SAML2 WebSSO Service Definition

Authentication and attribute transfer of users who have an electronic identity at the University of Gävle.

General Description of SAML2 WebSSO

The service provides authentication of users who have an electronic identity at the University of Gävle, as well as the transfer of attributes relating to the authenticated user. The service provider/the University is a member of SWAMID, the Swedish identity federation for research and higher education. The service is configured in accordance with SWAMID policies and other rules and guidelines established by SWAMID. 

The Service and Its Limitations

The University of Gävle guarantees service availability in accordance with the University's requirements and expectations. The University follows SWAMID’s recommendations for the release of attributes based on entity categories. The University of Gävle reserves the right, in communication with a service provider, to modify the actual attributes released, regardless of SWAMID recommendations for the entity category in which the service provider has been placed. 

Privacy Policy

The service follows the University of Gävle’s policy for the processing of personal data, in accordance with Swedish legislation. 

The identity provider performs authentication on behalf of a service known to the University of Gävle, either through service metadata delivered via the SWAMID federation or through a separate agreement between the service and the University. Depending on the type of service, its purpose, and its relationship with the University’s Identity Provider (IdP), one or more personal data attributes are provided to the service from the University’s directory and authorization systems. This process follows the intentions of Swedish personal data legislation. 

All web services are provided with a unique identifier that allows users to save preferences during one login session and access the same preferences during subsequent logins. This identifier is unique to each individual service and cannot be correlated across different web services. 

Services categorized in SWAMID metadata using entity categories receive attributes in accordance with SWAMID recommendations. 

Services whose primary purpose is to support research and education are granted access to approximately the same personal information that is automatically included with every email message, namely: name, email address, user identity, whether the user is a student or active staff member (employee or other affiliated person), and confirmation that the user has an electronic identity at the University of Gävle. Registered services that comply with the GÉANT Data Protection Code of Conduct and thereby follow the European Union Data Protection Directive (and, in Sweden, personal data legislation) are granted access to the same information.

Services whose purpose is to support student admissions, course registration, examination registration, examinations, work-integrated learning placements, scholarship applications, self-service electronic identity management, and self-service functions for the University of Gävle’s HR systems are granted access to the user's Swedish personal identity number. 

Service Desk and Support

For questions and incident reports regarding the University of Gävle and its SAML2 WebSSO service: https://service.hig.se External link.

Sidan uppdaterades 2026-06-30