...
- The federation policy should allow the federation operator to add entities to eduGAIN and/or to integrate eduGAIN entities in the local federation’s metadata
- All entities load and regularly/automatically update metadata provided by the federation operator. This allows the federation operator to just include all eduGAIN metadata to make the local entities also communicate with eduGAIN entities. Entities that opt-out, then have to load a different set of metadata, which only includes entities of the local federation.
- The attributes used in that federation ideally are a super-set of those attributes recommended to support in eduGAIN (update link). Having IdPs support additional attributes usually takes a long time.
...
An overview of which federation has chose which model is available on the Metadata Upstream/Downstream (update link)Downstream page. Practice has shown that federations who have a comprehensive and protective local policy framework in place tend to be inclined to take an opt-in model, because
...
Information on how to republish the eduGAIN downstream metadata can be found in Republish_eduGAIN_Metadata (update link)Metadata.
Metadata Signing Certificate
...