Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


Info
titleThis page explains how to register a Service Provider on eduTEAMS Service

You can register services either using OpenID Connect or SAML2. Service requests are reviewed by the eduTEAMS Support team. In order to start the process, open the Service Provider Registration form in your browser. If you do not have an active session, you will be redirected to your Identity Provider in order to authenticate





Section


Column
width30%
  1. Requester Details

Display name - Already prefilled pre-filled from your eduTEAMS Profile. Unmodifiable.

Email - Already pre-filled from your eduTEAMS Profile. Unmodifiable.

Identifier - Already prefilled pre-filled from your eduTEAMS Profile. Unmodifiable.

Orgnanization Organization - If it is not prefilledpre-filled, please enter the name of your organization's name. This can be different from the organization / legal entity providing the service.


Column
width10%



Column
width60%

Image RemovedImage Added





Section


Column
width30%

2. Organization Information - Legal entity responsible for the service

Organization Name - The name of the organization responsible for the service.

Organization Website - The website of the organization responsible for the service.


Column
width10%



Column
width60%

Image RemovedImage Added





Section


Column
width30%

3. Service Details

Service Name - The name of the service. It will be displayed to end users.

Service Description - A description of what the service is. It will be displayed to end users.

Service Website (URL) - The URL of the website or landing page for the service.

Service Logo (URL) - A URL with the logo / icon of the serviceService Description - A description of what the service is.


Column
width10%



Column
width60%

Image RemovedImage Added





Section


Column
width30%

4. Contact Information

Email addresses for administrative, security, helpdesk and technical contacts or teams responsible for the service.


Column
width10%



Column
width60%

Image Added





Section


Column
width30%

5. Service Provider Policies

Privacy Notice Policy (URL) - A URL pointing to the privacy notice policy of the service.

Acceptable Usage Policy / Terms of Use (URL) - A URL pointing to the Acceptable Usage Policy and / or Terms of Use of the service.

Incident Response Policy (URL) - A URL pointing to the Incident Response policy applicable to the service. This is an optional field.

GÉANT Data Protection Code of Conduct - Click the check box if the service is compliant with the GÉANT Code of Conduct. You can find more information about the GÉANT Code of Contact on the GÉANT website.

Sirtfi - Click the check box if the service is comliant compliant with Sirtfi. You can find more information about the Sirtfi framework on the REFEDS website.

Research and Scholarship - Click the check box of the service is compliant with Research and Scholarship entity category. You can find more infomration information about the Research and Scholarship entity category on the REFEDS websiteIncident Response Policy (URL) - A URL pointing to the Incident Response policy applicable to the service. This is an optional field


Column
width10%



Column
width60%

Image Added





Section


Column
width30%

6 - 1 - A. Registering a SAML SAML2 Service Provider

SAML SAML2 or OIDC - Choose SAML SAML2 for registering a SAML SAML2 Service Provider.

SP is part of already published in eduGAIN - If the Service Provider is already registered in eduGAIN through a national federatoin federation click this checkbox.

SAML2 Entity ID - This textbox is only visible if you have selected that the SP is

part of the

already published in eduGAIN. Provide the SAML2 entity ID for the service.

SAML2 Metadata (URL) - This textbox is only visible if you have NOT selected that the SP is

part of

already published in eduGAIN. A URL pointing to the SAML2 metadata of the service.


Column
width10%



Column
width60%

Image Added

                                                      OR

Image Added





Section


Column
width30%

6 - 1 - B. Put additional information

Additional information - Put any comments that should be know about this service.


Column
width10%



Column
width60%

Image Added





Section


Column
width30%

6 - 1 - C. Form submission

When you click on the "Submit" button, you will see a page confirming your application request. You application will be reviewed by the eduTEAMS Support team and you will be notified via e-mail.


Column
width10%



Column
width60%

Image Added





Section


Column
width30%

6 - 2 - A. Registering an OIDC Service Provider

SAML SAML2 or OIDC - Choose OIDC for registering an OIDC Service Provider

Flow - Choose the OpenID Connect / OAuth2 flow applicable for your service. Options are Authorization Code and ImplicitSupported grants - You can choose multiple different grants (flows) needed for your client. The Authorization Code Flow is strongly recommended

Token Endpoint Authentication Method - Choose the token endpoint authentication method for your service. Options are client_secret_basic and client_secret_post

Offline access - If the service requires offline access, check this checkbox

.

Client is public - Click the checkbox if your client is incapable of maintaining the confidentiality of their credentials.

Require PKCE - Click the checkbox if PKCE should be used in the flow. It is strongly recommended for all grants based on the Authorization Code Flow.

OIDC Redirect URLs - Enter one or more OIDC redirect URLs for your service. Wildcards are not supported.


Column
width10%



Column
width60%

Image Added





Section


Column
width30%

6 - 2 - B. Put additional information

Additional information - Put any comments that should be know about this service.


Column
width10%



Column
width60%

Image Added





Section


Column
width30%

6 - 2 - C. Form submission

When you click on the "Submit" button, you will see a page confirming your application request. In the confirmation page you will see also th client_id and secret for your client. Please store the securely as these cannot retreived be retrieved later. You application will be reviewed by the eduTEAMS Support team and you will be notified via e-mail.


Column
width10%



Column
width60%

Image Added