Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Excerpt

The SAML proxy is responsible for substituting and translating between the KOMBIT Context Handler and the eHealth Keycloak authorization server.

The service is an eHealth service and is responsible for:

  • Map SAML Attributes from the municipal KOMBIT Context Handler

. Furthermore, it enriches
  • Consolidate privileges

  • Enrich SAML Attributes with e.g.

employees
  • , the employee's CPR number based on a lookup to the KOMBIT FK Organisation system.

Content

Table of Contents
minLevel1
maxLevel7

...

SAML Proxy mapper følgende constraints fra KOMBIT format til det format, der benyttes i eHealth-infrastrukturens OIO BPP SAML-attributter.

KOMBIT format

eHealth-infrastrukturens OIO BPP SAML-attributnavn

/constraints/careteam/1

urn:dk:sundhed:ehealth:careteam

/constraints/orgUnit/1

urn:dk:kombit:orgUnit

/constraints/orgenhed/1

urn:dk:kombit:orgUnit

/constraints/sorIdentifier/1

urn:dk:gov:saml:sorIdentifier

/constraints/sslOrg/1

urn:dk:kombit:sslOrg

SAML Proxy mapper KOMBIT-udgaverne af brugersystemroller for eHealth-infrastrukturen nævnt i KOMBIT brugersystemroller for eHealth-infrastrukturen https://ehealth-dk.atlassian.net/wiki/spaces/EDTW/pages/2211577858/Federated+Authentication+and+Authorization+for+Municipal+Users#KOMBIT-flavored-user-system-roles-for-the-eHealth-Infrastructure , så en Constraint med navn:

Mapningen understøtter følgende namespaces:

...