (Version v3.1.0). Zenodo. 2018. 10.5281/zenodo.1308874 DOI
Kuba M, Bučík DF: CESNET/perun-mitreid: Version 1.11 (Version v1.11.0). Zenodo. 2018. 10.5281/zenodo.1299810 DOI
Zlámal P, Stava M, Licehammer S, et al. : CESNET/perun-services: Release 3.1.0 (Version v3.1.0). Zenodo. 2018. 10.5281/zenodo.1300300 DOI
Prochazka M, Vyskočil P: CESNET/perun-simplesamlphp-module: v1.0.0 (Version elixir). Zenodo. 2018. 10.5281/zenodo.1300769 DOI
Vyskočil P, Prochazka M: CESNET/perunauthorize-simplesamlphp-module: v1.0.0 (Version v1.0.0). Zenodo. 2018. 10.5281/zenodo.1300765 DOI
Vyskočil P, Prochazka M: CESNET/proxystatistics-simplesamlphp-module: v1.1.0 (Version v1.1.0). Zenodo. 2018. 10.5281/zenodo.1300761 DOI
Morken O, Crespo JP, Solberg AÅ, et al. : CESNET/simplesamlphp: v1.15.4 (Version v1.15.4). Zenodo. 2018. 10.5281/zenodo.1298400 DOI
Jalkanen T, Rontu M, Kaasinen J, et al. : CSCfi/rems: Otaniementie (Version v2.1). Zenodo. 2018. 10.5281/zenodo.1297336 DOI
Linden M, Prochazka M, Lappalainen I, Bucik D, Vyskocil P, Kuba M, Silén S, Belmann P, Sczyrba A, Newhouse S, Matyska L, Nyrönen T: Common ELIXIR Service for Researcher Authentication and Authorisation. F1000Research.2018;7: 10.12688/f1000research.15161.1 10.12688/f1000research.15161.1 PubMed DOI PMC
GA4GH: International policies and standards for data sharing across genomic research and healthcare
GA4GH Passport standard for digital identity and access permissions
The bio.tools registry of software tools and data resources for the life sciences
de.NBI Cloud federation through ELIXIR AAI
Common ELIXIR Service for Researcher Authentication and Authorisation