Identity Provider (IdP) Deployment
When the eduroam SP is up and running, you will move on to configuring your eduroam IdP.
For this stage, we need:
The names of all realms that your servers will be authoritative for (e.g. @myrealm.nz, @student.myrealm.nz)
the mappings from REALM -> YOUR SERVER(s)
a test account for REANNZ to monitor your IdP. Something like reannztest@myrealm.nz. It should be immortal and have low/no access as it's only there to check the health of the IdP
the identity of your CA (Certification Authority) that you're issuing your IdP (identity provider) certificate from, and the CN that you'll use across your IdP server(s). With these additional details, REANNZ will also monitor certificate expiry
With those details, REANNZ will be able to put the mappings into the REANNZ servers, and you'll now be able to roam to other sites.