Blog Home

Add a comment

 

Re: Damage control

If EGI is making true its goal to serve a much larger user community in the future, increasing its user base from the current ~18'000 to 180'000 or even more (wouldn't that be nice!), changes in policy and tools is a must and Tiziana has been suggesting a few based on the feedback we provided on this particular problem:

- The policy could be changed so that duration of membership is no longer mandatory (point 4), but is configurable by the VO manager (the default could still be 12 months). Discussion of a such a change would need to involve resource providers, users and security experts.

Why not by default trust our users? Now the current policies seem to make everyone a suspect. Extending or relaxing the duration would be a good move.

- Even with the existing policy, the mechanism for membership renewal could be improved. Renewal of membership could be triggered by the user instead of the VO manager.

It seems to me this should really be the default. Has any physics VO with a few thousands users encountered the same problem? I can't see how VO manager could monitor the memberships of so many users...

By notifying the user about the expiring membership (for example 2 weeks before the deadline), users interested in extending the membership could notify the VO manager by  re-signing the AUP. Then, the VO manager could be notified about users willing to extend the membership, and could accept/reject requests.

Please implement this as soon as possible.

- The default time to accept a new AUP in the tool could be extended from 24 hours to something like 2 weeks (but the time is already configurable in VOMS admin system and the VO managers may already extend this time if they wish to give users more time to respond).

If it is that simple, then please change the default to two weeks in the next distribution. 24 hours is clearly not reasonable. Most user complains we received were not about having to renew their membership, but rather about the ridiculously short deadline for this. Remember you need to access the VOMS server from a browser containing your certificate, which you might not always have at hand. And of course, access should be smooth from all devices, including mobile devices these days.


- Search of suspended users for revocation of suspension should be supported by the tool.

Add to that sorting users based on their expiration date to facilitate life of VO managers.

I would say, let's start this policy and tools discussion in a broader context!

Alexandre

 


Re: Damage control


Title
Body
HTML : b, strong, i, em, blockquote, br, p, pre, a href="", ul, ol, li, sub, sup
EGI SSO Login
If you have an EGI SSO account, please log in using the Login form in the right column.
non-EGI users
Name (required)
E-mail address (required) (will not be published)
Website
Remember me Yes  No 

E-mail addresses are not publicly displayed, so please only leave your e-mail address if you would like to be notified when new comments are added to this blog entry (you can opt-out later).