SAML Authentication
Introduction
This guide is for the purposes of setting up the Shibboleth/SAML Authentication between your institution and AEFIS.
We will need the following information from you to complete the setup process:
In Common
If your institution is a member of InCommon.
- What is the URI/URL of your InCommon entityID?
- We will inform you once the SP metadata for your application server is available on InCommon.
SAML IDP Information
If you are not a member of InCommon, please provide us the following information about your institution’s Shibboleth/SAML IDP:
- What is the URI/URL of the entityID
- Metadata:
- If your metadata is available publicly
- What is the URI for your public metadata?
- Does your metadata require a certificate to access it? If so, please provide that to us as well
- If your metadata is not available publicly
- Please provide us a copy of your metadata file
- If your metadata is available publicly
- Metadata:
SAML Attributes
Please provide us with a list of attributes you will be releasing to us for authentication, i.e eppn, uid, etc.
AEFIS Service Provider
Once we complete the setup of Shibboleth on your application server, the Shibboleth SP metadata will be available at https://<Your Institution AEFIS_URL>/Shibboleth.sso/Metadata
Please note that /Shibboleth.sso/Metadata in the URL is case sensitive.
Please send all of the above information to [email protected]. If you do not feel that sending this information via email is suitable, please inform us how you would like to transfer the information and we will be glad to accommodate you.
Once we have received your answers to the above we will advise you when your application server is ready for testing.