Authenticate
Overview of LuxID authentication protocols - OIDC, OAuth 2.0, and SAML 2.0 - with guidance on choosing the right approach for your integration.
Overview of LuxID authentication protocols - OIDC, OAuth 2.0, and SAML 2.0 - with guidance on choosing the right approach for your integration.
LuxID's auth_level authentication-strength scale, its informal eIDAS LoA alignment, and how to request a minimum level with acr_values.
Concept-mapping guide for developers used to multi-tenant IdPs: what maps to what on LuxID, what stays standard OIDC, and what you cannot customize.
Shared vocabulary and mental model for architects, senior developers, and security engineers integrating with LuxID.
Overview of LuxID value-add features beyond basic OIDC login: MFA, passkeys, identity verification, SSO, security signals, and more.
Alphabetical glossary of LuxID developer terms: entities, tokens, claims, protocols, and authentication concepts, each linked to its canonical page.
Mental model for navigating the LuxID developer documentation: five layers, persona-based reading paths, and one-sentence summary per top-level section.
Authentication, authorisation, federation, sessions vs tokens, open standards, and JWT structure explained for LuxID integrators.
Core identity concepts and the LuxID domain model you need before writing any integration code.
LuxID acts as an OpenRoaming Wi-Fi identity provider, letting users roam onto participating networks in Luxembourg without re-authentication.
What LuxID is, its governance structure, ecosystem role in Luxembourg, and the use cases it is designed for.
How to connect LuxID to your application: link users on the stable sub claim, keep your own internal user ID, and treat the IdP as a pluggable component.
Decision matrix and flowchart to help IT admins choose between OpenID Connect and SAML 2.0 when integrating LuxID with an off-the-shelf tool.
Data minimisation, explicit consent, revocability, Sphere-based pseudonymisation, and GDPR alignment in LuxID.
The LuxID domain model: User, Organisation, Partner, Application, Sphere, Subscription, Group, Claim, Consent, and Federation explained with worked examples.
Consumer SSO across LuxID-enabled apps and LuxID Pro enterprise federation: Sphere boundaries, domain routing, corporate IdP integration, token claims.
ID Token, Access Token, and Refresh Token explained in depth: lifetimes, signing, validation rules, and the full LuxID claim catalogue including extensions.