Testing

Validating your SAML2 metadata for SAFIRE

Validating your SAML2 metadata for SAFIRE

SAFIRE publishes detailed technical requirements for metadata (detailed here: idp; sp). When on-boarding a new provider or making changes, it is helpful to be able to check your metadata against these requirements before sending them to the Federation Operator. The metadata validator allows you to do this, and provides useful insight into issues that might prevent your metadata from being imported into SAFIRE’s registry.

Testing your IdP or SP

Testing an Identity Provider

The most obvious way to test an Identity Provider is to make use of SAFIRE’s Test Service Provider (https://testsp.safire.ac.za/). This SP is always aware of SAFIRE’s full attribute set and emulates a locally connected SP. By logging in, Identity Provider administrators are able to test their integration with SAFIRE as well as their own attribute release. (Likewise, end users can use it to see what attributes their home institution releases about them.)