Overview

The SAML Subject Identifiers Deployment Guidance Working Group aims to provide clear and practical implementation and migration guidance to facilitate InCommon's adoption of subject-id and pairwise-id as the community's prevalent user identifiers throughout InCommon.

Learn More: Charter for the SAML Subject Identifiers Deployment Guidance Working Group

A group mailing list can be found at: https://lists.incommon.org/sympa//info/subject-id-guidance-wg 

Work Items

The SAML Subject Identifier Deployment Guidance Working Group will: 

  • Recommendations and guidance for Identity Providers to implement subject-id
  • Recommendations and guidance for Service Providers to implement subject-id
  • Recommendations for the transition from ePPN to subject-id for both IdPs and SPs
  • Suggested timelines for implementation of subject-id

Terms

The following terms apply to all InCommon Technical Advisory Committee (TAC) Working Groups:

  1. When a working group is agreed, the TAC Sponsor will place a call for participation in the InCommon community.
  2. A chair, and optionally co-chairs, for the group is chosen from interested parties from the community.
  3. Internet2 provides facilities for the working group, including meeting support, wiki space, and mailing lists.
  4. An appropriate output from the group is produced. This is typically a working group report, proposed specifications and / or guidance documents.
  5. When the Working Group is in agreement, the chair shares the outputs with the wider InCommon community with an open period for discussion and comment. This is typically a period of 4 weeks, but may be longer if appropriate.
  6. After this period of time, TAC signs off on the work item. The InCommon Steering Committee may review, endorse, and/or approve the work item. Work is either written up as a formal white paper, left on the wiki but promoted as finished work or occasionally submitted as an Internet Draft.

References

OASIS SAML 2.0 Subject Identifier Attributes Profile - http://docs.oasis-open.org/security/saml-subject-id-attr/v1.0/saml-subject-id-attr-v1.0.pdf

eduPersonPrincipalName - https://wiki.refeds.org/display/STAN/eduPerson+2021-11#eduPerson202111-eduPersonPrincipalName

REFEDS Personalized Access Entity Category - https://refeds.org/category/personalized 


  • No labels