- Users access multiple applications and services with a single sign-in.
- Authentication always occurs on the user's home server, granting access to service providers upon successful authentication.
- Application administrators do not store user authentication data or perform authentication processes.
Basic features
The Czech academic identity federation eduID.cz facilitates collaboration among members who utilize user identity information to streamline access to network services. Each member organization can act as an Identity Provider (IdP), managing user credentials and sharing necessary data with Service Providers (SPs), or as a Service Provider (SP), offering web applications or network services and utilizing user identity information for access management.
Key features include:
- Single sign-on access to multiple applications and services across partner entities.
- Application administrators do not store user authentication data or perform authentication.
- User authentication occurs exclusively at the home server, ensuring sensitive data remains within the home network.
- The federation infrastructure provides secure and standardized methods for exchanging user data.
- Access to international services via the eduGAIN interfederation is facilitated through eduID.cz.
To join the service, participants must appoint an administrative contact, authenticate their entity, and launch their own IdP and/or SP. They then upload metadata to the eduID.cz identity federation following guidelines provided.
The services provided by CESNET are available to organizations that meet the Terms and conditions for the access to the CESNET e-infrastructure. Organizations that fail to comply with the Terms may only be connected to the federation as service providers.
The service is available to the general public free of charge.