Entity categories are used for data release minimization and scalable attribute release from an Identity Provider within SWAMID to a Service Provider in SWAMID and/or eduGAIN.

If an owner of a Service and the Identity Provider Home Organisation has a bilateral agreement the attribute release can be extended with additional attributes based on the agreement.

Best Practice attribute release based on entity categories

x - Attribute is released if it's available in the Home Organisation Identity Provider.
o - Attribute is released only if requested and required in the metadata for the service and if it's available in the Home Organisation Identity Provider.

SAML2 Attribute IdentifierFriendly NameWithout enitity categoryGÉANT CoCoREFEDS R&SSWAMID R&E

SWAMID SFS-1993-1153





Attribute released "only if requested and required" in metadata1.

Note that norEduPersonNIN and personalIdentityNumber has additional restrictions2.




No new EntityID will be permitted to use this category from 2020-09-01.

This entity category is deprecated and will be removed from all entities 2021-12-31. The process of removal will start 2020-09-01.


SWAMID R&E is used in pair with one of the entity categories SWAMID EU-Adequate-Protection, SWAMID NREN-Service and SWAMID HEI-Service



No new EntityID will be permitted to use this category from 2020-09-01.

This entity category is deprecated and will be removed from all entities 2021-12-31. The process of removal will start 2020-09-01.


Attributes released only for users with a Swedish personal identity number (sv. personnummer), a Swedish co-ordination number (sv. samordningsnummer) or a organisational student interim identity number (sv. interimspersonnummer)


urn:oid:1.3.6.1.4.1.5923.1.1.1.10eduPersonTargetedID
ox3

urn:oid:1.3.6.1.4.1.5923.1.1.1.6eduPersonPrincipalName
oxx
urn:oid:1.3.6.1.4.1.5923.1.1.1.13eduPersonUniqueID 4
(deprecated and removed from example attribute-filter)


urn:oid:1.3.6.1.4.1.5923.1.1.1.16eduPersonOrcid
o


urn:oid:1.3.6.1.4.1.2428.90.1.5norEduPersonNIN
o2

x
urn:oid:1.2.752.29.4.13personalIdentityNumber
o2


urn:oid:1.3.6.1.4.1.25178.1.2.3 schacDateOfBirth
o


urn:oid:0.9.2342.19200300.100.1.3mail
oxx
urn:oid:2.16.840.1.113730.3.1.241displayName
oxx
urn:oid:2.5.4.3cn (aka commonName)
o
x
urn:oid:2.5.4.42givenName
oxx
urn:oid:2.5.4.4sn (aka surname)
oxx
urn:oid:1.3.6.1.4.1.5923.1.1.1.11eduPersonAssurance
oxxx
urn:oid:1.3.6.1.4.1.5923.1.1.1.9eduPersonScopedAffiliation
oxx
urn:oid:1.3.6.1.4.1.5923.1.1.1.1eduPersonAffiliation
o


urn:oid:2.5.4.10o (aka organizationName)
o
x
urn:oid:1.3.6.1.4.1.2428.90.1.6norEduOrgAcronym
o
x
urn:oid:2.5.4.6c (aka countryName)
o
x
urn:oid:0.9.2342.19200300.100.1.43co (aka friendlyCountryName)
o
x
urn:oid:1.3.6.1.4.1.25178.1.2.9schacHomeOrganization
o
x
urn:oid:1.3.6.1.4.1.25178.1.2.10schacHomeOrganizationType
o



  1. The entity category GÉANT Code of Conduct does not have a specific attribute bundle. Instead of an attribute bundle it uses attribute request in metadata for specific required attributes.
  2. norEduPersonNIN and personalIdentityNumber shall only be released when required by entities registered with in SWAMID (registrationAuthority="http://www.swamid.se/").
  3. eduPersonTargetedID should only be released in with the entity category REFEDS Research & Scholarship if eduPersonPrincipalName is reassignable. All Identity Providers in SWAMID must by the SWAMID Assurance Profiles be lonterm unique and therefore it should not noramlly be released.
  4. If the Identity Provider supports eduPersonUniqueID it must be a long term unique identifier that will not be reused. If eduPersonPrincipalName is non-reassignable then eduPersonUniqueID can have the same value as eduPersonPrincipalName. Used of eduPersonUniqueID is deprecated and no longer recommended. It has been removed from the example attribute-filters.

URI for all entity categories used within SWAMID

Entity categoryUnique identifier
GÉANT CoCohttp://www.geant.net/uri/dataprotection-code-of-conduct/v1
REFEDS R&Shttp://refeds.org/category/research-and-scholarship
SWAMID R&Ehttp://www.swamid.se/category/research-and-educationDeprecated and will be completely removed 2021-12-31
SWAMID SFS-1993-1153http://www.swamid.se/category/sfs-1993-1153Deprecated and will be completely removed 2021-12-31
SWAMID EU-Adequate-Protectionhttp://www.swamid.se/category/eu-adequate-protectionDeprecated and will be completely removed 2021-12-31
SWAMID NREN-Servicehttp://www.swamid.se/category/nren-serviceDeprecated and will be completely removed 2021-12-31
SWAMID HEI-Servicehttp://www.swamid.se/category/hei-serviceDeprecated and will be completely removed 2021-12-31


URI for all assurance profiles used within SWAMID

EntitetskategoriUnik identifierare
SWAMID AL1http://www.swamid.se/policy/assurance/al1
SWAMID AL2http://www.swamid.se/policy/assurance/al2
SWAMID AL3http://www.swamid.se/policy/assurance/al3
SWAMID AL2-MFA-HIhttps://www.swamid.se/policy/authentication/swamid-al2-mfa-hiDeprecated and will be completely removed 2021-12-31
REFEDS Assurance Frameworkhttps://refeds.org/assurance/*
REFEDS SIRTFIhttps://refeds.org/sirtfi