This document is currently an assessment of the work needed for Registry to support InCommon IAPs out of the box. It is based on v1.1 of the Identity Assurance Profiles. The items described below would be optional, ie: Registry could operate in an IAP compliant manner, but by default would not. Note that IAP attributes generally apply to Org Identities and not to CO People. As such in a fully federated model, this functionality would not be required. |