If the IdP is connected to one of the R&E Federations but is not published in eduGAIN, then please advise the IdP operator to request their IdP to be published to the eduGAIN metadata. |
IdPs that are not connected to an R&E federation, need to be in one of the eligible categories in order to be integrated on MyAccessID:
If the IdP you wish to integrate is not connected to an R&E Federation and does not fit in any of the above categories, please contact us.
The IdP MUST support one of the following protocols:
IdPs must release the following attributes for users to successfully complete registration and use MyAccessID and its Connected Services:
Please refer to Attribute formats for specification of accepted attribute formats.
Access to certain Connected Services is allowed only with use of identities that fulfil specific identity assurance criteria. To express the required assurance levels, the REFEDS Assurance suite https://wiki.refeds.org/display/ASS is used.
Requirements are defined for two aspects of identity assurance:
Level of assurance for an identity issued to a user is expressed at the time of user authentication by the IdP sending eduPersonAssurance attribute with following values: