Hello

At the University of St Andrews, we are still trying to find a suitable 
front-end for Fedora, and even toying with the idea that we may not need 
one. Our requirements are:

authentication (strong preference for Shibboleth)

authorisation to view certain collections

searching which follows authorisation rules

We are only interested in read-only access, so we don't need any extra 
functionality for ingesting or editing objects or metadata once they are 
in Fedora.

Someone asked a question about Fedora and Shibboleth a bit over a year 
ago, and were directed to some work being done on JAAS and Shibboleth. Has 
there been any more news or success with this? Item 4.3 on this page:

https://wiki.duraspace.org/display/FCR30/XACML+Policy+Enforcement

looks promising, but the link is broken.

Jumping into FeSL AuthZ and XACML is a bit daunting. How easy is it to 
update the policies, say, when we create a new collection that requires a 
new role to view objects in the collection? What success have people had 
with storing policies as datastreams with their objects?

Has anyone got their own in-search filtering working well? I.e. passing in 
user attributes (roles) from Shibboleth to filter the collections that 
could be searched.

Fedora has most of the functionality that we are looking for, without the 
need for a special front-end. Many of the front-ends are no longer being 
developed. Blacklight and Islandora have nice interfaces, but it isn't 
clear if they can easily meet our authN/Z requirements. Could they work on 
top of Fedora's authN/Z?

I would be interested in anyone's success stories.

Thanks.

Swithun.

-- 
The University of St Andrews is a charity registered in Scotland: SC013532

------------------------------------------------------------------------------
Colocation vs. Managed Hosting
A question and answer guide to determining the best fit
for your organization - today and in the future.
http://p.sf.net/sfu/internap-sfd2d
_______________________________________________
Fedora-commons-users mailing list
Fedora-commons-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/fedora-commons-users

Reply via email to