diff options
author | Johan Wassberg <jocar@sunet.se> | 2022-12-21 10:02:47 +0100 |
---|---|---|
committer | Johan Wassberg <jocar@sunet.se> | 2022-12-21 10:02:47 +0100 |
commit | 03073178d165fd790f63f834ad03a7201362d890 (patch) | |
tree | bfa52d8123740b0ebb78bab1b5fa559be3aef797 | |
parent | 2c1b440d178ecd871a9cc3ff00760848e1fb01fa (diff) |
SWAMID-2418: Added saml.account-utv.hh.se
-rw-r--r-- | swamid-2.0/saml.account-utv.hh.se-shibboleth.xml | 169 | ||||
-rw-r--r-- | swamid-sp-2.0.mxml | 1 |
2 files changed, 170 insertions, 0 deletions
diff --git a/swamid-2.0/saml.account-utv.hh.se-shibboleth.xml b/swamid-2.0/saml.account-utv.hh.se-shibboleth.xml new file mode 100644 index 00000000..2a546c17 --- /dev/null +++ b/swamid-2.0/saml.account-utv.hh.se-shibboleth.xml @@ -0,0 +1,169 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://saml.account-utv.hh.se/shibboleth"> + <md:Extensions> + <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2022-12-21T10:02:11Z"> + <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdattr:EntityAttributes> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + </md:Extensions> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://saml.account-utv.hh.se/Shibboleth.sso/Login"/> + <mdui:UIInfo> + <mdui:Description xml:lang="en">This service is only used for internal testing</mdui:Description> + <mdui:Description xml:lang="sv">Denna tjänst används endast för intern test och utveckling</mdui:Description> + <mdui:DisplayName xml:lang="en">Högskolan i Halmstad developer site for user account activation and password reset</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">Högskolan i Halmstad utvecklingsmiljö för kontoaktivering och lösenordsåterställning</mdui:DisplayName> + <mdui:InformationURL xml:lang="en">https://account-utv.hh.se</mdui:InformationURL> + <mdui:InformationURL xml:lang="sv">https://account-utv.hh.se</mdui:InformationURL> + <mdui:Logo xml:lang="en" height="116" width="350">https://idp.hh.se/idp/images/hh-logo-en-350x116.png</mdui:Logo> + <mdui:Logo xml:lang="sv" height="116" width="350">https://idp.hh.se/idp/images/hh-logo-sv-350x116.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="en">https://www.hh.se/om-webbplatsen/behandling-av-personuppgifter/overforing-av-personuppgifter-till-account.hh.se-samt-account-utv.hh.se-i-samband-med-federerad-inloggning-privacy-policy.html</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://www.hh.se/om-webbplatsen/behandling-av-personuppgifter/overforing-av-personuppgifter-till-account.hh.se-samt-account-utv.hh.se-i-samband-med-federerad-inloggning-privacy-policy.html</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:KeyName>saml.account-utv.hh.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=saml.account-utv.hh.se</ds:X509SubjectName> + <ds:X509Certificate>MIIFFDCCAvygAwIBAgIUAxdLXCmPOvhqdQn4maw99A7rzZcwDQYJKoZIhvcNAQEL +BQAwITEfMB0GA1UEAxMWc2FtbC5hY2NvdW50LXV0di5oaC5zZTAeFw0yMjEyMjEw +ODMyMzBaFw0zMjEyMTgwODMyMzBaMCExHzAdBgNVBAMTFnNhbWwuYWNjb3VudC11 +dHYuaGguc2UwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQCmvChKiHt/ +3Ebn6uSMe1DGJqFPX9GL4u77qynkIGvilho2jDr8Y9mfZfBwyxF6lScQy4IJelMy +VRLDiEqdGIjlU7Izg1bIrDCPVAguvyt7DGVJWcbIgO2/xkl9YXPYduhkkGlb34cS +1GC6r176bXxR8CQJ6UtZH+yykU17UbAYgmoR+yGlBaYwQ4QHuThZfXr25k6GykZV +z/GlyHS0EOxyMKdRHMh9gIJTEaOwqf4LZg7j4oQUFv/RS2DB9tyU74gVJfsxuPfW +ZRpRg0Uen/O7p5Ea34y4xzXnv5kt/M8jYH3MYq0ubmy48SyQ2NTUKOP+eCRrAHSM +0cskjYtwxGoNUzkKhiy2lvr68GvyMP7zc2ZVAahXJJ0ZCs6qaM/o8NBKj/j+m9MS +BY+jziKR/6upsN5KZG3YSXaUj6c08SLWI5KaR/1uOwKoIC9EQJVBJxagqWogbku2 +QYhWEg+PlpPfSLS51tYckPBoQ4No8MkXw6VQHKWECjCjGBX58l6042Sx7/v02TZ9 +1vSfhIXpEQQ84t0dGOUZoXivb0bHp+FJtUr0ZUFdXh8Hh3gf8VlrxWdiQAluoio+ +F8h8cUiy2fhPetjQ4DXeBSdfetrAZ5oJIRHWPZrJgbiKAQkwGMesUeXIENeh7ax1 +oakHzfIKeTgX7qDStcKs1RV0l80envEzOwIDAQABo0QwQjAhBgNVHREEGjAYghZz +YW1sLmFjY291bnQtdXR2LmhoLnNlMB0GA1UdDgQWBBTUfMJFuDTO38umZp9bOG3V +nlPX0TANBgkqhkiG9w0BAQsFAAOCAgEAkSdpb9p/A9+QbqvvgrVS807bB/sdRL2x +nYyIcKwiJfhT4gcy891pymtGOvK6fniexR0w5rK0UqxNLbPDGFwdftfbHNiJ6vsB +Guoa4YvZMawqMYYA1Efee8wOeIa/BlI6NrzTCO+BzlIm8VPocJB2nZvBeZc38a7c +/1c9aCYnrCgz5f1CK3RciWvV9XPMpJkliGZGPqcrUxYghPkeg6/5EYD1/APUKbzx +ZlHB5RMH2L/RPE5dwmygFwFhoJjPB0MgNskqMRuH0l3oMlLyCLS+g7IZWXcAu9Ld +nBpZ0b6clHhh7Vz0vN+OwM+WOi7lcG/0D3JPe+cnl9WFNus3Vog8NP2Ima1xZJkC +Hy8F/F+YwwBkMH4F3GuFEk3qMaWGwUsULBgCHuIvCJCAn1pCTnHb6Orh1KpYTeMF +uCEZCc6L6nVy0HDdhO8DE+D44Nw9UF7FNtq8uGtU7C/Lolxcbee4p0LKpTGMeDQv +TrkMlqHPdZSCB0nzz+K5jtEB7/sAkUIZN2rBs5DKgz3l/5m2SsL91XOtzTrWCDxw +CDdd3Vey3k9ZXsU96r8tmbRyVVM6lPUCuJIrU8jMoTW1X4T3ngS6y6zoDCnTdIo4 +kZj+yaun0RB3fnj/qq54NaZn/Moc+MPYv8EI3Lg35AFWW/6ZeOa4HGK7zt0fHHZc +sm2iCf9YEnE=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:KeyName>saml.account-utv.hh.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=saml.account-utv.hh.se</ds:X509SubjectName> + <ds:X509Certificate>MIIFFDCCAvygAwIBAgIUNAULfq87SH9fiVgPQp/pA0Ann2EwDQYJKoZIhvcNAQEL +BQAwITEfMB0GA1UEAxMWc2FtbC5hY2NvdW50LXV0di5oaC5zZTAeFw0yMjEyMjEw +ODMyNDZaFw0zMjEyMTgwODMyNDZaMCExHzAdBgNVBAMTFnNhbWwuYWNjb3VudC11 +dHYuaGguc2UwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQC/IzJCGDoW +iKyXqISHYA0Pab+T6Fma6yqoqKBQHUECYBPPtkYk7tp6HpM3yxaCtui4vbRq+dIV +sgqZISTdSsJ7a6LugXPvNKHtvECyW2BEM9VkIr7hZ4F3+iptZtJHRVDAQ5GnirYJ +7mkgkl5fY81oChL7lJXJT9pURGLtECHq7OC3BvSG1+VuTHoKPZKGSVAR+1h6QBlS +0fE13Zx4a8fK74RMbs5/8fYpbpke/QTKKkfWDfYmQp97ejyJa/cDLeF6C+rq9+2L +4KIoBWPO9Dok7TBgF2aA5Ukm1Ag3QCoyRUQ17dpNz6IcJWJRFUgHtm0MkF6765SI +XSFPY6O+bTaU4gu5k//GgyGmX0OPWJuTmd9Lsrm5PwHHmEj0y+xddeaY68hIz8su +aYQSIxrHffoJCu1dgFxop7MmCFUfRGh1N7yK77v1t98OXY7wClGULy7bc19hFUSv +t/nZAwRmzw99+c0DYaX20+aoFmkmQZLHZBvgnNs0XPipdRuetPOGlqlx5wqqST1Q +Vm4GaMa2fpZRcW1PKhFCcPxBxu3TJOnzV1CcdM4HBYOen7Ntv3DxfVwFWS2e47Sg +1mW7K9xM6LTHifzLI/e4UKTi0qdGWzEfro5ffxe/lV2oCbd42OkZwYtcGKAjZ4A/ +yT2pCLiiihbgRrRMKXEUO4PMFP7uwQ8PqwIDAQABo0QwQjAhBgNVHREEGjAYghZz +YW1sLmFjY291bnQtdXR2LmhoLnNlMB0GA1UdDgQWBBQfQ4ELBTm3DIppcYS7W/r7 +ne1gKzANBgkqhkiG9w0BAQsFAAOCAgEAcL+Qavglq/hQTQ5nA0oZjZyu4jM5LN/Q +YqgIqrOifPVPZF1O06Y4Y5ieW27/+1w5ahkF0Hh4Z3qMOH9/LjeAV5sgIoSmDQv6 +evkAhvi6vk6vH6eD9ZXKqW3GKow68awXKlgVzsKv2I+5mVlTqwfFjkkpbPO5fb8k +kzheE4rF2fm6z5oibOgE2XK543CmiC7nQo/ORCnzJzpgnAyb970lMTKUY+EL/5q+ +9kp984KOtkqq8Jl0wA4o2uL8r6TzxgAJ23sR2EVqXaoh2fCzSj80NQqMGkCiZRYu +QUKhnufApo+fPwQCdti+wVj6SiuRzR+5xqflyfEDmQ712Bh8ivRhZNGSWXlPx6n0 +1O2SIgQK4ebAg6qewTuSTkrOzi84tHVX0q10FhU45gv7AD6PaM1Chnf6fsDNP1+j +wuzXPcBaJMHJ6Lw4qOiebl9jzKvCqWutdnex4iS69XGcRWSjuG39eymPy553rhQC +rMT1CL0k0YZWO1wdJbzOB5BfPCUb5svQ7hLnUSJa1k0rAHUX01OGe4BwB/fOuYj+ +oH104sgukFpz79t/V4Gcbcyg6sD56bRlYJOEoPkmnct+qDzXfSnCyNDywIv7SaUU +8PJqZN6bpQo+Uz3RorDjRW/kMEcxx7jd0gDrW/TrIbTUeai8C4jhzS+2kwjOdd+h +Xn9uApGSuq0=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://saml.account-utv.hh.se/Shibboleth.sso/Artifact/SOAP" index="1"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SLO/SOAP"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SLO/Redirect"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SLO/POST"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SLO/Artifact"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SAML2/POST" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SAML2/Artifact" index="3"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://saml.account-utv.hh.se/Shibboleth.sso/SAML2/ECP" index="4"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">Halmstad University, account activation and password reset</md:ServiceName> + <md:ServiceName xml:lang="sv">Högskolan i Halmstad, kontoaktivering och lösenordsåterställning</md:ServiceName> + <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> + <md:Organization> + <md:OrganizationName xml:lang="en">Halmstad University</md:OrganizationName> + <md:OrganizationName xml:lang="sv">Högskolan i Halmstad</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="en">Halmstad University</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="sv">Högskolan i Halmstad</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">https://www.hh.se/english.html</md:OrganizationURL> + <md:OrganizationURL xml:lang="sv">https://www.hh.se</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="administrative"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="technical"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="support"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml index f2475cf5..ab1a717a 100644 --- a/swamid-sp-2.0.mxml +++ b/swamid-sp-2.0.mxml @@ -336,6 +336,7 @@ <xi:include href="swamid-2.0/rt.sunet.se-shibboleth.xml"/> <xi:include href="swamid-2.0/sam.control.lth.se-shibboleth.xml"/> <xi:include href="swamid-2.0/sam.cs.lth.se-shibboleth.xml"/> + <xi:include href="swamid-2.0/saml.account-utv.hh.se-shibboleth.xml"/> <xi:include href="swamid-2.0/sandbox03-eu.alma.exlibrisgroup.com-mng-login.xml"/> <xi:include href="swamid-2.0/sandbox03-eu.primo.exlibrisgroup.com-mng-login.xml"/> <xi:include href="swamid-2.0/sd0312.sigma.dev-shibboleth.xml"/> |