SURFconext cannot verify the configuration steps below as we are not a customer of this service provider. We have collected the information below from our connected institutions to the best of our knowledge. If you have remarks or tips you want to share, please send them to support@surfconext.nl.
Questionmark provides a secure enterprise-grade assessment platform and professional services to leading organizations around the world, delivered with care and unequalled expertise. Its full-service online assessment tool and professional services help customers to improve their performance and safely meet their compliance requirements. Questionmark enables organizations to deliver assessments which are valid, reliable, fair and defensible.
This page will show you what steps to take to connect your Questionmark instance to SURFconext.
Blackboard is a learning management system (LMS) that enables instructors to provide students with access to course materials, communication tools, online assessments, grades, and the ability to submit assignments electronically.
License
Questionmark can be obtained with a SURFmarket campus license. You will need an account for SURFmarket.nl to view the SURFmarket information about this product.
Attributes
See the SURFconext Dashboard for SAML attribute requirements or read our attributes page. Attributes needed in the IdP configuration and forwarded by SURFconext to Questionmark are:
- urn:mace:dir:attribute-def:displayName
- urn:mace:dir:attribute-def:uid
- urn:mace:dir:attribute-def:sn
- urn:mace:dir:attribute-def:givenName
- urn:mace:dir:attribute-def:mail
SIngle- or Multi-tenancy
Questionmark is a single-tenant service. Every Identity Provider has their own instance and need to be maintained by the Identity Provider the instance belongs to.Configuration
Questionmark has multiple ways to configure Single Sign-On. Authentication with blackboard is described on their support pages.
SURFconext basics
There are two SURFconext environments:
- The "production environment of SURFconext" dedicated for production services
- The "test environment of SURFconext" as a playground for connecting new services
Both environments have their own metadata.
The following data must be used to connect a service to the test environment of SURFconext:
- The SAML metadata of the SURFconext IdP end-point can be found at https://metadata.test.surfconext.nl/idp-metadata.xml
- The entityID of test environment of SURFconext is: https://engine.test.surfconext.nl/authentication/idp/metadata
note: this is NOT the location of the SAML metadata but the entityID of the IdP end-point of the test environment of SURFconext - The SSO location of the test environment of SURFconext is: https://engine.test.surfconext.nl/authentication/idp/single-sign-on/key:20230403
- The assertion signing certificate is included in the IdP metadata as well as available at https://engine.test.surfconext.nl/authentication/idp/certificate/key:20230403
The following data must be used to connect a service to the production environment of SURFconext:
- The SAML metadata of the SURFconext IdP end-point can be found at https://metadata.surfconext.nl/idp-metadata.xml
- The entityID of production environment of SURFconext is: https://engine.surfconext.nl/authentication/idp/metadata
note: this is NOT the location of the SAML metadata but the entityID of the IdP end-point of the production environment of SURFconext - The SSO location of the production environment of SURFconext is: https://engine.surfconext.nl/authentication/idp/single-sign-on/key:20230503
- The assertion signing certificate is included in the IdP metadata as well as available at https://engine.surfconext.nl/authentication/idp/certificate/key:20230503
More information regarding the different environments of SURFconext is available at SURFconext environments: test and production.