Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Security Assertion Markup Language (SAML): A set of standards for the trustworthy exchange of authentication, authorization, entity and other relevant identity/security information, implemented in XML, governed by the OASIS Security Services Technical Committee (SSTC).

Single Sign On (SSO): A technology used to securely authenticate users and then provide relevant user information to applications which need it throughout the lifetime of the user's single sign on session.  Examples of web-based SSO include SAML, CAS, PubCookie, OpenID Connect and CoSign.  Examples of non-web SSO include Kerberos (which may be used in web contexts using mechanisms such as SPNEGO/GSSAPI), RADIUS as implemented in eduroam, SAML ECP, IETF AbFab "Kitten" (aka SASL+SAML, as implemented in services such as FeduShare), and "Moonshot".

Site Administrator: A site administrator may create, update, or delete any type of metadata, either IdP or SP metadata. Provisioned by RA Administrators. See also the public wiki page on various FM users.

...

Steward Metadata Submitter:  

Steward Program: 

Steward Registration Authority Administrator: 

Steward Organization staff authorized to act as a metadata submitter, aka "Site Administrator" on behalf of other non-InCommon-Participant organizations as part of the InCommon Steward Program.  Metadata submitted by Steward Metadata Submitters enters a metadata approval queue for their Organization's Steward Registration Authority Administrator.  Once approved by the Steward RAA, the metadata is published in the InCommon federation, bypassing the InCommon RAA staff metadata approval queue.  The Steward Metadata Submitter is implemented in the Federation Manager as a Site Administrator (inc_admin) role in a Sub-Organization marked as a "Steward" organization by the InCommon RA Administrator staff.

Steward Program: A program of the InCommon Federation designed to allow staff at partner Organizations to take on some of the responsibility of the InCommon Registration Authority Administrator (RAA) staff.  This program allows a set of people from a Steward Organization to submit metadata on behalf of their Represented Constituents (RCs), and then for a distinct set of people to approve this submitted metadata, bypassing InCommon RAA staff approval.  Steward staff are required to have their own set of organizational registration and management practices which meet InCommon requirements for organizational onboarding and metadata registration.

Steward Registration Authority Administrator: Steward Organization staff trained and authorized to act as a Registration Authority Administrator (RAA) for the purposes of approving metadata submitted by their Steward Metadata Submitters.  Once approved by the Steward RAA, the metadata is published in the InCommon federation, bypassing the InCommon RAA staff metadata approval queue.  The Steward RAA is implemented in the Federation Manager as a Site Administrator (inc_admin) role in a parent Organization which contains at least one sub-Organization marked as a "Steward" by the InCommon RA Administrator staff.

TLS: Transport Layer Security.TLS: 

eXtensible Markup Language (XML):  A specific type of markup language which defines a document format that is both human-readable and machine-readable, for the purposes of structured information representation.