...
Friendly name | Attribute name | S/M | Definition | Data type | Example | ||||||
---|---|---|---|---|---|---|---|---|---|---|---|
| (NameID) |
| UTF8 string | bd09168cf0c2e675b2def0ade6f50b7d4bb4aae | |||||||
| UTF8 string | Vermeegen | |||||||||
| UTF8 string | Mërgim Lukáš | |||||||||
| UTF8 String | Prof.dr. Mërgim Lukáš Vermeegen | |||||||||
urn:mace:dir:attribute-def:displayName |
| UTF8 String | Prof.dr. Mërgim L. Vermeegen | ||||||||
urn:mace:dir:attribute-def:mail |
| RFC-5322 address | m.l.vermeegen@university.example.org | ||||||||
urn:mace:terena.org:attribute-def:schacHomeOrganization |
| RFC-1035 domain string | university.example.org | ||||||||
urn:mace:terena.org:attribute-def:schacHomeOrganizationType |
| RFC-2141 URN | urn:mace:terena.org:schac:homeOrganizationType:int:university | ||||||||
urn:mace:dir:attribute-def:eduPersonAffiliation |
| Enum type (UTF8 String) | faculty, student, staff, (alum, member, affiliate, employee, library-walk-in) | ||||||||
urn:mace:dir:attribute-def:eduPersonEntitlement |
| RFC-2141 URN | to be determined per service (see Standardized values for eduPersonEntitlement) | ||||||||
urn:mace:dir:attribute-def:eduPersonPrincipalName |
| UTF8 String | not.a@vålîd.émail.addreß | ||||||||
urn:mace:dir:attribute-def:isMemberOf |
| RFC-2141 URN | urn:collab:org:surf.nl | ||||||||
urn:mace:dir:attribute-def:uid |
| UTF8 String | s9603145 | ||||||||
urn:mace:dir:attribute-def:preferredLanguage |
| List of BCP47 language tags | nl | ||||||||
eduPersonTargetedID | urn:mace:dir:attribute-def:eduPersonTargetedID |
| UTF8 string | 24d66f51ac1c0b140e617af335b9abb4b8d88a5b |
Note that not all identity providers might make all attributes available.
...
urn:mace | |
urn:oid | |
Multiplicity | multi-valued |
Description | The unique code for a person that is used as the login name within the institution. |
Notes |
|
...
urn:mace | |
urn:oid | |
Multiplicity | single-valued |
Description | a two-letter abbreviation for the preferred language according to the ISO 639 language abbreviation code table; no subcodes. |
Notes | Used to indicate an individual's preferred written or spoken language. This is useful for international correspondence or human-computer interaction. Values for this attribute type MUST conform to the definition of the Accept-Language header field defined in RFC 2068 with one exception: ?the value " |
EduPersonTargetedID
Multiplicity | single-valued |
Description | The attribute eduPersonTargetedID is a copy of the Subject -> NameID which is generated by SURFconext itself. When an Identity Provider provides the eduPersonTargetedID itself, it is always overwritten by SURFconext. |
Notes | This attribute is created because the Subject -> NameID itself is not part of the SAML v2.0 response and therefore can not be used. Within SURFconext the Subject -> NameID is explicitly placed in the attribute eduPersonTargetedID, so that you can use it. |