Use SAML 2.0 for single sign-on


The UW Shibboleth Identity Provider (IdP) supports SAML 2.0 for single sign-on (SSO) with UW NetID. This page describes how to register and configure SAML service provider software to rely on the UW IdP using SAML 2.0. For similar assistance with UW Entra ID, see Entra ID Application Integration Guide - IT Connect (uw.edu).
Want some help? Need help using SAML for SSO with the UW Shibboleth IdP or UW Entra ID? Have a question about registering your SAML service provider? Contact us for help. Additional instructions are available for customers using Shibboleth Service Provider software, as well as guidance for integrating SaaS (software as a service) and other vendor software.

Identity provider entityID and metadata

"urn:mace:incommon:washington.edu" is the entityID for the UW Shibboleth Identity Provider (IdP). We provide several ways to download and refresh our IdP metadata.

Metadata consumption

Metadata refresh

If you consume our local UW Shibboleth IdP metadata, InCommon federation metadata, or InCommon per-entity metadata, we recommend you refresh and verify the metadata at least daily. Doing so can help prevent service disruptions due to key rollovers and other changes to our IdP metadata.

Service provider registration

Attribute release

SAML authentication

Logout

Other operational practices