Executive Summary: A community member needs to authenticate to a service that accepts InCommon authentication.
|Component||User facing?||Component’s role in the capability|
|Kerberos||no||Provides user password authentication|
|Multi-Factor Authentication (MFA) with Duo||yes||Provides second factor authentication|
|XSEDE Central Database (XCDB)||no||Provides user information (name, email address)|
|XSEDE InCommon Identity Provider (IdP)||yes||Allows users to authenticate with their XSEDE Kerberos/Duo credentials for access to services federated by InCommon. This IdP also allows XSEDE users to log in to CILogon with their XSEDE identities.|