Federation - Establishment of Expected and Acceptable Identity and Authenticator Assurance Levels, v1.0

All members of a federation must establish parameters for expected and acceptable IALs and AALs for operations within the federation.

Assessment Step

1
Acceptable IAL and AAL (AcceptableIALandAAL)
Are acceptable IALs and AALs established by the federation members? This made be codified within federation operator policy and/or handled on a pairwise basis between members.
Artifact
A1
Provide evidence (e.g. policies, compliance/assessment reports) that the federation members have established acceptable IALs and AALs.

Conformance Criteria (1)

C1
Federation relationships SHALL establish parameters regarding expected and acceptable IALs and AALs in connection with the federated relationship.
Citation
NIST SP 800-63C
Section 5.1.1, Final Paragraph