From f1665628db2fa994f4dc2004dbcfaf02c6dba339 Mon Sep 17 00:00:00 2001 From: Jim Basney Date: Fri, 8 Sep 2023 16:04:58 -0500 Subject: [PATCH] Update and rename about-access-idp.md to about-access-idp.html --- about-access-idp.html | 5 +++++ about-access-idp.md | 30 ------------------------------ 2 files changed, 5 insertions(+), 30 deletions(-) create mode 100644 about-access-idp.html delete mode 100644 about-access-idp.md diff --git a/about-access-idp.html b/about-access-idp.html new file mode 100644 index 0000000..50ac722 --- /dev/null +++ b/about-access-idp.html @@ -0,0 +1,5 @@ +--- +permalink: /about-access-idp +redirect_to: + - https://operations.access-ci.org/identity/about-access-idp +--- diff --git a/about-access-idp.md b/about-access-idp.md deleted file mode 100644 index 7e395a2..0000000 --- a/about-access-idp.md +++ /dev/null @@ -1,30 +0,0 @@ ---- -title: "About the ACCESS IdP" ---- - -Overview --------- -[ACCESS Operations](https://operations.access-ci.org/) operates an ACCESS InCommon Identity Provider (idp.access-ci.org) similar to the XSEDE InCommon Identity Provider (idp.xsede.org) that was previously operated by XSEDE Operations. -The ACCESS IdP: -* appears as "ACCESS CI (XSEDE)" in the list at cilogon.org, similar to how idp.xsede.org previously appeared as "XSEDE". -* uses the same usernames and passwords as idp.xsede.org and the same Duo MFA configuration. -* operates under the same [privacy](/privacy) and [security](/security) policies as idp.xsede.org. -* asserts eduPersonPrincipalName (ePPN) values of username@access-ci.org. - -username@access-ci.org from idp.access-ci.org is the same person as username@xsede.org from idp.xsede.org (i.e., the same username@TERAGRID.ORG Kerberos principal). - -For InCommon SAML SPs ---------------------- -The SAML metadata for idp.access-ci.org is published by InCommon and can be -downloaded using the [Metadata Query (MDQ) -Service](https://spaces.at.internet2.edu/display/MDQ/production-metadata) from - . -Alternatively, you can download the metadata from and configure it in a local file. - -For OIDC Clients ---------------------- -Please see the [app registration](/register-app) page for details on registering an OpenID Connect (OIDC) web application for ACCESS authentication. - -Transition ----------- -Applications previously relying on username@xsede.org values from idp.xsede.org should migrate to username@access-ci.org values from idp.access-ci.org.