Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

AttributeDescription
urn:oid:2.5.4.10Organization name
dk:gov:saml:attribute:CprNumberIdentifierRequired from SEB. Civil registration number (CPR)
dk:gov:saml:attribute:CvrNumberIdentifierCVR number
dk:gov:saml:attribute:RidNumberIdentifierRID number from certificate
dk:gov:saml:attribute:AssuranceLevelAssuranceLevel (must be 4)
urn:oid:2.5.4.3Required from SEB. Common name (full name)
urn:liberty:disco:2006-08:DiscoveryEPRIDCard
dk:healthcare:saml:attribute:HasUserAuthorizationA boolean saying if the user has any healthcare authorizations
dk:healthcare:saml:attribute:UserAuthorizationsA list of the users healthcare authorizations
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/upnRequired from SEB. The globally unique ID of the user
dk:gov:saml:attribute:Privileges_intermediateRequired from SEB. A base64-encoded XML structure in OIO BPP format, listing privileges. If an employee should have any permissions, this attribute should define one or more roles in scope of an organizational unit or careteam, e.g. a SOR number, STS Organisation or careteam reference. See general structure in documentation[1].

[1] https://digst.dk/media/19020/oiosaml-basic-privilege-profile-1_1.pdf

dk:healthcare:ehealth:saml:attribute:scopingOIOBPPContextOptional. Can be used to limit scopes expressed in the OIO BPP structure, by adding it as a constraint in each PriviledgeGroup. Only PriviledgeGroups with the constraint matching the value of scopingOIOBPPContext will be available for the user. The use of scopingOIOBPPContext is not yet used and will be ignored.

...