Resolves SWAMIDOPS-227
[swamid-metadata.git] / swamid-2.0 / saml.sys.kth.se-idp-shibboleth.xml
1 <?xml version="1.0" encoding="UTF-8"?>
2 <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://saml.sys.kth.se/idp/shibboleth">
3   <md:Extensions>
4     <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
5       <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
6         <saml:AttributeValue>http://www.swamid.se/policy/assurance/al1</saml:AttributeValue>
7         <saml:AttributeValue>http://www.swamid.se/policy/assurance/al2</saml:AttributeValue>
8       </saml:Attribute>
9     </mdattr:EntityAttributes>
10   </md:Extensions>
11   <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
12     <md:Extensions>
13       <shibmd:Scope regexp="false">kth.se</shibmd:Scope>
14       <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
15         <mdui:DisplayName xml:lang="sv">Kungliga Tekniska högskolan (KTH)</mdui:DisplayName>
16         <mdui:DisplayName xml:lang="en">KTH Royal Institute of Technology</mdui:DisplayName>
17         <mdui:Description xml:lang="sv">Identity Provider för KTH</mdui:Description>
18         <mdui:Description xml:lang="en">Identity Provider for KTH</mdui:Description>
19         <mdui:InformationURL xml:lang="sv">https://www.kth.se/</mdui:InformationURL>
20         <mdui:InformationURL xml:lang="en">https://www.kth.se/en</mdui:InformationURL>
21         <mdui:Logo height="225" width="225">https://saml-5.sys.kth.se/idp/images/logo.png</mdui:Logo>
22         <mdui:Keywords xml:lang="sv">stockholm</mdui:Keywords>
23         <mdui:Keywords xml:lang="en">stockholm</mdui:Keywords>
24       </mdui:UIInfo>
25       <mdui:DiscoHints xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
26         <mdui:DomainHint>kth.se</mdui:DomainHint>
27         <mdui:IPHint>130.237.0.0/18</mdui:IPHint>
28         <mdui:IPHint>130.237.64.0/20</mdui:IPHint>
29         <mdui:IPHint>130.237.80.0/22</mdui:IPHint>
30         <mdui:IPHint>130.237.84.0/24</mdui:IPHint>
31         <mdui:IPHint>130.237.202.0/23</mdui:IPHint>
32         <mdui:IPHint>130.237.206.0/24</mdui:IPHint>
33         <mdui:IPHint>130.237.209.0/24</mdui:IPHint>
34         <mdui:IPHint>130.237.210.0/23</mdui:IPHint>
35         <mdui:IPHint>130.237.212.0/22</mdui:IPHint>
36         <mdui:IPHint>130.237.216.0/24</mdui:IPHint>
37         <mdui:IPHint>130.237.218.0/23</mdui:IPHint>
38         <mdui:IPHint>130.237.220.0/22</mdui:IPHint>
39         <mdui:IPHint>130.237.224.0/22</mdui:IPHint>
40         <mdui:IPHint>130.237.228.0/22</mdui:IPHint>
41         <mdui:IPHint>130.237.232.0/21</mdui:IPHint>
42         <mdui:IPHint>130.237.249.0/24</mdui:IPHint>
43         <mdui:IPHint>130.237.250.0/23</mdui:IPHint>
44         <mdui:IPHint>130.237.255.0/24</mdui:IPHint>
45         <mdui:IPHint>130.229.128.0/18</mdui:IPHint>
46         <mdui:IPHint>193.10.37.0/24</mdui:IPHint>
47         <mdui:IPHint>193.10.38.0/24</mdui:IPHint>
48         <mdui:IPHint>193.10.39.0/24</mdui:IPHint>
49         <mdui:IPHint>2001:6b0:1::/48</mdui:IPHint>
50         <mdui:GeolocationHint>geo:59.34698,18.07213</mdui:GeolocationHint>
51       </mdui:DiscoHints>
52     </md:Extensions>
53     <md:KeyDescriptor use="signing">
54       <ds:KeyInfo>
55         <ds:X509Data>
56           <ds:X509Certificate>
57 MIIDMDCCAhigAwIBAgIVAOmaIGGXK/JbzXedtKY0l3Vp34hRMA0GCSqGSIb3DQEB
58 CwUAMBwxGjAYBgNVBAMMEXNhbWwtNS5zeXMua3RoLnNlMB4XDTE3MTAwMjE0MDIw
59 M1oXDTM3MTAwMjE0MDIwM1owHDEaMBgGA1UEAwwRc2FtbC01LnN5cy5rdGguc2Uw
60 ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCMHtOcs0ZEBqSTA0AqMyyc
61 1Hhjq41rLAF+xk9LJVTVmiEzKZqbFbnFXeh4A50R0qXdWg+ZRS+57D3tIJbM4sNk
62 IeOS7IDFdkk3h/t7lqWrIyxrK6dHN5awqquchyjzQVZ/+tSge5iA04WYf1YqqYBl
63 Cdn38JoyRIIS5bS5Xo4iyrh0RE1NpNBVwL3+m6XQyDZwy/9uilAZChydlZeKkTXW
64 wUBPNksose/M1cbWlw3e43EC4/WViayErTijXZmp3ZFlJCL1EKPURVjeEX1AXkpM
65 6OaL5S7PwdrAqg9qPhEDdYYRHxEDuM8iRoAmzPCwStOo1gS6mWQqBrXvQE2ojwdH
66 AgMBAAGjaTBnMB0GA1UdDgQWBBTZyigFF2hva2NdXhtibyWmqToY8TBGBgNVHREE
67 PzA9ghFzYW1sLTUuc3lzLmt0aC5zZYYoaHR0cHM6Ly9zYW1sLTUuc3lzLmt0aC5z
68 ZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAGtvAY2a6PpljlGHO
69 J60hymreWhvUEwq1XA3IX3+ox85mnNiDGbyIM6kCQMuMXeK/wectNMDRxqPTmsLY
70 s7LrnP0IESqU0fJh8csy6h1bS9m5CbN1D3Frv2JS28jCUjousUrH6DDV75w2xbWb
71 U2trtXVk5XyBas4JdnxBSTgIRe9C26ALN2IJ4YdGwLaZbA74y0Ehcf09NSNiwrvl
72 O0Q8q5FCN5Zuog/y6Q8PSFLgXEo/lx2JufAFeQrLaKyJRy0sXLlXdVtdOfm6DLcW
73 /xpqhC24xIistMSyj3WcnUt8yWezp4xKuxzAg/A7QHJWWsmxwX5+YHYdmL9bCPYW
74 sIsQIQ==
75             </ds:X509Certificate>
76         </ds:X509Data>
77       </ds:KeyInfo>
78     </md:KeyDescriptor>
79     <md:KeyDescriptor use="signing">
80       <ds:KeyInfo>
81         <ds:X509Data>
82           <ds:X509Certificate>
83 MIIDLzCCAhegAwIBAgIUH2oX7WISLlGweMWZtSzUAdE7fT0wDQYJKoZIhvcNAQEL
84 BQAwHDEaMBgGA1UEAwwRc2FtbC01LnN5cy5rdGguc2UwHhcNMTcxMDAyMTQwMjAz
85 WhcNMzcxMDAyMTQwMjAzWjAcMRowGAYDVQQDDBFzYW1sLTUuc3lzLmt0aC5zZTCC
86 ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAK8fvkm0hukgNA45Ct1EqkA1
87 Qfl9+yYMawO7XuKUdWXfsHFUEwi2fMaLBQbDlGzugyAqs+VL44Ladq6jNmU0ICGv
88 dABuqQ1/mikC93yCn2Fyr+L8Pb6ooQva5sG1FxiSo5ODgKxUw/NJOPO3jD8oafXZ
89 KMe7bziyEsdK6FJQvnSKTEi/uKgoyggQaPQKhN/n9+8S7xfbKt6SElhqndNDLJO2
90 +rLznWzDDiVq4cYSrmvkTrOdEXge9IRw0C/fAS45pbfrrrv5p3uhoSrnGqgbmUnO
91 zzxtyaTMgtr8ymUg8Sg3lM1vugxMjV2iQXrcTUEpS88SJZSSZ55CKmCnbLFlT9kC
92 AwEAAaNpMGcwHQYDVR0OBBYEFC64tqUGgzV0tBPjchpcAKIANSurMEYGA1UdEQQ/
93 MD2CEXNhbWwtNS5zeXMua3RoLnNlhihodHRwczovL3NhbWwtNS5zeXMua3RoLnNl
94 L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBoSSeExvS4jh469mls
95 f4+oXwOx8pimcxp4qjuuikdmMF+WiiCOto+36ZkG8X6cx6SRZYavetLMXoQdwkHn
96 3OiaJmK/kvG+0KlaSYq68p9u6ddKQgjWPy9JbZlW0uZQaFPg2/5O4acukImkHR/q
97 v7uPLS6CRVWMflLpTxZjFBnkafsw3bGjqCAh8zh7afGgmAVZjrRfcmuj6GeEc+0R
98 6+X1G5kC1FdSnzY6CTSxf2M4Imgy0iU1QNnby7Pqm+pxWhvPW9+x4DDCOQiZquyw
99 EoqFRoJQqVekIFRBNnL10DpDCIogHXd7I49hPQf35/LkZmcqvEJuGSaSVOvmFTR6
100 OmTq
101             </ds:X509Certificate>
102         </ds:X509Data>
103       </ds:KeyInfo>
104     </md:KeyDescriptor>
105     <md:KeyDescriptor use="encryption">
106       <ds:KeyInfo>
107         <ds:X509Data>
108           <ds:X509Certificate>
109 MIIDMDCCAhigAwIBAgIVANDcvLv9oyCzfWKoZ4qwITR137mFMA0GCSqGSIb3DQEB
110 CwUAMBwxGjAYBgNVBAMMEXNhbWwtNS5zeXMua3RoLnNlMB4XDTE3MTAwMjE0MDIw
111 M1oXDTM3MTAwMjE0MDIwM1owHDEaMBgGA1UEAwwRc2FtbC01LnN5cy5rdGguc2Uw
112 ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDMnoOf28PBhne05cuoe0hk
113 qVkDPgIur8K4R1zvGJZXrl6xBQ8Cf5x2/71OoOh/toRtGRR5mx/0D6zTiHqwZCXF
114 alo0URcej5C2S4Cjit5bcG/M9WimsC34whCwHxvYWXzN7S6GcGuh3NFPH+kxllSh
115 2oZ+uEACggBAHFuUQBXBsj060376EB7ZaGivXfmVYWYJzEMvAQLHq3QbtxMwAUu5
116 ZcjX226/HuV53O8mpueWEb7dNDiufFU+TFe+nSqFAZss0fGYos1szfXXkDwn7l82
117 PVGc1TsGTZKlRtWfhfxe+9AYebeLDsci0o5NkR86AsDBOMxbeB1+/kyu3i1KabMT
118 AgMBAAGjaTBnMB0GA1UdDgQWBBQVSJgAJOeU3VlroaBurkCV9L9tVjBGBgNVHREE
119 PzA9ghFzYW1sLTUuc3lzLmt0aC5zZYYoaHR0cHM6Ly9zYW1sLTUuc3lzLmt0aC5z
120 ZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAfUOEEkcQ32GF3BBB
121 g1qjGfqgC3/wVzOkqR3OpklHLZ8CAn0rdD18kH3FBbs0u3Xn+Si6aVdVCgECuu9l
122 UZhenuGVLwBlLUO5wyfhZcmu9obqj/Kng8gBVJ0c+qcDQyPjj13vAPxdmrUaZegL
123 rlQAkWXnxjp+EZs2LOhALLTYSFVnxsecS3jdDNQv5eg3TVn1y47c84mKqTVblYbr
124 d+sCpD2C/PTTwyGJ+dlImbq5mucUT8skolnF6oZiLRnNEU0dOQbW+p0yDzqBLujT
125 /PP9U1EgkVs4BHeaAQYOlQNBh+DwA3Ak9bVRW+A6DWv3bD5/slnfcy+yhjeRjCKc
126 jmufPg==
127             </ds:X509Certificate>
128         </ds:X509Data>
129       </ds:KeyInfo>
130     </md:KeyDescriptor>
131     <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://saml-5.sys.kth.se/idp/profile/Shibboleth/SSO"/>
132     <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml-5.sys.kth.se/idp/profile/SAML2/POST/SSO"/>
133     <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://saml-5.sys.kth.se/idp/profile/SAML2/POST-SimpleSign/SSO"/>
134     <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml-5.sys.kth.se/idp/profile/SAML2/Redirect/SSO"/>
135   </md:IDPSSODescriptor>
136   <md:Organization>
137     <md:OrganizationName xml:lang="en">KTH</md:OrganizationName>
138     <md:OrganizationDisplayName xml:lang="sv">Kungliga Tekniska högskolan (KTH)</md:OrganizationDisplayName>
139     <md:OrganizationDisplayName xml:lang="en">KTH Royal Institute of Technology</md:OrganizationDisplayName>
140     <md:OrganizationURL xml:lang="en">http://www.kth.se</md:OrganizationURL>
141   </md:Organization>
142   <md:ContactPerson contactType="administrative">
143     <md:Company>KTH Royal Institute of Technology</md:Company>
144     <md:SurName>UF/ITA Infra (Alexander Boström, Hans Berggren, Jonas Andersson)</md:SurName>
145     <md:EmailAddress>mailto:ita-infra-saml-contact@kth.se</md:EmailAddress>
146     <md:TelephoneNumber>+46 8 790 6000</md:TelephoneNumber>
147   </md:ContactPerson>
148   <md:ContactPerson contactType="technical">
149     <md:Company>KTH Royal Institute of Technology</md:Company>
150     <md:SurName>UF/ITA Infra (Alexander Boström, Hans Berggren, Jonas Andersson)</md:SurName>
151     <md:EmailAddress>mailto:ita-infra-saml-contact@kth.se</md:EmailAddress>
152     <md:TelephoneNumber>+46 8 790 6000</md:TelephoneNumber>
153   </md:ContactPerson>
154   <md:ContactPerson contactType="support">
155     <md:Company>KTH Royal Institute of Technology</md:Company>
156     <md:SurName>KTH IT-Support</md:SurName>
157     <md:EmailAddress>mailto:it-support@kth.se</md:EmailAddress>
158     <md:TelephoneNumber>+46 8 790 6600</md:TelephoneNumber>
159   </md:ContactPerson>
160   <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
161     <md:GivenName>Security Response Team</md:GivenName>
162     <md:EmailAddress>mailto:abuse@kth.se</md:EmailAddress>
163   </md:ContactPerson>
164 </md:EntityDescriptor>