UPDATE ......From Tuesday 8 April 2025 we have changed the way that Single Sign-on works on this wiki. Please see here for more information:
Update
...
REFEDs identify 4 types of specifications:
- Entity Category
- Entity Attribute
- Profile
- Metadata Extension
- Framework
...
- , defined in RFC8409, are metadata 'labels' applied to either identity providers or services which may be used under certain conditions, as described in the Entity Category specification, to indicate a grouping of entities. Entity Categories may be used to signal commonly used attribute requirements, or commitment to a certain set of behavioural rules.
- Entity Attribute are metadata labels applied to either identity providers or services to signal assurance certifications.
- Profiles, which define a standard to signal certain behaviour in a federated authentication transaction, and how to respond to such a request.
- Metadata Extension, provide an extention to existing metadata profiles.
- Frameworks, are currenlty basically assurance frameworks, which provide a structured means of describing or defining the main sources of assurance provided within the federation by the member entities of the federation itself.
- An entity category may be used to expres a certain behaviour from the entity, or compliance to certain commonly understood policy. For example in R&S: "Service Providers that are operated for the purpose of supporting research and scholarship interaction, collaboration or management, at least in part". Such Entity Categories may be very usefull as these can be used to inform issuers and user about the verifiers intentions. If an entity category is asserted by the
...
specification name | type | Applies to | Asserted by | Attribute profile | Entity behavioural rules | Attribute requirements | Protocol Specific requirements |
---|---|---|---|---|---|---|---|
Research and Scholarship (R&S) v1.3 | Entity Category | SP | Registrar |
|
|
| |
Research and Scholarship (R&S) v1.3 | Entity Category | IdP | IdP |
|
| ^^^ | |
Hide From Discovery v.1 | Entity Category | IdP | IdP |
| |||
Anonymous Access v.2 | Entity Category | SP | Registrar |
|
|
| |
Anonymous Access v.2 | Entity Category | IdP | IdP |
|
| ^^^ | |
Pseudonymous Access v.2 | Entity Category | SP | Registrar |
| |||
Pseudonymous Access v.2 | Entity Category | IdP | IdP |
| |||
Personalized Access v.2 | Entity Category | SP | Registrar | ||||
Code of Conduct v.2 | Entity Category and Best Practice | ||||||
Sirtfi v1 & v2 | Entity Attribute | SP | SP |
...