Identity Provider (IdP)
IdP or the so-called
Home Institution is the source of user's creditial. This is basically the home organization at which the user can authenticate him/her-self and manages his/her attributes.
Typically,
IdP:
- Allow SSO, within the institution and federation.
- Maintain user attributes while protecting privacy.
- Know the SPs in the federation, so they only send user attributes to trusted SPs; and can format these attributes in a way the SP expects.
- Allow system administrators and individual users to control the attribute release
--
BrucLiong - 16 Feb 2006
to top