• AAI

    All SWITCHaai related projects

    • Group Management Tool

      The Group Management Tool (GMT) is an easy to install PHP web application that can be used to create and manage groups of Shibboleth users with custom roles in order to use them for access control and authorization.

      Subversion access:

    • ID-WSF ECP Web Service Client

      Web Service Client (WSC) implementing the Liberty ID-WSF Enhanced Client or Proxy (ECP) SSO Profile. You can integrate this WSC into a Shibboleth enabled portal and implement SAML delegation.

      Please see the documentation on the Wiki page.

    • Java IdP Kerberos Login Handler

      Kerberos Login Handler for the Shibboleth Identity Provider 2

    • SAML Tools

      Set of various scripts and small tools to work with SAML metadata or other AAI related data.
      Have a look at the Wiki for a brief description of the tools or check out the Subversion repository with:...

    • Shibboleth IdP V3 Kerberos Authentication Flow

      The Kerberos Authentication Flow for the Shibboleth Identity Provider version 3 will allow users to authenticate via the SPNEGO authentication protocol using their existing Kerberos login.

      The "Kerberos Authentication Flow" will be the successor of the Kerberos Login Handler for the IdP version 2....

    • SWITCHwayf

      The SWITCH WAYF is a PHP implementation of the Shibboleth WAYF and SAML Discovery Service protocol.

      Public GIT Repository

      To get the latest code from HEAD, run:

      git clone
    • uApprove

      uApprove is an extension for the Shibboleth Identity Provider 2.x that asks the user for his consent before information (attributes) is released about him when he connects to a federated service. Note that the Shibboleth Identity Provider 3.x includes user consent, therefore uApprove won't be needed anymore for that version....

    • X.509 Login Handler

      This is the project page of the Shibboleth authentication handler for X.509 user certificates. Using this authentication handler users can be authenticated in Shibboleth with user certificates. Download the latest release in the Files section....

  • AAI gem for Rails

    Develop a gem (or an extension to a existing gem) that can be added to any Ruby/Rails project and handles all things Authentication and Authorization using the AAI/Shibboleth mechano

  • SWITCHtoolbox

    This project on SWITCHforge is intended to give feedback and to provide support on the Virtual Organization pilot phase. Please go to "Issues" if you need assistance or if you want to add a feature request or suggestion.

    • Core

      The Virtual Organization Platform Core is one of the main components used in the SWITCHtoolbox. It is the engine that manages the memberships in groups and the subscriptions of tools. Core provides a REST/JSON interface that allows the web interface and tools to access the data stored in Core....

  • LLL-transfer

    Lifelong Learning Transfer: State of the Art and Future Scenarios


    The main aim of the project is

    • to create guidelines for anchoring lifelong learning in university strategy and
    • to elaborate future scenarios
    • to raise awareness and promoting Lifelong Learning at Swiss Higher Education Institutions...
  • Security Token Service

    The Security Token Service (STS) is a partial implementation of the OASIS WS-Trust specification.

    It is a SOAP service that provides a secure means for exchanging security tokens of one type (e.g. username/password, SAML assertion, X.509 certificate, ...) for security tokens of another type. Additionally the STS may renew, validate, or cancel those tokens for which such functionality is appropriate....

  • Swiss edu-ID (Public)

    The Swiss edu-ID is a persistent virtual identity SWITCH is developing for use by Swiss Higher Education institutions. It is designed to be secure and recognised worldwide.

Also available in: Atom