Changes to IdP-scoping in Signicat Identity Broker
This page describes the upcoming changes to IdP-scoping settings in the Signicat Identity Broker.
With IdP-scoping, you can direct the user from your application to a desired identity provider so the user will not be offered multiple identity providers to choose from within the Signicat Identity Broker. This enables you to let the user make a choice within your application, or to enforce the use of a given identity provider for a given service.
The upcoming changes to IdP-scoping will affect existing users of the Signicat Identity Broker. In order to ensure a smooth transition, please use the IdP-scoping settings below.

eHerkenning

Starting 29 March 2022, the below changes can be made.
Important: Only valid until 16 May 2022. After that date, these settings will no longer work.

SAML production (old)

1
<samlp:Scoping xmlns:saml2p="urn:oasis:names:tc:SAML:2.0:protocol">
2
<samlp:IDPList>
3
<samlp:IDPEntry ProviderID="urn:etoegang:HM:00000003244440010000:entities:1135"/>
4
</samlp:IDPList>
5
</samlp:Scoping>
Copied!

SAML production and pre-production (new)

1
<samlp:Scoping xmlns:saml2p="urn:oasis:names:tc:SAML:2.0:protocol">
2
<samlp:IDPList>
3
<samlp:IDPEntry ProviderID="eherkenning"/>
4
</samlp:IDPList>
5
</samlp:Scoping>
Copied!

OpenID production (old)

idp_scoping:urn:etoegang:HM:00000003244440010000:entities:1135
idp_scoping:urn:etoegang:HM:00000003244440010000:entities:0113

OpenID (new)

idp_scoping:eherkenning

DigiD (optional)

SAML production (old)

1
<samlp:Scoping xmlns:saml2p="urn:oasis:names:tc:SAML:2.0:protocol">
2
<samlp:IDPList>
3
<samlp:IDPEntry ProviderID="https://was.digid.nl/saml/idp/metadata"/>
4
</samlp:IDPList>
5
</samlp:Scoping>
Copied!

SAML preproduction (old)

1
<samlp:Scoping xmlns:saml2p="urn:oasis:names:tc:SAML:2.0:protocol">
2
<samlp:IDPList>
3
<samlp:IDPEntry ProviderID="https://was.digid.nl/saml/idp/metadata"/>
4
</samlp:IDPList>
5
</samlp:Scoping>
Copied!

SAML production and pre-production (new)

1
<samlp:Scoping xmlns:saml2p="urn:oasis:names:tc:SAML:2.0:protocol">
2
<samlp:IDPList>
3
<samlp:IDPEntry ProviderID="digid"/>
4
</samlp:IDPList>
5
</samlp:Scoping>
Copied!

OpenID production (old)

idp_scoping:https://was.digid.nl/saml/idp/metadata

OpenID pre-production (old)

idp_scoping:https:/was-preprod1.digid.nl/saml/idp/metadata

OpenID (new)

idp_scoping:digid