Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

ACOnet publishes several SAML Metadata documents for differing uses, some of which are documented below.

Note
iconfalse
titleSecurity notice

All use of SAML Metadata published by ACOnet requires verification of the cryptographic signature (XMLDsig) on that metadata against the published Metadata Signing Key. Trust in any information contained in SAML Metadata published by ACOnet should only be derived from a valid signature with that key, not e.g. based on the URL the metadata is downloaded from.

Service Providers only providing services to ACOnet participants (i.e,, services that do not have users outside eduID.at members) can use this limited Metadata document, which only contains entities registered with ACOnet. I.e., Identity Providers owned by formal ACOnet Federation members who are bound by the ACOnet Identity Federation Policy:

Info
iconfalse
titleEntities registered with ACOnet

httpshttp://eduid.at/md/aconet-registered.xml

...

All other Federation members will want to make use of the Interfederation-enabled Metadata document, which contains all eduID.at members as well as any SAML entities known via Interfederation agreements, such as eduGAIN. Those interfederated entities are bound by the policies of their respective Registrars or Home Federations.

Info
iconfalse
titleEntities registered with ACOnet plus Interfederation Entities

httpshttp://eduid.at/md/aconet-interfed.xml

...