JA T3 Framework

Fast. Flexible. Powerful

Contact

News

EasyLog-in changed certificate

EasyLog-in (Digitaliseringsstyrelsen) changed their certificate Thursday 26. April 2012 at 22.30-23.00
Services using EasyLog-in through WAYF did not have to change the EasyLog-in certificate, because WAYF took care of the change.

WAYF signing certificate renewed

On the 17th of April 2012 at 10 o'clock, WAYF renewed its signing certificate.

Consequently, WAYF login will work only insofar as services and institutions connected to WAYF have incorporated the new signing certificate into their WAYF setups. Guidance on how to do this is available here.

New JANUS user guides for SPs and IdPs

Now there is a JANUS user guide for Service Providers (SPs) too. This has been requested for a long time and finally we can present this new user guide for SPs. The user guide follows the user guide for IdPs, with minor adjustments.

User guide for SPs is available in PDF here: JANUS user guide for Service Providers (SP)
User guide for IdPs (new updated version) is available in PDF here: JANUS user guide for institutions (IdP)

Single Logout with WAYF

It has recently been decided that WAYF does support Single Logout—i.e. a user's ability to log off every service at once where he is logged in through WAYF. At the same time, however, it is stressed that WAYF cannot guarantee that every web service connected to the federation will handle logout requests correctly—and so cannot guarantee that the user actually is logged out.

WAYF recommends users to close their browsers upon logging out.

SP issued SAML2 authentication scoping elements, via WAYF, now working with ADFSv2

Some services have experienced problems with ADFSv2 when using SAML2 authentication request scoping elements (IdP choice at the SP side).

ADFSv2 does not support SAML2 scoping.

WAYF has changed the handling of SAML2 scoping elements so that they are no longer conveyed to the IdP side, even though an authentication request is issued.

This behaviour is not in accordance with the SAML2 specifiation but is seen as a necessary 'tweak' to allow ADFSv2 IdPs to function properly.

As soon as ADFSv2 supports SAML2 scoping elements, WAYF will return to the behaviour described in the specification.

Improvement of 'Select your identity provider'

The icon for the service you want to log in to is now presented.

There must be no doubts whether you are still in the process of logging into the selected service or not. This could well be the case earlier since the 'select your identity provider' list did not show it clearly enough with an icon. It does now.

WAYF nominated for the European Identity Award

WAYF has been nominated for the European Identity Award 2012.

WAYF featured in today's Version2

Read the article on WAYF in today's Version2 (a news site for Danish IT professionals): Meet WAYF: The IT Success that was Allowed to Fail Big Time (in Danish language).

WAYF's fact sheets now available as PDF

WAYF has, in the course of time, published a number of fact sheets, in print. These are now available in a machine-readable form (PDF) as well, here.

WAYF launches new proxy infrastructure for IdPs

Institutions (IdPs) connected to WAYF can now be contacted directly (via SAML2), as a new infrastructure component, BIRK (Bridged Interface for Remotely Keyed IdPs), is now available. BIRK is described at What is BIRK?.

A service may now list relevant IdPs locally, thereby avoiding user redirects to the long IdP list at WAYF.

New WAYF attribute: Countries of Citizenship

A new attribute specifying an identity's countries of citizenship was added to WAYF's inventory of attributes on the 14th of November 2011.

WAYF Secretariat
2 H.C. Andersens Boulevard
DK-1553 Copenhagen V
Denmark

www.wayf.dk
sekretariat@wayf.dk

line
You are here: