Information for InCommon Site Administrators

The Administrative Contact is responsible for submitting all metadata, certificate signing requests, and Participant Operating Practices (POP) URLs to the InCommon Federation. For new Administrative Contacts, a phone call is necessary for the federation to do identity proofing and set up access to the administrative interface.

Number of Site Admins

Each organization designates up to two (2) site administrators. Requests to add/change site admins must come from your organization's InCommon executive.

Administrative Interface Login

The login address is: https://service1.internet2.edu/siteadmin/manage/

Password Reset

If you have forgotten your password, please send email to admin AT incommon DOT org.

InCommon Participant Operating Practices (POP)

Each participant's POP (Participant Operating Practices) outlines its Identity Management and/or Service system(s). Service Providers will use the POP to determine their level of trust for assertions from each participant. Identity Providers will evaluate each Service's privacy policies and attribute collection and use policies.

The POP is available in three formats: HTML, Word, and PDF.

Participant POP statements must be publicly posted on a website. The URLs for participant POPs are available to all Administrators via the secure administrative interface. Federation participants must provide InCommon with a link to their POP.

Metadata Submission

InCommon signs metadata every weekday afternoon (M-F) at 2:30 p.m. (Eastern time), except for certain holidays and other occasions.

For information on metadata submission, and the metadata required of both identity management systems (Identity Provider) and online resources (Service Provider), please see the metadata page.

Certificates

InCommon accepts self-signed certificates. You can view this wiki page for more information on self-signed certs.

Shibboleth Recommendation - New Deploys

InCommon strongly recommends that all new participants planning to use Shibboleth Federated Single Sign-on Software install and deploy the latest version of the software. The Shibboleth project wiki provides installation and configuration documentation. Support comes through the Shibboleth users email list (users AT shibboleth DOT net), although it is recommended to search the list archives to see if your question has been previously answered. Subscribe to the list by sending email to users-subscribe AT shibboleth DOT net.

Shibboleth Support page

Getting Help

Commonly sought information from the InCommon web:

The InCommon Collaboration wiki provides an extensive technical guide, recommended practices, and space for InCommon collaboration groups.

 

InCommon Affiliates provide software, content, guidance, support, and implementation and integration services related to participating in the federation.

 

InCommon is a community-driven service. The InCommon Participants email list (participants AT incommon DOT org) provides a place to pick the brains of your fellow participants.