InCommon Metadata and WAYF

Response Time and Hours of Operation

Metadata

The InCommon Federation metadata is located here:
http://wayf.incommonfederation.org/InCommon/InCommon-metadata.xml

Note: The metadata carries an expiration date (validuntil) and will expire monthly. We strongly recommend that you download the metadata at least daily to ensure that you have the most up-to-date keys and registered information.

Metadata DIFF

InCommon publishes a diff of the metadata every time we sign, available as an email and via the Web. Here's a link to the web version. To subscribe to the email list, send email to sympa@incommonfederation.org with the subject: sub metadata-diff.

InCommon SAML2 Support

InCommon has added support for SAML2. This is our initial support for SAML2. We plan to roll out additional SAML2 support as time goes on. An FAQ is available on the InCommon Collaborate wiki.

InCommon Attribute Support

InCommon supports eduPerson attributes. For more information, see the InCommon attribute overview page, as well as a summary of the attributes InCommon supports (at a minimum).

Metadata Submission List

(* indicates a required item.)
Submit your metadata through the Administrative Login (see "Site Admin" link in the left nav)

Certificates in the Federation Metadata

1. End Entity Certificates

InCommon accepts self-signed server certificates for entities in the federation metadata. As of January 2010, InCommon no longer issues certificates signed by the self-rooted InCommon CA. See this wiki page for more information.

2. Metadata Signing Certificate

... for validating the published metadata file: https://wayf.incommonfederation.org/bridge/certs/incommon.pem. The metadata signing cert is rooted in the self-signed InCommon CA. The root certificate is: https://wayf.incommonfederation.org/bridge/certs/ca.pem

The InCommon WAYF

The preferred method for accessing the InCommon WAYF ("Where are You From?") servers is via its DNS name – https://wayf.incommonfederation.org/InCommon/WAYF – rather than by numeric IP address. DNS resolution is preferable since there are two InCommon WAYF servers, a primary server and a backup server. At the discretion of InCommon, either server may be designated as primary. If needed for other reasons, the IP addresses for the InCommon WAYFs are: 192.148.244.135 and 207.75.165.125

This page last updated April 19, 2010. ...