Conveners
Globus Auth: expanding the services ecosystem for protected data
- Rachana Ananthakrishnan (Globus, University of Chicago)
Description
Globus provides a platform for research data management, and a key aspect of the platform is Globus Auth, a standards based solution (OAuth 2.0) for securing applications and services in the research ecosystem. Recently Globus updated the data management services, specifically Globus Connect, to use token based authentication for users, moving away from user certificates. Key motivations include flexible policy handling and support for browser-based/programmatic access to data (via HTTPS) in addition to the bulk access (via GridFTP). Updated data management services also include higher assurance features to support management of protected/restricted data such as PHI, PII and CUI. In support of this, several new features were added to Globus Auth that are now available as a platform for other services to leverage. In this talk, we’ll present some of the new features added such as authentication scoped to sessions, optionals scopes and streamlining of user interface for consents, and discuss our experience building user friendly interfaces on the new model.