...
| Information | Description | Example |
|---|---|---|
| Technical contact |
| support@it.geant.org |
| Support contact | "Generic" support questions for the actual service
Usually the application administrators or the teams that run it. | support@it.geant.org |
| Service name | Very short name to be shown in user interfaces. | GÉANT Wiki |
| Service description | Longer descriptive text, for instance with details like:
| Atlassian Confluence wiki, production instance. |
| Service URL | The actual URL to the main service | https://wiki.geant.org |
| Metadata | Valid SAML2.0 metadata | a URL to the XML metadata (preferred), or an XML metadata file. |
...
The SAML proxy will always provide the following attributes to its downstream services:
| SAML attribute | example value | remarks |
|---|---|---|
| uid | federated-user-1234 | Unique user ID, always available. |
| user@domain | Defaults to the string 'invalid_email_needs_updating' if none was provided by the upstream IdP | |
| displayName | Robert Wagner | Defaults to the string 'first_name last_name' or similar if bit aren't provided by the upstream IdP |
| isMemberOf |
| Multivalued attribute listing the CAMS group memberships. |