Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


Panel

The eduTEAMS Discovery Service (Disco) allows services to implement an (embedded) identity provider discovery.

This section contains functional and technical documentation on how to use the discovery service if you are a administrator of a service.


Note

The discovery service is not yet available for public use, it will be included in the 1.1. release of eduTEAMS (scheduled at Okt 31, 2017)




SAML2 based federations consist of services represented by Service Providers (SP) and Home Organizations represented by Identity Providers (IdP). Services rely on Home Organizations to identify the users and for that to happen, the services usually need to be able to direct the user to correct Home Organization. The number of Home Organizations is - particularly in eduGAIN - so vast that users potentially have to select their Home Organization from a long list of organizations which can access a particular service. Showing this (long) list of Home Organizations requires a so-called Identity Provider Discovery Service. Instead of operating a Discovery Service itself, a service operator can rely on a central Discovery Service, which is operated by a third party. A centrally maintained Discovery Service offers users a list of Home Organizations to pick from.

...