The Incommon Federation wiki has moved.

Please visit the new InCommon Federation Library wiki for updated content. Remember to update your bookmarks.

Click in the link above if you are not automatically redirected in 15 seconds.



You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 30 Next »

Federation Technical Guide

The Federation Technical Guide provides a convenient way to locate the details and documentation for implementing federated identity management with InCommon.

Precursors to Technical Implementation

We have a short document, "InCommon Basics and Participating in InCommon," that includes a Federated Identity Management Checklist. If you are new to InCommon or to federated identity, this is a good place to start. This booklet includes information on the following topics:

  • Review your practices and publish your POP
  • Install/Configure a SAML 2.0 Compliant federating software
  • Support the eduPerson Schema
  • Configure IdP attribute resolver for the appropriate sources
  • Configure the IdP to release the right attributes

Technical Implementation

Starting with InCommon

Identity Attributes

Federation Manager

Metadata

Advanced Topics

Recommended Practices

The InCommon community has developed a set of recommended practices for many aspects of federation practice. You can navigate to the Recommended Practices page for these and other topics:

  • Organizational Presence
    • Participant Operational Practices (POP)
    • Contacts in Metadata
    • Federated Security Incident Response
  • Technical Basics
    • Metadata consumption (refreshed daily)
    • Scope in Metadata (DNS domain controlled by SP)
    • x.509 certificates in metadata
    • SAML protocol endpoints
    • User Interface elements in metadata (IdP and SP)
    • Requested attributes in metadata
  • Operational Maturity
    • Maintaining supported software
    • Federation user experience
  • Maximizing the Federation
    • Identity Provider attribute release process
    • Persistent identifier support
#trackbackRdf ($trackbackUtils.getContentIdentifier($page) $page.title $trackbackUtils.getPingUrl($page))
  • No labels