This Wiki is available to view at but still under maintenance. PLEASE DO NOT EDIT THE WIKI UNTIL FURTHER NOTICE. We are attempting to restore missing edits which took place between Monday 8 and Thursday 11 April 2019, therefore the site is likely to be taken off line at any time. Updated 20:43 CEST 16 April 2019.
Page tree

Versions Compared


  • This line was added.
  • This line was removed.
  • Formatting was changed.

Identity Federation

An identity federation (or just federation) is a collection of organizations that agree to interoperate under a certain rule set. This rule set typically consists of legal frameworks, policies and technical profiles and standards. It provides the necessary trust and security to exchange identity information to access services within the federation.


  • Identity Provider (IdP): The system component that authenticates a user (e.g. with username and passwords) and issues identity assertions on behalf of the user who wants to access a service protected by a Service Provider.
  • Service Provider (SP): The system component that evaluates identity assertions from an Identity Provider and uses the information from the assertion for controlling access to protected services.
  • Discovery Service(DS): The Discovery Service service, also known as "Where Are You From (WAYF)" service, lets the user choose his home institution from a list and then redirects the user to the login page of the selected institution for authentication.

How many academic identity federations are?

To get an up-to-date answer for this question, please refer to the REFEDS federations page. REFEDS is a group of Research and Education FEDerations funded mostly by a few National Research and Education Networks and the Internet Society.