University of Twente SAML 2.0 Identity Provider (SURFconext)

The university's own SAML 2.0 identity provider, entityID https://sts.windows.net/723246a1-c3f5-43c5-acdc-43adb404ac4d/, running on a Microsoft Entra ID tenant in the EU region and registered in SURFconext, the Dutch national research and education federation and an eduGAIN participant. The SURFconext IdP aggregate carries its EntityDescriptor with mdui:DisplayName "University of Twente" and the Shibboleth metadata extension shibmd:Scope regexp="false" utwente.nl, which is the federation asserting this IdP is authoritative for the utwente.nl scope. The tenant publishes its own SAML metadata and an OpenID Connect discovery document, both unauthenticated. A federation is shared by definition; the IdP behind it is the institution's, and this is the surface every gated UT service sits behind. The same tenant GUID appears independently in the canvas.utwente.nl login redirect and in the ctid of the Power BI report embedded on the university's own open-data page.

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/saml-idp-surfconext"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

API entry from apis.yml

apis.yml Raw ↑
aid: university-of-twente:saml-idp-surfconext
name: University of Twente SAML 2.0 Identity Provider (SURFconext)
x-operator: federation
description: The university's own SAML 2.0 identity provider, entityID https://sts.windows.net/723246a1-c3f5-43c5-acdc-43adb404ac4d/,
  running on a Microsoft Entra ID tenant in the EU region and registered in SURFconext, the Dutch national
  research and education federation and an eduGAIN participant. The SURFconext IdP aggregate carries its
  EntityDescriptor with mdui:DisplayName "University of Twente" and the Shibboleth metadata extension
  shibmd:Scope regexp="false" utwente.nl, which is the federation asserting this IdP is authoritative
  for the utwente.nl scope. The tenant publishes its own SAML metadata and an OpenID Connect discovery
  document, both unauthenticated. A federation is shared by definition; the IdP behind it is the institution's,
  and this is the surface every gated UT service sits behind. The same tenant GUID appears independently
  in the canvas.utwente.nl login redirect and in the ctid of the Power BI report embedded on the university's
  own open-data page.
humanURL: https://metadata.surfconext.nl/idps-metadata.xml
baseURL: https://sts.windows.net/723246a1-c3f5-43c5-acdc-43adb404ac4d/
tags:
- Identity
- Federation
- SAML
- Shibboleth
- SURFconext
- eduGAIN
- SSO
properties:
- type: IdentityFederation
  url: https://metadata.surfconext.nl/idps-metadata.xml
- type: Metadata
  url: https://login.microsoftonline.com/723246a1-c3f5-43c5-acdc-43adb404ac4d/federationmetadata/2007-06/federationmetadata.xml
- type: OpenIDConnectDiscovery
  url: https://login.microsoftonline.com/723246a1-c3f5-43c5-acdc-43adb404ac4d/v2.0/.well-known/openid-configuration
- type: Conformance
  url: conformance/university-of-twente-conformance.yml