UTM identity federation — Microsoft Entra ID tenant (SAML 2.0 / OpenID Connect)
UTM's institutional identity provider. The tenant (9c827912-3502-4333-ba47-1b242c3d20e6) is bound to UTM by domain ownership — realm discovery on user@utm.my returns FederationBrandName "Universiti Teknologi Malaysia" and NameSpaceType "Managed" — and publishes signed SAML 2.0 metadata under entityID https://sts.windows.net/9c827912-3502-4333-ba47-1b242c3d20e6/ with an IDPSSODescriptor, HTTP-Redirect and HTTP-POST SSO bindings, an SLO binding and WS-Federation RoleDescriptors, alongside a full OpenID Connect discovery document. The metadata host is Microsoft's and shared with every Entra customer, which is what federation metadata is; the directory it describes is UTM's. No registration_endpoint is published, so the authorization server is readable by anyone and callable only by clients UTM provisions. UTM does not appear in the eduGAIN entity export, and SIFULAN, the Malaysian Access Federation, returned 403 to every probe, so no claim is made about SIFULAN membership.