King's UK Access Management Federation / eduGAIN Identity Provider

King's federated identity, and the surface class this pipeline flags as most often missed. The entity is registered in the UK Access Management Federation (uk001282, registered 2010-04-22, registration authority ukfederation.org.uk) and exported to eduGAIN, carrying a shibmd:Scope of kcl.ac.uk, signing and encryption keys, SAML 2.0 / SAML 1.1 / urn:mace:shibboleth:1.0 protocol support, a SIRTFI assurance certification, REFEDS Research and Scholarship entity-category support, a security contact at sirtfi@kcl.ac.uk and a technical contact at ade.tayo@kcl.ac.uk. It is not self-service and it is not REST, but it is a published, signed, machine-readable interface contract that King's is accountable for. A second registered entity, https://kclidpdev.kcl.ac.uk/idp/shibboleth, carries the hide-from-discovery category and is a development deployment — not counted as a surface.

API entry from apis.yml

apis.yml Raw ↑
aid: kings-college-london:uk-federation-idp
name: King's UK Access Management Federation / eduGAIN Identity Provider
x-operator: tenant
x-operator-evidence: The entityID https://kclidp.kcl.ac.uk/idp/shibboleth is under kcl.ac.uk and the host
  resolves to 193.61.202.17, but it answers no HTTP request — the entityID is a name, not a service. The
  metadata's own comment reads "This is a OpenAthens IdP for King's College London", and both SingleSignOnService
  Locations are https://login.openathens.net/saml/{1,2}/sso/kcl.ac.uk/c/ukfed. An institution-specific
  path on a vendor platform is the textbook tenant shape. The registration, the scope, the assurance certifications
  and the contacts are King's own.
description: King's federated identity, and the surface class this pipeline flags as most often missed.
  The entity is registered in the UK Access Management Federation (uk001282, registered 2010-04-22, registration
  authority ukfederation.org.uk) and exported to eduGAIN, carrying a shibmd:Scope of kcl.ac.uk, signing
  and encryption keys, SAML 2.0 / SAML 1.1 / urn:mace:shibboleth:1.0 protocol support, a SIRTFI assurance
  certification, REFEDS Research and Scholarship entity-category support, a security contact at sirtfi@kcl.ac.uk
  and a technical contact at ade.tayo@kcl.ac.uk. It is not self-service and it is not REST, but it is
  a published, signed, machine-readable interface contract that King's is accountable for. A second registered
  entity, https://kclidpdev.kcl.ac.uk/idp/shibboleth, carries the hide-from-discovery category and is
  a development deployment — not counted as a surface.
humanURL: https://libanswers.kcl.ac.uk/faq/226697
baseURL: https://login.openathens.net/saml/2/sso/kcl.ac.uk/c/ukfed
tags:
- Identity
- Identity Federation
- SSO
- SAML
- eduGAIN
properties:
- type: x-saml-metadata
  url: https://met.refeds.org/met/entity/https%3A%2F%2Fkclidp.kcl.ac.uk%2Fidp%2Fshibboleth/
- type: Documentation
  url: https://www.ukfederation.org.uk/
- type: Authentication
  url: authentication/kings-college-london-authentication.yml
- type: Conformance
  url: conformance/kings-college-london-education-standards.yml