Sorbonne University Identity Provider (SAML 2.0)
Sorbonne University's federated login, published as a signed SAML 2.0 EntityDescriptor at https://auth.id.sorbonne-universite.fr/saml/metadata (HTTP 200, application/xml, 11,704 bytes). Declares HTTP-Redirect, HTTP-POST and HTTP-Artifact single sign-on bindings, SOAP/Redirect/POST single logout, six NameID formats including Kerberos and transient, a signing key descriptor, and a shibmd:Scope of sorbonne-universite.fr. The entity is registered in the RENATER federation (registration authority https://federation.renater.fr/, registered 2021-10-07), carries the REFEDS Research & Scholarship entity category and a REFEDS SIRTFI assurance certification, and interfederates into eduGAIN. This is institution-operated, and the operator verdict was settled by address space rather than hostname: the host CNAMEs to llng.sorbonne-universite.fr and resolves to 134.157.54.171 inside FR-UPMC-NET (RIPE, "4 Place Jussieu, 75252 Paris CEDEX 05"), announced from AS1307 and AS2200, behind an organization-validated GEANT TCS certificate issued to O=SORBONNE UNIVERSITE, running self-hosted LemonLDAP::NG. It is the only institution-operated machine-readable contract in this profile.