MyAccessID

Federated identity layer for research in Europe

MyAccessID is the GÉANT service that gives the European research community a single, trusted way to authenticate and access the infrastructures they rely on. Built on the GÉANT Core AAI Platform and developed in line with the AARC Blueprint Architecture, it serves EuroHPC, the European Open Science Cloud (EOSC), and other national and European research infrastructures.

MyAccessID lets researchers authenticate and identify themselves through eduGAIN and other trusted identity providers, giving each user one consistent identity across every connected service. Single sign-on that works seamlessly wherever they go.

MyAccessID logo

How it works

Built on the GÉANT Core AAI Platform and following the AARC Blueprint Architecture, MyAccessID acts as a proxy between identity federations and the research infrastructures connected to it, handling the complexity of cross-domain authentication on behalf of users and service providers. It:

  • lets researchers authenticate with the credentials they already have, through eduGAIN and other trusted identity providers, without creating new accounts;
  • gives each user a persistent, common identifier that stays consistent across every connected service;
  • releases a standardised set of user attributes to connected services;
  • supports federated single sign-on across organisations and countries; and
  • shares only the data a service actually needs, protecting user privacy.

Supported by MyAccessID

MyAccessID currently:

  • provides the common federated identity layer that the EuroHPC Federation Platform connects to, enabling researchers to access high-performance computing resources across Europe;
  • serves as the common identity layer and hub of the European Open Science Cloud (EOSC), serving all EOSC Nodes, including the EOSC EU Node; and
  • serves a range of national and European research infrastructures, giving their users a single, consistent identity across services.

For research infrastructures

  • Single Sign-On across Identity Providers from eduGAIN and other trusted identity sources.
  • Multi-protocol support for OpenID Connect (OIDC), OAuth 2.0, and SAML.
  • A standardised attribute set released to connected services, as defined in the MyAccessID Attribute Specification.
  • A common user identifier that is persistent and consistent across every service connected to MyAccessID.
  • Room to grow with higher-assurance options, such as multi-factor authentication and identity verification, as your requirements evolve (currently in pilot).

For researchers

  • Use the login you already have: sign in with your institutional credentials through the national academic federations and eduGAIN.
  • One identity, everywhere: the same consistent identity across every service connected to MyAccessID.
  • Sign in once: a single sign-on carries you seamlessly between research infrastructures and their services.
  • No one is left behind: options for researchers who do not have an academic federated identity (e.g. industry users).

Further info available at: https://wiki.geant.org/display/MyAccessID

Skip to content