Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Overview

As part of the CCC SSO projectinitiative, a centralized Proxy proxy service has been deployed through which secure CCC web applications can centralize authentication requests for students and staff across all CCC colleges. The Proxy then contacts the appropriate "read IDP, such as the OpenCCC IDP system" to complete requests. The goal of this design is to siimplify and accelerate system-wide technology adoption and provide uniform experiences for key users.

The CCC IDP Proxy serves two main functions, the first is to include CCCID as an assertion when the college IDPs are unable to assert the CCCID from their user store.  The second is to aid in the discovery process when navigating across service providers in separate domains.

Technically speaking, the CCC IDP Proxy is designed to help colleges assert consistent SAML attributes to the various Service Providers (SP) within the CCC SSO Federation of secure web applications..

Table of Contents
maxLevel2

...

Before your college can connect to the CCC SSO, a set of minimum requriements for integration with the IDP IdP Proxy must be met.
 Before you can begin connecting your college to the CCC SSO via the IDP Proxy, the minimum requirements for technical integration with the IDP Proxy must be in place to ensure consistency within your college and district, as well as within and between the other colleges in the System and the secure web applications within the SSO federation. Please review the CCC SSO Readiness Checklist and ensure the minimum technical requirements (indicated with an *asterisk) are complete. 

Setting Up Test Environment

The IdP Proxy and supporting components are currently operating in four environments: Continuous Integrated (CI) supporting development activities; TEST, TEST ( an internal environment for development testing); PILOT, PILOT ( for early production stage proof of operations), ; and PROD (, the production environment used by students and staff).

In order to implement technical complete the integration process and facilitate ongoing testing, colleges must stand up a testing environment to ensure their IDP IdP solution is able to authenticate with the Proxy and CCC applications.

The college TEST test environment will access the CCC's PILOT environment for the Proxy and various applications.

 

Integrating with the CCC IDP Proxy

...

Connecting to the Proxy

Table of Contents
maxLevel3
minLevel3

Connecting to the Proxy From Any Secure CCC Application

When your college is ready to integrate with the Proxy, the following tasks must be completed regardless of

...

which CCC application you are implementing:

See:  How to Integrate Your College/District Identity Provider (IdP) with the CCC IdP Proxy

...

 

...

Connecting to the Proxy from Canvas

Integrating with Canvas

...

Connecting to the Proxy from MyPath

 

 

...

 

 

 

 

 



 

 

 In addition to the question of how Unicon will be able to support a critical cog in the CCC infrastructure on a 7x24 basis with very high, e.g. 99.999% availability, several “bigger picture” questions have been raised, primarily by Unicon’s Mike Grady.  Mike is an architect in Unicon’s IAM practice with broad experience deploying IAM solutions to higher ed institutions, including federated identity.

...