OpenID Connect now available with Shibboleth at U-M

weblogin UI screengrab

Setting up single sign-on for a new service? The university’s preferred solution, Shibboleth, has a new option that makes it work with additional services. Shibboleth at U-M can now be set up to use either of these two industry standard protocols:

  • Security Assertion Markup Language (SAML). For most services, SAML will be your best choice. Most services that use Shibboleth at U-M use Shibboleth with SAML.
  • OpenID Connect (OIDC). This new option for Shibboleth at U-M is being made available because there are some vendor services that require it specifically and that do not work with SAML.

For details about the differences between SAML and OIDC and links to documentation, see Shibboleth Protocol Options.