how to get an SP to lookup the list of institutions from the ukfederation metadata
Tom Scavo
trscavo at gmail.com
Thu Sep 10 09:17:18 EDT 2015
On Thu, Sep 10, 2015 at 9:09 AM, Tom Scavo <trscavo at gmail.com> wrote:
> On Thu, Sep 10, 2015 at 9:06 AM, Sunny <ssn at ebi.ac.uk> wrote:
>>
>> ... but I don't understand how then my SP doesn't pick up the list and make
>> it available for users to select? i.e surely I need to specify somewhere
>> that the SP can lookup either UKf or some other metdata - unsure if this is
>> a configuration on the IdP side or SP side?
>
> There's nothing special you need to do. Your SP consumes UKf metadata
> as usual. The eduGAIN IdPs are already included in that aggregate so
> your SP will happily expose all of them on its discovery interface.
As you can see, there are many IdPs in UKf metadata:
$ MD_LOCATION=http://metadata.ukfederation.org.uk/ukfederation-metadata.xml
$ /usr/bin/curl --silent $MD_LOCATION | $SCRIPT_BIN/md_inspect.sh
Metadata file name: (stdin)
Metadata file size: 20456059 bytes
Metadata entity group: http://ukfederation.org.uk
Metadata publisher: http://ukfederation.org.uk
Metadata publication date: 2015-09-09T17:53:50Z
Metadata expiration date (validUntil): 2015-09-23T17:53:50Z
Metadata refresh interval (cacheDuration): (none)
Metadata file is signed (use -s option for advanced security features)
Number of registrars: 32
Number of organizations: 1508
Number of SAML entities: 2795
Number of IdP roles: 1580
Number of IdP roles that support SAML2: 1376
Number of IdP roles with an errorURL: 15
Number of SP roles: 1217
Number of SP roles that support SAML2: 1172
More information about the users
mailing list