IISc Shibboleth Identity Provider (INFED / eduGAIN)
Institution-operated Shibboleth SAML 2.0 identity provider, self-published as machine-readable metadata on IISc's own host and registered in the INFLIBNET Access Management Federation (INFED), which carries it into eduGAIN. Verified live 2026-09-01 — GET https://libraryidp.iisc.ac.in/idp/shibboleth returns 200 application/xml, a 15,764-byte EntityDescriptor with entityID https://libraryidp.iisc.ac.in/idp/shibboleth, mdui:DisplayName "Indian Institute of Science, Bengaluru" and shibmd:Scope iisc.ac.in. It advertises SingleSignOnService on HTTP-POST, HTTP-POST-SimpleSign, HTTP-Redirect and the Shibboleth AuthnRequest binding, SingleLogoutService on four bindings, and SAML1/SAML2 SOAP AttributeQuery on port 8443. The Redirect/SSO endpoint returns 400 "Stale Request" to a bare GET, which is a running IdP rejecting a malformed AuthnRequest. The eduGAIN entity API returns exactly one IISc entity (id 672727, regauth http://inflibnet.ac.in, code INFED, sirtfi_status 1, first seen 2020-04-12) and it appears in the eduGAIN aggregate. A federation is shared by definition; the IdP behind it is IISc's own, and this is the strongest institution-operated machine surface the institute has.