Child pages
  • UCTrust Discovery Service

Should UCTrust provide a central discovery service?

Maybe multiple DS implementations for various entity categories?

 

See this discussion from shibboleth-users.

 

This was discussed again very briefly during some of the 2015 UCTrust calls. In the discussion, we asked whether there was a clear agreement on how a discovery service should function. Deploying a vanilla DS should not be difficult; questions may remain as to: (1) who will implement it and (2) what "additional features" a DS should have.

Potential features of a system-wide discovery service:

  1. Support for SAML 2 DS listing all UCTrust IdPs in the discovery interface.
  2. Support for SAML 1 DS?
  3. Support for custom per-IdP lists of IdPs?
  4. Support for per-entity category lists of IdPs?
  5. Support for branding of the DS?

If the goal is just 1 (or 1 and 2) then deployment and maintenance shouldn't be difficult. If 3-5 are required, then some additional design or prep work might be required.

 

  • No labels