Introduction

This guide describes how to publish SAML metadata in Federation för kommunal verksamhet (Fedkom).

This guide is for Swedish municipalities. If you represent a non-municipal organization and want access to Klassa, please use this guide instead: Technical Metadata Connection Guide (Klassa)


Choose the section that matches the entity you want to upload:

Prerequisites

The organization must have signed the Fedkom membership agreement.

Only entities correctly processed according to this guide are included in the Fedkom metadata feed.

Mandatory Entity Attribute 

To be included in the Fedkom metadata feed, an entity attribute must be included in metadata. For information about the entity attribute, see the Fedkom federation policy.

Metadata validator

A metadata validator for Fedkom is available here: https://validator.openfed.se/fedkom. Use it to check that your SAML metadata conforms to the technical profile and federation policy before submitting or publishing it.

opt-in via Skolfederation or Sambi

Note that metadata opting-in via Skolfederation or Sambi need to follow the Fedkom/Klassa technical profile and policy to be accepted. If you intend to opt-in via one of these federations, please use the validator above as well.

Metadata example

Example metadata for SAML 2.0 Identity Provider and Service Provider are available at the link below.

https://md.openfed.se/metadata-example/

The metadata are conformant to SAML 2.0 WebSSO Technology Profile and the examples show what elements in metadata relate to which requirement from the technology profile.

You want to upload an Identity Provider (IdP)

Edit your metadata

  • Edit your metadata locally.

  • Validate your metadata with the metadata validator and correct your metadata if any errors are present.
  • If it's a new IdP, ensure the entityID is unique.

Choose your publication path

A. Not a member of Skolfederation/Sambi

No access to Federationsadmin.

Action

If compliant, the IdP is published in the FedKom metadata feed.

B. Member of Skolfederation/Sambi – manual submission

Use this path if:

  • You choose not to publish via Federationsadmin, or

  • The IdP does not belong within the scope of Skolfederation or Sambi.

Action

If compliant, the IdP is published in the FedKom metadata feed.

C. Member of Skolfederation/Sambi – Via Federationsadmin

Use this path only if the IdP belongs within the scope of Skolfederation or Sambi. If the IdP is not intended to be used to represent users in Skolfederation or Sambi as well, it is NOT permitted to upload it via Federationsadmin.

Action

  1. Edit the metadata locally.

  2. Add the mandatory FedKom entity attribute (see below).

  3. Validate your metadata with the metadata validator and correct your metadata if any errors are present.
  4. Log in to Federationsadmin.

  5. Upload the updated metadata.

Publication flow

Federationsadmin → Skolfederation/Sambi → FedKom metadata feed.

Only correctly marked IdPs are included.

You want to upload a Service Provider (SP)

Service Providers (Relying Parties) are published via manual submission only.

Federationsadmin cannot be used to include SPs in FedKom.

Step 1 – Edit your metadata

  • Edit your SP metadata locally.

  • Ensure it complies with the Internetstiftelsen SAML WebSSO Technical Profile.

  • Validate your metadata with the metadata validator and correct your metadata if any errors are present.
  • If it's a new SP, ensure the entityID is unique.

Step 2 – Submit metadata

Action

If compliant, the SP is published in the FedKom metadata feed.

Manual submission instructions

Validate your metadata with the metadata validator and correct your metadata if any errors are present.

Send an email to:

info@svenskafederationer.se

Include:

  • The complete SAML 2.0 metadata XML (attached file)

  • Organization name

  • Contact name

  • Contact email

If the metadata is valid, the federation operator will contact the organization’s Technical Contact to validate the file checksum by phone. After successful validation, the entity is published in the FedKom metadata feed.

  • No labels