diff options
author | Björn Mattsson <Bjorn.Mattsson@bth.se> | 2020-06-24 13:33:07 +0200 |
---|---|---|
committer | Björn Mattsson <Bjorn.Mattsson@bth.se> | 2020-06-24 13:33:07 +0200 |
commit | 0e2f796975a26e594095bc6c50ab791f37834039 (patch) | |
tree | 153a1a3766a93c6eac278b33205c81707a5c1664 | |
parent | 3f3af34db33637c7aa525c749b9f0df36340294f (diff) |
Resolves SWAMID-3119
-rw-r--r-- | swamid-2.0/weos406t.srv.lu.se-shibboleth.xml | 123 | ||||
-rw-r--r-- | swamid-sp-2.0.mxml | 1 |
2 files changed, 124 insertions, 0 deletions
diff --git a/swamid-2.0/weos406t.srv.lu.se-shibboleth.xml b/swamid-2.0/weos406t.srv.lu.se-shibboleth.xml new file mode 100644 index 00000000..8e67efc3 --- /dev/null +++ b/swamid-2.0/weos406t.srv.lu.se-shibboleth.xml @@ -0,0 +1,123 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://weos406t.srv.lu.se/shibboleth"> + <md:Extensions> + <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/"> + <mdrpi:RegistrationPolicy xml:lang="en">https://www.sunet.se/wp-content/uploads/2016/08/SWAMID-Metadata-Registration-Practice-Statement-v2.pdf</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> + <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> + <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + </md:Extensions> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://weos406t.srv.lu.se/Shibboleth.sso/Login"/> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">EOS (test environment)</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">EOS (test)</mdui:DisplayName> + <mdui:Description xml:lang="en">Lund University Budgeting system</mdui:Description> + <mdui:Description xml:lang="sv">Lunds universitets budgetsystem</mdui:Description> + <mdui:PrivacyStatementURL xml:lang="sv">//www.medarbetarwebben.lu.se/stod-och-verktyg/juridik-dokument-och-arendehantering/personuppgifter-och-dataskydd/overgripande-information/allmanna-principer-for-personuppgiftshantering</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">//www.medarbetarwebben.lu.se/stod-och-verktyg/juridik-dokument-och-arendehantering/personuppgifter-och-dataskydd/overgripande-information/allmanna-principer-for-personuppgiftshantering</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:KeyName>weos406t.srv.lu.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=weos406t.srv.lu.se</ds:X509SubjectName> + <ds:X509Certificate>MIIEHjCCAoagAwIBAgIUBNuSSmDvWkIIP9Uiu4PjnNesY3cwDQYJKoZIhvcNAQEL +BQAwHTEbMBkGA1UEAxMSd2VvczQwNnQuc3J2Lmx1LnNlMCAXDTIwMDUxNDA5MTI0 +M1oYDzIxMjAwNDIwMDkxMjQzWjAdMRswGQYDVQQDExJ3ZW9zNDA2dC5zcnYubHUu +c2UwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDbnf+4qHT66oETwqVb +5oZ3jJ8Pjx4k1AZyIcRTLolcbY6/dsvr4hUfXzhBg6XYPOswTYSRIVET90aIV3fH +VgG6xghOhQzRHjQGVnUQKdGMsAqywfiCNpvBNeLlzgNItxweNHutix2IpnNgoKDU +EXwQmzQ8GtoIfoAKLPmgu/SOgqa4dMmZDBlhs/nZ31Xf6gJ9J1cp188tqcAzJXV6 +Ub7Ym2N9A7g0b3gt4Fa3NOu084Kloo5j53mRYdSEy5xZQ4YeJjCkPiZkbpJozfXj +ZdCBSV1Ld0Soo6sSwWTH6RbLThXvG3dAG5EQ+Yr02UeSmurcMDvNmYpcUPzTJW/d +ZbjMmTVQ+Q+Vr23H/UnbWNb/fGuQa284bi58z9Ikr7njdguowx/ROYAJ6KMMqonF +Zqu/P68N3k4K9zsirQmhkrn5qlajiQE7mt47DIxYjx0h6pxcXxxlZmEVEucWmWJI +x8LAnDXVkmwD/B6jr0iwpHsduR0+B1iq3ywBWjKjdvKF+8sCAwEAAaNUMFIwMQYD +VR0RBCowKIISd2VvczQwNnQuc3J2Lmx1LnNlhhJ3ZW9zNDA2dC5zcnYubHUuc2Uw +HQYDVR0OBBYEFP9hMANGqUpxOAU3iW6n9zWfBEyNMA0GCSqGSIb3DQEBCwUAA4IB +gQBj7tJLM0Yp2PPsO6nnVStg9uNIrQAG+fbGOh1xAumiCBaljKwcIcTfefay4s0K +UrWMtsVFm7de7VYWkGJTOSDstjb0OQ3CIqj/BWgjrwAV9mwq5SCjRoiNE/IvyT7B +/ov+FqiiIeCt96Fb1qntQ5Arh+Xtk9TVGcbpJAx+qmQHFCGz/Cvc0qQlYovoDVaz +6gOPyqjgXxllwOmwBLoAEK3NFPEnpvJG3bbWECKbSRWiI/Fvp/tOMezA9Avg7eBB +rtC1NV+6Zx4fSlJ2t0YgUxk3iculyfiLRXzJbaN1PwRF54eFc2b+4Myy8zTu/muC +FTmufx9c6O+11rbYMIfRkEKBH9vYeXYcJUv4L2JPdTNUOUeQclDKNGrxMTYVrtuV +NO5Cxxb8xDhH60egxH3VD2+oPxi6aQ1ykaid2VSA4mNFLDJZBkMH4srhpYU3kbaE +A17y/nwPtMQ2ojmwyiZa1o33IcRlW3bmI6z/3PzDqM9SqDHpdPz3g1VW8sIOZVSq +rlo= +</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:KeyName>weos406t.srv.lu.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=weos406t.srv.lu.se</ds:X509SubjectName> + <ds:X509Certificate>MIIEHjCCAoagAwIBAgIUSocv+bTh9XCaH5YI9749+BCckRkwDQYJKoZIhvcNAQEL +BQAwHTEbMBkGA1UEAxMSd2VvczQwNnQuc3J2Lmx1LnNlMCAXDTIwMDUxNDA5MTMy +NFoYDzIxMjAwNDIwMDkxMzI0WjAdMRswGQYDVQQDExJ3ZW9zNDA2dC5zcnYubHUu +c2UwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDDI4hi8dvnFgC3OSMd +tSED84O1jcGTIxp1E1/Dadto8Inb9y8xc+O48V7uz1N6pEI+o6nwpUG4hF5FFCOw +4bkMetiZ9OYXzIrA2uL8XTfa9NN+QLJLVxZZQydG0P6V8cSsIkHoHmaTIsY1e2px +KSjqiXexBas5+7u8pgOc2Up9W1N83goQ7xws/3vquqyULbqs0oPYC4u0FXtVznBm +x8wmvUq6TE2YriOZILnMWmzJ7Nh8vUpemcRU4jnXcmjTkrZIpR/wU39HMDpUuQZ3 +l6HzUArwkJOI+BdOyAWx6tuypoQV1iJrmVvZOPr2khdMnmOvSYxBj5npqnzQq0qF +B3M+h4kk3w8KM+HoL9ZfYNF5n43nqQskwU6xnlgHvMszgnY5JxRa5PXFZNZ3zsrT +MVDT+cuUashZ9+DhcJQUdrBXGlBoDm4Q6UrM47wQlRaKxo+t3uf8I0MZxiZ3f4z6 +Doj/xw6NIng25SzhXe+JeOi5xwu/zZRobnmhU7rHQlTSXLUCAwEAAaNUMFIwMQYD +VR0RBCowKIISd2VvczQwNnQuc3J2Lmx1LnNlhhJ3ZW9zNDA2dC5zcnYubHUuc2Uw +HQYDVR0OBBYEFNbPm6KAstukDKQ49wvCw45G8+H8MA0GCSqGSIb3DQEBCwUAA4IB +gQBnNfY2BkylRHjuU9zmWli/R3D2K/irL1B7wE2AtvXYLoAE8wpb94afYn8yNoQs +t+DL6pTfzUQxJNeoRZlh2ogMoEGHbiZ4le9Gnm5gqyIqEfqy9es5mpXuAF3e/awQ +iJI51HX8j4iG6TvTh17rhtx/N6RzSSXVghexN7uf6/Ad6G52zuHDFo6C2tgvSatV +TT48ycm/2IuwkzTJrkOVoiHF6HkQYZHrdd9bTMFxyt0Kb7N1S7JIdQ/vhF3Pca+a +YEhjSxo2AqpLJiFoGfHktPulI9+Sen+mkt1O7LvK8E5VC+wx/MiEXow54Y3tPICM +vFwN3XKfAFbNd9bompwnS41T1BG5wOzMYDFgNmnOmjVl2eGIeiBQwISE0zy+y/QH +Mh7CaUdTbS7M7VABOeXjEAISHpQcbBJZl4kPLh1vZ87Igs7Nd/OBshPuzz7yp/Qf +2SQkM2ZQt5ayBG91oxyaC0NnBuYXRhZQNZpVG05phhKZZnm+L4/IE0rm1xh+iRI+ +idk= +</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://weos406t.srv.lu.se/Shibboleth.sso/Artifact/SOAP" index="1"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://weos406t.srv.lu.se/Shibboleth.sso/SLO/SOAP"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://weos406t.srv.lu.se/Shibboleth.sso/SLO/Redirect"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://weos406t.srv.lu.se/Shibboleth.sso/SLO/POST"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://weos406t.srv.lu.se/Shibboleth.sso/SLO/Artifact"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://weos406t.srv.lu.se/Shibboleth.sso/SAML2/POST" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://weos406t.srv.lu.se/Shibboleth.sso/SAML2/Artifact" index="3"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://weos406t.srv.lu.se/Shibboleth.sso/SAML2/ECP" index="4"/> + </md:SPSSODescriptor> +</md:EntityDescriptor> diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml index 4a4feae5..511812d2 100644 --- a/swamid-sp-2.0.mxml +++ b/swamid-sp-2.0.mxml @@ -630,4 +630,5 @@ <xi:include href="swamid-2.0/errorurl-sp-demo.swamid.se-shibboleth.xml"/> <xi:include href="swamid-2.0/student.ladoktest13.utv.ladok.se-student-sp.xml"/> <xi:include href="swamid-2.0/www.ladoktest13.utv.ladok.se-gui-sp.xml"/> + <xi:include href="swamid-2.0/weos406t.srv.lu.se-shibboleth.xml"/> </md:EntitiesDescriptor> |