Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Step up/AA service

AAF - LoIR

LoIR was the outcome of a project to enhance the current AAF service offering and develop a system to provide higher levels of identity assurance. A number of potential AAF Service Providers have indicated that they will need to provide access to cohorts of their end users who have been given a higher level of identity assurance.

You can find details about the project here. The service is still active and can be found here.

The screen basically tells the use how they go about getting their LoA increased, who to contact, etc. There is also an administrative options for RAs who can perform various tasks to users within their organisation, for instance increase the users LoA. The system only records the value of user's LoA, it does not record any documents, evidence or proof of identity, this is the responsibility of each RA and their organisations. LoIR then provides an Attribute Authority which SPs can use to query users LoA as part of the normal authentication workflow. The eduPersonAssurance attribute will be populate with value assigned to the user. The system was aimed at Universities that had their policies and practices in place but did not have a technical solution to provisioning eduPersonAssurance values into their identity systems. They could then use LoIR to store the results of the user's identity verification. The software is currently in a private repository, I'm not sure of its open source status, most software we develop eventually becomes open source.


Maturity Templates

SURFnet

haka