...
- an account belongs to an individual person (i.e. there are no shared accounts like "libraryuser1")?
- and s/he is traceable (i.e. the home organization knows and can reach him/her)?
- and Home Organisation is willing to penalize him/her if s/he misbehaves?
- that you (as an SP community) can block him/her from the service?
...
- the home organization has a documented identity vetting process (whatever it is)?
- the identity vetting process is f2f is face-to-face or equivalent?
On-line authentication
- passwords?
- passwords with quality quaranteesguarantees? (What kind of guarantees?)
- two factor authentication?
Would you like to use step-up authentication as a service?
...
Step-up authentication means that the user first authenticates with a password, and subsequently with a second factor such as by an one-time password delivered to his/her cellphone.
- if it costs you money
- if it costs you work (operating for instance, you need to operate a registration authority)
...