Knowledge Base/AAF Home

Three versions of the AAF Metadata available

Damien Mannix
posted this on November 23, 2010 08:51

                Three versions of the AAF Metadata for the production and test federations are now being extracted from the Federation Registry and signed ready for use by IdP and SP.
 
                All are downloadable from https://manager.aaf.edu.au/metadata/[document] and https://manager.test.aaf.edu.au/metadata/[document] for the production and test federations respectively. e.g https://manager.aaf.edu.au/metadata/metadata.aaf.signed.complete.xml
 
 
                1. Default metadata – [metadata.aaf.signed.xml] provide minimal details required to operate the federation – suitable for all IdPs and SPs (Shib 1.3.x and 2.x). No change required to existing IdPs and SPs to use this version
 
                2. Complete metadata  - [metadata.aaf.signed.complete.xml] provides the complete metadata generated for the federation. This is only suitable for Shibboleth 2.x. It will not work with earlier Shibboleth 1.3.x version.  It is recommended all new deployments and existing Shibboleth 2.x deployments move to this version. For existing deployments this will require a minor change to configuration.
 
                3.  Metadata for MAMS Autograph / ShARPE – [metadata.aaf.signed.noext.xml] is minimal metadata that is known to work with IdPs that use the MAMS Autograph and / or ShARPE tools.
 
                All three metadata files as signed with the same key and can thus be verified using the certificate available at https://manager.aaf.edu.au/metadata/metadata-cert.pem for production or https://manager.test.aaf.edu.au/metadata/metadata-cert.pem for test.
 
                The metadata site itself is protected with an AUSCert certificate.