...
SURFconext supports two atttributes schemas: the urn:oid
schema and the urn:mace
schema. Both of these can be used to convey the same information (except for the NameId, which is only available in the urn:oid
schema. By default SURFconext will provide attributes in both schemata as part of the assertion. It is not recommended to mix the use of these schemata, but for legacy reason SURFconext offers both.
Attribute overview
SURFconext supported relaying of the following attributes:
Friendly name | Attribute name | S/M | Definition | Data type | Example | |
---|---|---|---|---|---|---|
ID | (NameId) |
| UTF8 string | bd09168cf0c2e675b2def0ade6f50b7d4bb4aae | ||
Surname |
| UTF8 string | Vermeegen | |||
Given name |
| UTF8 string | Mërgim Lukáš | |||
Common name |
| UTF8 String | Prof.dr. Mërgim Lukáš Vermeegen | |||
Display name | urn:mace:dir:attribute-def:displayName |
| UTF8 String | Prof.dr. Mërgim L. Vermeegen | ||
Email address | urn:mace:dir:attribute-def:mail |
| RFC-5322 address | m.l.vermeegen@university.example.org | ]]></ac:plain-text-body></ac:structured-macro> | |
Organization | urn:mace:terena.org:attribute-def:schacHomeOrganization |
| RFC-1035 domain string | university.example.org | ||
Organization Type | urn:mace:terena.org:attribute-def:schacHomeOrganizationType |
| RFC-2141 URN | urn:mace:terena.org:schac:homeOrganizationType:int:university | ||
Affiliation | urn:mace:dir:attribute-def:eduPersonAffiliation |
| Enum type (UTF8 String) | faculty, student, staff, (alum, member, affiliate, employee, library-walk-in) | ||
Entitlement | urn:mace:dir:attribute-def:eduPersonEntitlement |
| RFC-2141 URN | to be determined per service | ||
PrincipalName | urn:mace:dir:attribute-def:eduPersonPrincipalName |
| UTF8 String | not.a@vålîd.émail.addreß | ||
isMemberOf | urn:mace:dir:attribute-def:isMemberOf |
| RFC-2141 URN | urn:collab:org:surf.nl | ||
uid | urn:mace:dir:attribute-def:uid |
| UTF8 String | s9603145 | ||
preferredLanguage | urn:mace:dir:attribute-def:preferredLanguage |
| List of BCP47 language tags | nl |
...
Detailed attribute descriptions
ID
See conextdocumentation:above.
Surname
urn:mace | |
urn:oid | |
Multiplicity | single-valued |
Description | The surname of a person (including any words such as "van", "de", "von" etc.) used for personalisation; this can be a combination of existing attributes. |
Notes |
|
...
urn:mace | |
urn:oid | |
Multiplicity | single-valued |
Description | Name as displayed in applications |
Notes |
|
Email address
|
Email address
urn:mace | |
urn:oid | |
Multiplicity | multi-valued |
Description | e-mail address; syntax in accordance with RFC 5322 |
Notes |
|
...
urn:mace | |
urn:oid | |
Multiplicity | single multi-valued |
Description | The unique code for a person that is used as the login name within the institution. |
Notes |
|
...
urn:mace | |
urn:oid | |
Multiplicity | single-valued |
Description | The user's organisation using the organisation's domain name; syntax in accordance with RFC 1035. |
Notes |
|
Organization type
urn:mace | |
urn:oid | |
Multiplicity | single-value |
Description | designation of the type of organisation as defined on http://www.terena.org/registry/terena.org/schac/homeOrganizationType |
Notes |
|
...
urn:mace | |
urn:oid | |
Multiplicity | multi-valued |
Description | Lists the collaborative organisations the user is a member of. |
Notes |
|
Preferred Language
urn:mace | |
urn:oid | |
Multiplicity | single-valued |
Description | a two-letter abbreviation for the preferred language according to the ISO 639 language abbreviation code table; no subcodes. |
Notes | Used to indicate an individual's preferred written or spoken language. This is useful for international correspondence or human-computer interaction. Values for this attribute type MUST conform to the definition of the Accept-Language header field defined in RFC 2068 with one exception: ?the value " |
...