|Title||Fresh Approaches to IdP Discovery|
REFEDS has long appreciated the importance of IdP discovery in the federated model (see: REFEDS Discovery Guide). The current discovery model is dependent upon an aggregate of IdP metadata but advances in the distribution of per-entity metadata suggest that an aggregate may not always be available at the SP. A new model of IdP discovery in a world of per-entity metadata may be needed. Various approaches are possible:
The latter includes the OpenID account chooser but its relevance in this space is not well understood.
The goal of this working group is to evaluate the various alternatives to IdP discovery and to recommend one or more approaches that warrant further consideration.
|Proposer||Scott Cantor and Tom Scavo|
|Resource requirements||Note the overlap between this proposal and the proposal entitled "Federation at scale" above|
|Title||Best practices for Hub-and-Spoke federation|
Hub-and-Spoke federations operate a centralized authentication component as part of their Identity Federation. In Reseach and Education about 10 federations are currently running such a setup.
This activity gathers best practices form those running such federations. Possible topics may include:
|Proposer||Niels van Dijk|
|Resource requirements||Several conference calls, a wiki space, pehaps one or two f2f discussion meetings at existing venues|
|+1's||<for others to voice their support - add your name here>|