Graphs - UCLA.edu

Trappist Magic Quadrants h1ps://spaces.ais.ucla.edu/display/ucprovisioning/User+Provisioning
+Design These graphs are an experiment to iden@fy one or more protocol and implementa@on projects for successful provisioning infrastructure, including deprovisioning, federa@on, and clouds, as well as alterna@ves to provisioning systems. PloEng current discussions regarding SPML, SAML, and SCIM, against LDAP. Consider a third-­‐dimension of @me, and a fourth of cost, as opportuni@es for future work. Assump@ons : •  Graphs are from an SP perspec@ve (i.e. being an SP) •  LDAP = protocol and data repository for an SP or an app •  A1ribute Release Policies are fully baked The do1ed lines indicate work that needs to be done locally to encourage cloud par@cipa@on. data simplicity SCIM LDAP data richness SAML SPML code simplicity SCIM LDAP code existence SPML SAML push protocol support SPML LDAP SAML+Change No@fy pull protocol support SCIM (SP ac@ng as REST endpoint) just-­‐in-­‐@me SPML SAML+Change No@fy LDAP just-­‐in-­‐case SCIM exis@ng SP pull changelog bootstrap SP snapshot one thing everything batch subscrip@on push Kuali Ready SCIM LDAP* SAML* Payroll SAML LDAP SPML LDAP* = Virtual Federated LDAP SAML* = SAML + Change No@fy cloud federated IDMS interface SP interface