<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <table cellspacing="0" cellpadding="0" width="100%" border="0">
      <tbody>
        <tr>
          <td class="mPadding0" style="padding-bottom: 20px;"
            valign="top" align="left">
            <table cellspacing="0" cellpadding="0" width="100%"
              border="0">
              <tbody>
                <tr>
                  <td valign="top" bgcolor="#FFFFFE" align="center">
                    <table class="mWidth100" style="width: 620px;"
                      cellspacing="0" cellpadding="0" align="center"
                      border="0">
                      <tbody>
                        <tr>
                          <td class="mHdrPadding" style="padding: 15px
                            0px;" valign="top" align="left">
                            <table cellspacing="0" cellpadding="0"
                              width="100%" border="0">
                              <tbody>
                                <tr>
                                  <td align="left">
                                    <table cellspacing="0"
                                      cellpadding="0" width="100%"
                                      border="0">
                                      <tbody>
                                        <tr>
                                          <td class="nb_title"
                                            style="font-family: Arial,
                                            Helvetica, 'Helvetica Neue',
                                            sans-serif; font-size: 19px;
                                            color: #000001; font-weight:
                                            bold; line-height: 22px;"
                                            align="left">SURFconext News
                                            SP-edition 2018 #1</td>
                                        </tr>
                                      </tbody>
                                    </table>
                                  </td>
                                </tr>
                              </tbody>
                            </table>
                          </td>
                        </tr>
                        <tr>
                          <td class="mHdrPadding" style="padding: 0px
                            0px;" valign="top" align="left">
                            <table cellspacing="0" cellpadding="0"
                              width="100%" border="0">
                              <tbody>
                                <tr>
                                  <td style="padding: 0px 0px;"
                                    valign="top" align="left"><img
                                      src="cid:part1.DA5BD264.170FD227@surfconext.nl"
                                      alt="" moz-do-not-send="false"
                                      class="" height="125" width="600"></td>
                                </tr>
                                <tr>
                                  <td style="padding: 0px 0px;
                                    line-height: 0px; font-size: 0px;"
                                    height="16" valign="top"
                                    align="left"><br>
                                  </td>
                                </tr>
                              </tbody>
                            </table>
                          </td>
                        </tr>
                      </tbody>
                    </table>
                  </td>
                </tr>
              </tbody>
            </table>
          </td>
        </tr>
      </tbody>
    </table>
    <table cellspacing="0" cellpadding="0" width="100%" border="0">
      <tbody>
        <tr>
          <td class="mFlexPadding" style="padding-bottom: 5px;"
            valign="top" align="center">
            <table class="mWidth100" style="width: 660px;"
              cellspacing="0" cellpadding="0" align="center" border="0">
              <tbody>
                <tr>
                  <td valign="top" align="left"><br>
                    <table cellspacing="0" cellpadding="0" width="100%"
                      border="0">
                      <tbody>
                        <tr>
                          <td class="mPadding0" style="padding-bottom:
                            20px;" valign="top" align="left">
                            <table cellspacing="0" cellpadding="0"
                              width="100%" border="0">
                              <tbody>
                                <tr>
                                  <td valign="top" align="left">
                                    <table cellspacing="0"
                                      cellpadding="0" width="100%"
                                      border="0">
                                      <tbody>
                                        <tr>
                                          <td class="mHide"
                                            style="width: 12px;
                                            line-height: 0px; margin:
                                            0px; font-size: 0px;"
                                            valign="top">
                                            <h2> </h2>
                                          </td>
                                          <td style="height: 12px;
                                            line-height: 0px; margin:
                                            0px; font-size: 0px;"
                                            height="12"
                                            bgcolor="#FFFFFF"> </td>
                                          <td class="mHide"
                                            style="width: 12px;
                                            line-height: 0px; margin:
                                            0px; font-size: 0px;"
                                            valign="top"> </td>
                                        </tr>
                                      </tbody>
                                    </table>
                                  </td>
                                </tr>
                                <tr>
                                  <td valign="top" bgcolor="#FFFFFF"
                                    align="center">
                                    <table class="mWidth100"
                                      style="width: 620px;"
                                      cellspacing="0" cellpadding="0"
                                      align="center" border="0">
                                      <tbody>
                                        <tr>
                                          <td class="nb_kop"
                                            style="font-family: Arial,
                                            Helvetica, 'Helvetica Neue',
                                            sans-serif; color: #1570a6;
                                            font-size: 15px;
                                            line-height: 20px;
                                            font-weight: bold; padding:
                                            4px 0px 2px;" valign="top"
                                            align="left"> </td>
                                        </tr>
                                        <tr>
                                          <td valign="top" align="left">
                                            <table cellspacing="0"
                                              cellpadding="0"
                                              width="100%" border="0">
                                              <tbody>
                                                <tr>
                                                  <td valign="top"
                                                    align="left">This
                                                    newsletter will
                                                    bring you
                                                    information
                                                    regarding new
                                                    developments, plans
                                                    for the future, tips
                                                    and tricks and will
                                                    appear on an
                                                    irregular basis.<br>
                                                    <br>
                                                    <span
                                                      style="font-weight:
                                                      bold;">Who
                                                      receives this
                                                      newsletter?</span><br>
                                                    All technical and
                                                    administrative
                                                    contacts of a
                                                    service connected to
                                                    SURFconext will
                                                    receive this
                                                    newsletter.
                                                    Subscribe <a
                                                      moz-do-not-send="true"
href="https://list.surfnet.nl/mailman/listinfo/surfconext-sp-newsletter">here</a>
                                                    and unsubscribe <a
moz-do-not-send="true"
                                                      href="https://list.surfnet.nl/mailman/options/surfconext-sp-newsletter">
                                                      here</a>.<br>
                                                    <br>
                                                    For an overview of
                                                    all mailings by the
                                                    SURFconext team, <a
moz-do-not-send="true"
                                                      href="https://wiki.surfnet.nl/pages/viewpage.action?pageId=60701393">see
                                                      the following
                                                      page.</a><br>
                                                    <br>
                                                    In this edition:<br>
                                                    <ol>
                                                      <li>Hackathon:
                                                        connect your SP
                                                        to SURFconext</li>
                                                      <li>Webinar: best
                                                        identifier for
                                                        your job!</li>
                                                      <li>SURFconext
                                                        will migrate to
                                                        SHA-265 in 2018</li>
                                                      <li>Personal data
                                                        in your
                                                        metadata?</li>
                                                      <li>SP-Dashboard
                                                        live</li>
                                                    </ol>
                                                    <h1>Hackathon:
                                                      connect your SP to
                                                      SURFconext</h1>
                                                    June 25th we
                                                    organize a
                                                    hackathon/workshop
                                                    for everyone needing
                                                    some help connecting
                                                    their service to
                                                    SURFconext, either
                                                    using SAML or Open
                                                    ID Connect,
                                                    SURFsecureID
                                                    (formerly known as
                                                    Strong
                                                    Authentication),
                                                    groups/teams/VOOT
                                                    etc. Members of our
                                                    team will be at hand
                                                    to solve any hurdles
                                                    on the spot. At the
                                                    end of the
                                                    hackathon, your SP
                                                    should be (nearly)
                                                    connected. <a
                                                      moz-do-not-send="true"
href="https://www.surf.nl/agenda/2018/06/hackathon-%E2%80%93-sluit-je-dienst-aan-op-surfconext/index.html">Register
                                                      here!</a> Any
                                                    questions? Mail <a
                                                      class="moz-txt-link-abbreviated"
href="mailto:raoul.teeuwen@surfnet.nl">raoul.teeuwen@surfnet.nl</a>.<br>
                                                    <h1>Webinar: best
                                                      identifier for
                                                      your job!</h1>
                                                    <p>What identifiers
                                                      are available when
                                                      connecting to
                                                      SURFconext? What
                                                      are the pros and
                                                      cons of them all?
                                                      In the 25 minute
                                                      webinar on
                                                      identifiers, June
                                                      26th, we'll tell
                                                      you all about it.
                                                      We'll record it so
                                                      you can also watch
                                                      it later.<br>
                                                      <br>
                                                      Keep an eye on <a
moz-do-not-send="true" href="https://www.surf.nl/agenda/">the SURF
                                                        agenda</a>. More
                                                      information and
                                                      watch link will be
                                                      available soon.</p>
                                                    <h1>SURFconext will
                                                      migrate to SHA-256
                                                      in 2018</h1>
                                                    <p>The SHA-1 hashing
                                                      algorithm used by
                                                      SURFconext to
                                                      cryptographically
                                                      certify assertions
                                                      it sends to
                                                      Service Providers,
                                                      is considered
                                                      deprecated. In
                                                      order to be able
                                                      to keep
                                                      guaranteeing the
                                                      security of our<br>
                                                      service,
                                                      SURFconext will
                                                      migrate to the
                                                      more secure
                                                      SHA-256 hashing
                                                      algorithm.<br>
                                                      <br>
                                                      The switchover is
                                                      planned for the
                                                      fourth quarter of
                                                      2018. When the
                                                      concrete deadline
                                                      is known, it will
                                                      be announced to
                                                      the Service
                                                      Provider's listed
                                                      technical contact.<br>
                                                      <br>
                                                      Any reasonably
                                                      recent SAML 2.0
                                                      Service Provider
                                                      implementation
                                                      should already
                                                      support SHA-256.
                                                      If you are using a
                                                      very old version
                                                      of an
                                                      implementation or
                                                      library you may
                                                      need to upgrade.
                                                      The SURFconext
                                                      "test"<br>
                                                      and "staging"
                                                      environments will
                                                      be configured so
                                                      you can verify
                                                      that your Service
                                                      Provider is indeed
                                                      compatible with
                                                      the SHA-256
                                                      algorithm.<br>
                                                      <br>
                                                      The concrete
                                                      timeline will be
                                                      announced soon.
                                                      For more
                                                      information,
                                                      please refer <a
                                                        moz-do-not-send="true"
href="https://wiki.surfnet.nl/x/nwCtB">to our documentation</a>.<br>
                                                    </p>
                                                    <h1>Personal data in
                                                      your metadata?</h1>
                                                    <p>Service providers
                                                      and Identity
                                                      providers provide
                                                      contact details in
                                                      metadata to help
                                                      manage technical
                                                      support,
                                                      administrative
                                                      support and
                                                      security
                                                      management.
                                                      eduGAIN strongly
                                                      recommends that
                                                      these contacts
                                                      should be a
                                                      role-based name
                                                      and email address
                                                      and NOT personal
                                                      data wherever
                                                      practical. A Best
                                                      Current Practice
                                                      document will be
                                                      issued by eduGAIN
                                                      to all federation
                                                      operators.<br>
                                                      <br>
                                                      So you might want
                                                      to check your
                                                      metadata. <a
                                                        moz-do-not-send="true"
href="https://blog.geant.org/2018/04/02/edugain-gdpr-advice-published">Check
                                                        the following
                                                        page for more
                                                        GDPR related
                                                        tips</a>.</p>
                                                    <h1>SP-Dashboard
                                                      live</h1>
                                                    <p>We’re happy to
                                                      announce that the
                                                      Service Provider
                                                      Dashboard is live.
                                                      This dashboard
                                                      enables you to
                                                      independently
                                                      manage your
                                                      service(s) on the
                                                      SURFconext
                                                      platform. It
                                                      allows to create,
                                                      test and edit
                                                      entities before
                                                      promoting them to
                                                      production.</p>
                                                    <h4>New
                                                      functionalities</h4>
                                                    <p>-Your own
                                                      dashboard behind
                                                      SURFconext login.<br>
                                                      -Create unlimited
                                                      entities per SP.<br>
                                                      -Manage multiple
                                                      SP’s.<br>
                                                      -Answer GDPR
                                                      questions within
                                                      the dashboard.<br>
                                                      -Request
                                                      production
                                                      connection.</p>
                                                    <h4>Future
                                                      functionalities</h4>
                                                    <p>-Compatible with
                                                      OpenID Connect (at
                                                      this moment
                                                      SP-Dashboard is
                                                      SAML-only).<br>
                                                      -What institutions
                                                      will use your
                                                      service?<br>
-Single-/multi-tenant.</p>
                                                    <h4>SP-Dashboard vs
                                                      SP-Form</h4>
                                                    <p>At this moment
                                                      the SP-Form will
                                                      be available
                                                      alongside the
                                                      SP-Dashboard. In
                                                      the coming months
                                                      we will say
                                                      goodbye to the
                                                      SP-Form and the
                                                      SP’s and IdP’s
                                                      that exist there.
                                                      If you want to
                                                      migrate please let
                                                      us know.<a
                                                        moz-do-not-send="true"
href="https://wiki.surfnet.nl/display/surfconextdev/SP+Dashboard"><br>
                                                        <br>
                                                        Refer to the
                                                        documentation
                                                        for more
                                                        information</a>.
                                                      <br>
                                                    </p>
                                                    <br>
                                                    <br>
                                                    <hr></td>
                                                </tr>
                                              </tbody>
                                            </table>
                                          </td>
                                        </tr>
                                      </tbody>
                                    </table>
                                  </td>
                                </tr>
                              </tbody>
                            </table>
                          </td>
                        </tr>
                      </tbody>
                    </table>
                  </td>
                </tr>
              </tbody>
            </table>
          </td>
        </tr>
      </tbody>
    </table>
  </body>
</html>