Federation - Acceptance of RP Registration Only via Manual Processes, v1.0

Identity Providers that exclusively register Relying Parties manually must be sure to exchange all key material required for the trusted relationship in a secure fashion.

Assessment Step

1
Manual Registration (ManualRegistration)
Does the IdP manually register all trusted RPs safely exchanging all key material in a safe fashion?
Artifact
A1
Provide evidence (e.g. policies, operational samples) that the IdP configures all trusted partners manually.

Conformance Criteria (1)

C1
The IdP must properly protect keys (transmit over authenticated and protected channels) material during exchanges for manually configured RPs.
Citation
NIST SP 800-63C
Section 5.1.1, Paragraph 4