How to Submit a Request for Federation Membership as a GFIPM Identity Provider

From GFIPM Implementation Wiki
Jump to: navigation, search
Main Page Up Previous Next


This article serves as a supplemental aid to the membership application process by listing the membership documents that should be collected or generated during the IDP implementation process. The authoritative document for the process of submitting a membership request in NIEF is the Operational Policies and Procedures Document [GFIPM OPP].

The membership process is defined in [GFIPM OPP]. The process has the following four phases:

  1. Request-to-join process
  2. Application process
  3. On-boarding process
  4. Ongoing membership

During the IDP implementation process, you should either collect or produce the following membership documents:

Authority-to-Operate (ATO) Document A document that attests to the organization's authority to operate as an identity provider and provide access to the federation for the organization's users. It typically takes the form of a signed memorandum or letter from the organization's executive officer to the federation manager.
   
Local Security Policy Document A document that describes the security policy currently in place within your organization. This document should already exist within your organization.
   
Local User Agreement Document A document that describes the terms and conditions to which your users must agree as a prerequisite for using a digital identity issued by your organization. This document should already exist within your organization.
   
Local User Vetting Policies and Procedures Document A document that describes the user-vetting policies and procedures that are currently in place within your organization. This document should already exist within your organization.
   
Local Attribute Mapping Form for IDP A document that describes how the organization plans to map its local policies and locally stored user attributes into attributes conforming to the GFIPM Metadata standard [GFIPM Metadata].
   
Implementation Documentation Form for IDP A document that describes how your local federation-aware infrastructure is implemented.

Other documents are required for the membership application process, but they are outside the scope of this article. For more detailed documentation about the membership application and technical onboarding process for a GFIPM federation, please see the GFIPM Operational Policies and Procedures Guideline [GFIPM OPP].


Main Page Up Previous Next