Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The configuration for the OP is delivered by the Administrative component of the InAcademia service (See later). The configuration is dynamic and may change every 5 minutes.

Details, RP requirements

(II) Filter component

The OP and SP interfaces of InAcademia Core act as protocol translators from and to OpenID Connect protocol and SAML2 protocol. The Filter component contains the business logic for the InAcademia service. Features include:

...

All configuration is pushed towards Filter from the Amin component.

Details, Error Handling,

(III) SAML2 Service Provider

...

In case additional claims will be made available in future versions of the InAcademia service this may influence the attribute release requirements of the service.

Details

 

(IV) Discovery Service

The discovery service allows endusers to choose a Home Institution Identity provider. This disco service will show 'all' known IdPs, both in and outside eduGAIN. If a user selects an eduGAIN IdP the discovery service will follow the common pattern of providing the SP with entity information to set up a SAML authentication request towards the IdP. If an IdP is selected which is not a member of eduGAIN the discovery service will return a specially crafted location to the SP signalling the SP component to show a page informing the user the IdP is not yet part of eduGAIN.

Configuration for the discovery service is created by the Metadata Handling component of the admin component, and pushed by Cosmos

Details

 

InAcademia Admin

(V) Administrative Gui

...