Versions Compared


  • This line was added.
  • This line was removed.
  • Formatting was changed.


FriendlyName: refedsUserID

An User Identifier is a persistent, non-reassigned identifier.

An Identity Provider (or Attribute Authority) is said to release a User Identifier when it releases at least one of the following attributes on the wire:


  1. eduPersonUniqueId

  2. eduPersonPrincipalName (if non-reassigned)eduPersonPrincipalName + eduPersonTargetedID

A Service Provider is said to request a Non-Private User Identifier when it requests the eduPersonUniqueId attribute in metadata or a query. Alternatively, a Service Provider may request a Non-Private User Identifier directly, as shown in the following example.