Connecting to the SIFULAN Malaysian Access Federation
For Identity Providers:
- Join SIFULAN Federation as Identity Provider
- Connecting as an Identity Provider (IdP)
- Register IdP Metadata
For Service Providers:
- Join SIFULAN Federation as Service Provider
- Connecting as a Service Provider (SP)
- Register SP Metadata
Connecting as an Identity Provider (IdP):
Identity Provider Requirements:
- Member of SIFULAN Access Federation (registration form: https://sifulan.my/identity-provider-registration-form/)
- Single Sign-On system/SAML IdP such as Shibboleth IdP or SimpleSAMLphp and Directory Service such as LDAP, AD, etc.
- Provide, at minimum, the following attributes:
- displayName (urn:oid:2.16.840.1.113730.3.1.241)
- givenName (urn:oid:2.5.4.42)
- sn (urn:oid:2.5.4.4)
- mail (urn:oid:0.9.2342.19200300.100.1.3)
- eduPersonPrincipalName (urn:oid:1.3.6.1.4.1.5923.1.1.1.6)
- eduPersonScopedAffiliation (urn:oid:1.3.6.1.4.1.5923.1.1.1.9)
- eduPersonTargetedID/persistentID (urn:oid:1.3.6.1.4.1.5923.1.1.1.10)
Adding IdP metadata to the Federation metadata:
Please follow the tutorial at the following link to register your IdP metadata.
Note: Your identity provider will become active within the SIFULAN Malaysian Access Federation 24 hours after approval.
Local IdP configuration:
Production Federation Metadata: https://sifulan.my/metadata/metadata.xml
Test Federation Metadata: https://sifulan.my/metadata/test-metadata.xml
eduGAIN export Metadata: https://sifulan.my/metadata/edugain-export-metadata.xml
Metadata Signing Certificate: https://sifulan.my/metadata/sifulan-signer.pem
Connecting as a Service Provider (SP):
Service Provider Requirements:
- Member of SIFULAN Malaysian Access Federation (registration form: https://sifulan.my/service-provider-registration-form/)
- The Service Provider metadata's will need to be added to production Federation metadata.
- Currently, only Shibboleth SP and SimpleSAMLphp are supported by the Federation.
Adding SP metadata to the Federation metadata:
Please follow the tutorial at the following link to register your SP metadata.
Note: Your service provider will become active within the SIFULAN Malaysian Access Federation 24 hours after approval.
Local Shibboleth SP configuration:
Production Federation Metadata: https://sifulan.my/metadata/metadata.xml
Test Federation Metadata: https://sifulan.my/metadata/test-metadata.xml
eduGAIN export Metadata: https://sifulan.my/metadata/edugain-export-metadata.xml
Metadata Signing Certificate: https://sifulan.my/metadata/sifulan-signer.pem
Federation Discovery Service: https://sifulan.my/DS/WAYF
Test Federation Discovery Service: https://sifulan.my/DS2/WAYF
Note: Your service provider will become active within the SIFULAN Malaysian Access Federation 24 hours after approval.