Skip to Content.

edugain-discuss - Re: [eduGAIN-discuss] IdPs in multiple federations: not listed on all configured powerdisco tabs

edugain-discuss AT lists.geant.org

Subject: An open discussion list for topics related to the eduGAIN interfederation service.

List archive


Re: [eduGAIN-discuss] IdPs in multiple federations: not listed on all configured powerdisco tabs


Chronological Thread 
  • From: Leif Johansson <leifj AT sunet.se>
  • To: Ian Young <ian AT iay.org.uk>
  • Cc: edugain-discuss AT geant.net
  • Subject: Re: [eduGAIN-discuss] IdPs in multiple federations: not listed on all configured powerdisco tabs
  • Date: Thu, 05 Dec 2013 12:14:27 +0100
  • List-archive: <https://mail.geant.net/mailman/private/edugain-discuss/>
  • List-id: eduGAIN discussion list <edugain-discuss.geant.net>

On 12/05/2013 12:10 PM, Ian Young wrote:
> On 5 Dec 2013, at 10:57, Leif Johansson <leifj AT sunet.se> wrote:
>
>> The right approach is to figure out how to merge entities from multiple
>> sources.
> Absolutely not.
>
> The right approach is to make sure that the multiple sources don't have
> different metadata in the first place. One way to do that is to get to the
> point where people don't have a need to register in multiple federations.
>
> -- Ian
>
>
>
I'm actually pretty sure I'm right.

I have (say) an accredited idp from multiple sources: from a federation
operator thats is authoritative from the key and some of the attributes
and from Kantara that is authoritative for the assurance level
attribute. These sources need to merge into your local trust-engine.

Cheers Leif






Archive powered by MHonArc 2.6.19.

Top of Page