> > |
Identity Provider (IdP)
IdP or the so-called Home Institution is the source of user's creditial. This is basically the home organization at which the user can authenticate him/her-self and manages his/her attributes.
Typically, IdP:
- Allow SSO, within the institution and federation.
- Maintain user attributes while protecting privacy.
- Know the SPs in the federation, so they only send user attributes to trusted SPs; and can format these attributes in a way the SP expects.
- Allow system administrators and individual users to control the attribute release
-- BrucLiong - 16 Feb 2006
|