As mentioned in the other pages, ProxyIdP currently supports connecting services via two protocols. This page contains common practices and tips on how to implement authentication using one of these protocols.
SAML
SAML metadata endpoint: https://login.cesnete-infra.cz/proxy/saml2/idp/metadata.php
EINFRA AAI EntityID: https://login.cesnete-infra.cz/idp/
Available Attributes and scopes
...
Info |
---|
On the wiki page of Czech academic identity federation eduID.cz are available guides on how to implement the service provider via protocol Shibboleth SP v3 and simpleSAMLphp. (Available only in the Czech language) |
OIDC
OpenID Connect metadata endpoint: https://login.cesnete-infra.cz/oidc/.well-known/openid-configuration
Issuer: https://login.cesnete-infra.cz/oidc/
Authorization endpoint: https://login.cesnete-infra.cz/oidc/authorize
Token endpoint: https://login.cesnete-infra.cz/oidc/token
Userinfo endpoint: https://login.cesnete-infra.cz/oidc/authorizeuserinfo
Available Attributes and scopes
...
For manual on how to connect your service to the AAI, visit: registration service provider into EINFRA AAI .