Identity and Access Management (IAM) is concerned with the processes, policies and technologies for managing digital identities and their access rights to specific resources. A central goal within NFDI is to enable unified access to data, software, and compute resources, as well as sovereign data exchange and collaborative work. In order to achieve this, it will be necessary to connect and expand existing and emerging IAM systems in a way that researchers from different domains and institutions are able to access digital resources existing within NFDI as easily as possible, including access to and exchange with external infrastructures and resources. Interoperability is therefore a central requirement. In order to achieve this, a decentralised, federated Identity and Access Management is required. The technical and organisational framework for a federated IAM is a so-called Authentication and Authorisation Infrastructure (AAI). The task of the Basic Service IAM is to establish and provide a state-of-the-art AAI, that fosters cross-consortial and international collaboration. This NFDI AAI will be connected to the national identity federation DFN-AAI. Through its participation in the international interfederation eduGAIN, the DFN-AAI facilitates international, cross-federation, and cross-community usage scenarios. This way, users from approx. 400 German research and higher education institutions plus approx. 4800 home organisations worldwide will be able to access services and resources provided by the NFDI AAI.
Apweiler et al. (Tue,) studied this question.