diff options
author | Björn Mattsson <Bjorn.Mattsson@bth.se> | 2020-08-27 15:15:37 +0200 |
---|---|---|
committer | Björn Mattsson <Bjorn.Mattsson@bth.se> | 2020-08-27 15:15:37 +0200 |
commit | aaef20528aadb05b7f05599e43a904d7eb79a79d (patch) | |
tree | 8efeb3bd40e09d266363792ab596abfa2771e77c | |
parent | 18e5d1dc906ade228cd526efa675db803ab45e40 (diff) |
Resolves SWAMID-3236
-rw-r--r-- | swamid-2.0/edusign.lu.se-shibboleth.xml | 143 | ||||
-rw-r--r-- | swamid-sp-2.0.mxml | 1 |
2 files changed, 144 insertions, 0 deletions
diff --git a/swamid-2.0/edusign.lu.se-shibboleth.xml b/swamid-2.0/edusign.lu.se-shibboleth.xml new file mode 100644 index 00000000..cb1e8eef --- /dev/null +++ b/swamid-2.0/edusign.lu.se-shibboleth.xml @@ -0,0 +1,143 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://edusign.lu.se/shibboleth"> + <md:Extensions> + <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/"> + <mdrpi:RegistrationPolicy xml:lang="en">https://www.sunet.se/wp-content/uploads/2016/08/SWAMID-Metadata-Registration-Practice-Statement-v2.pdf</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> + <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> + <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + </md:Extensions> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://edusign.lu.se/Shibboleth.sso/Login"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://edusign.lu.se/Shibboleth.sso/Login" index="1"/> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">eduSign LU</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">eduSign LU</mdui:DisplayName> + <mdui:Description xml:lang="en">Electronic Signature at Lund University</mdui:Description> + <mdui:Description xml:lang="sv">Elektronisk underskrift vid Lunds universitet</mdui:Description> + <mdui:PrivacyStatementURL xml:lang="sv">https://www.medarbetarwebben.lu.se/stod-och-verktyg/juridik-dokument-och-arendehantering/personuppgifter-och-dataskydd/overgripande-information/allmanna-principer-for-personuppgiftshantering</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">https://www.medarbetarwebben.lu.se/stod-och-verktyg/juridik-dokument-och-arendehantering/personuppgifter-och-dataskydd/overgripande-information/allmanna-principer-for-personuppgiftshantering</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:KeyName>edusign.lu.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=edusign.lu.se</ds:X509SubjectName> + <ds:X509Certificate>MIID+TCCAmGgAwIBAgIUIQvwrVeq9ZkoWzsHyBKcsExUxfswDQYJKoZIhvcNAQEL +BQAwGDEWMBQGA1UEAxMNZWR1c2lnbi5sdS5zZTAeFw0yMDA4MjEwOTA4MjhaFw0z +MDA4MTkwOTA4MjhaMBgxFjAUBgNVBAMTDWVkdXNpZ24ubHUuc2UwggGiMA0GCSqG +SIb3DQEBAQUAA4IBjwAwggGKAoIBgQCrmyntKNtdsZnxvJJoLBPzijPJbhOOENSF +no2eYWhiD0w1IFqPEy8osU0RL43eU5tVWda5qCg9bZUMFqqlqEycdzpJ/fdNDE+8 +FyDhSjOj3PxZbLi87mBU11H1reAO9cwC1qz0k1iMud88d//8VCCnKTG8K2OSnUv3 +Mvc3rUgxkHj9hQMb/rHJmZkER5pB9A8cAyPTF35F/q4d1lz0zJQwJ7d9pC1exJnZ +Ez235xXejT4bSOXT06h6i1HvLAgX59wjXIbbbwZJCmPqff6cztfLtbm79KBL6UNK +Ichqyt2wCJsIl5pxhycUogg/nh150Aup/kmsXLyTJLGXdOGlorJEyowHELeTN82K +bNdsHsAGUdh0CwvrMBXs56nXviLYPNLpsCmCdMDwYN6huFMndkAhzfCHXfZbIvco ++8cT3D6VAFt1F5jwiKWwEWGBWcf36R8p0kUM7kmvfMQA8a4FaO3vANFN4UJhtbj5 +SuZZNAd0gHpBjW+ZkX/EF15w5ZSuq/kCAwEAAaM7MDkwGAYDVR0RBBEwD4INZWR1 +c2lnbi5sdS5zZTAdBgNVHQ4EFgQUSTPJoWhKG8JYtpTnN/pRtzMz0TkwDQYJKoZI +hvcNAQELBQADggGBAKi6HUWfWomknYtDtCZio44P915u1H08Sd6ZDRgGLel3cR0H +6PhhwhQ5oqrLQ0mRBYZ/B0ZkRfv+OnF13Cu5Y15AQuOzvoYEE+f3DNPZV2snaEkg +oAdvVXKSbeOFKNCddd/vXYnxAD3fos2OQdOYMdh+fgqddzoFT7xMK94oHO+tp6k3 +hYEdQS+iAVJm6JdJidaxu8Xrqpk0DwxelD+K1Kw1kpQqVpNqcy2muGiNGY5e8B8L +SKLgUZp4mEDpUSfp4xK6Dd5NTuhA5UoFUGUWJ7cbrvzKULdED9VH3UvmVOVLe5Q/ +AuhhR+4gSt/55ZWzCW14rsH1n7AfHC3Pd1EO7wHH1XiMy8i6kXorcrBLJTRA5AU+ +a9aJi+eB++lZ5AZwkiwXo7rCRgWkZkD2JIM2AEkCqbHsReWwahTlsiycUBo8+q/k +o39gjn+zbS1rgfzCs8lFp9niwfpxAcLe4YYtdaa+zkZJZywyY+gnxv8DTyd4MXNd +T+MOe7cGCihHiyOmPA== +</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:KeyName>edusign.lu.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=edusign.lu.se</ds:X509SubjectName> + <ds:X509Certificate>MIID+TCCAmGgAwIBAgIUIQvwrVeq9ZkoWzsHyBKcsExUxfswDQYJKoZIhvcNAQEL +BQAwGDEWMBQGA1UEAxMNZWR1c2lnbi5sdS5zZTAeFw0yMDA4MjEwOTA4MjhaFw0z +MDA4MTkwOTA4MjhaMBgxFjAUBgNVBAMTDWVkdXNpZ24ubHUuc2UwggGiMA0GCSqG +SIb3DQEBAQUAA4IBjwAwggGKAoIBgQCrmyntKNtdsZnxvJJoLBPzijPJbhOOENSF +no2eYWhiD0w1IFqPEy8osU0RL43eU5tVWda5qCg9bZUMFqqlqEycdzpJ/fdNDE+8 +FyDhSjOj3PxZbLi87mBU11H1reAO9cwC1qz0k1iMud88d//8VCCnKTG8K2OSnUv3 +Mvc3rUgxkHj9hQMb/rHJmZkER5pB9A8cAyPTF35F/q4d1lz0zJQwJ7d9pC1exJnZ +Ez235xXejT4bSOXT06h6i1HvLAgX59wjXIbbbwZJCmPqff6cztfLtbm79KBL6UNK +Ichqyt2wCJsIl5pxhycUogg/nh150Aup/kmsXLyTJLGXdOGlorJEyowHELeTN82K +bNdsHsAGUdh0CwvrMBXs56nXviLYPNLpsCmCdMDwYN6huFMndkAhzfCHXfZbIvco ++8cT3D6VAFt1F5jwiKWwEWGBWcf36R8p0kUM7kmvfMQA8a4FaO3vANFN4UJhtbj5 +SuZZNAd0gHpBjW+ZkX/EF15w5ZSuq/kCAwEAAaM7MDkwGAYDVR0RBBEwD4INZWR1 +c2lnbi5sdS5zZTAdBgNVHQ4EFgQUSTPJoWhKG8JYtpTnN/pRtzMz0TkwDQYJKoZI +hvcNAQELBQADggGBAKi6HUWfWomknYtDtCZio44P915u1H08Sd6ZDRgGLel3cR0H +6PhhwhQ5oqrLQ0mRBYZ/B0ZkRfv+OnF13Cu5Y15AQuOzvoYEE+f3DNPZV2snaEkg +oAdvVXKSbeOFKNCddd/vXYnxAD3fos2OQdOYMdh+fgqddzoFT7xMK94oHO+tp6k3 +hYEdQS+iAVJm6JdJidaxu8Xrqpk0DwxelD+K1Kw1kpQqVpNqcy2muGiNGY5e8B8L +SKLgUZp4mEDpUSfp4xK6Dd5NTuhA5UoFUGUWJ7cbrvzKULdED9VH3UvmVOVLe5Q/ +AuhhR+4gSt/55ZWzCW14rsH1n7AfHC3Pd1EO7wHH1XiMy8i6kXorcrBLJTRA5AU+ +a9aJi+eB++lZ5AZwkiwXo7rCRgWkZkD2JIM2AEkCqbHsReWwahTlsiycUBo8+q/k +o39gjn+zbS1rgfzCs8lFp9niwfpxAcLe4YYtdaa+zkZJZywyY+gnxv8DTyd4MXNd +T+MOe7cGCihHiyOmPA== +</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://edusign.lu.se/Shibboleth.sso/Artifact/SOAP" index="1"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://edusign.lu.se/Shibboleth.sso/SLO/SOAP"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://edusign.lu.se/Shibboleth.sso/SLO/Redirect"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edusign.lu.se/Shibboleth.sso/SLO/POST"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://edusign.lu.se/Shibboleth.sso/SLO/Artifact"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edusign.lu.se/Shibboleth.sso/SAML2/POST" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://edusign.lu.se/Shibboleth.sso/SAML2/Artifact" index="3"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://edusign.lu.se/Shibboleth.sso/SAML2/ECP" index="4"/> + </md:SPSSODescriptor> + <Organization xmlns="urn:oasis:names:tc:SAML:2.0:metadata"> + <OrganizationName xml:lang="en">Lund University</OrganizationName> + <OrganizationDisplayName xml:lang="en">Lund University</OrganizationDisplayName> + <OrganizationURL xml:lang="en">https://www.lu.se/en</OrganizationURL> + </Organization> + <ContactPerson xmlns="urn:oasis:names:tc:SAML:2.0:metadata" contactType="technical"> + <GivenName>Kåre Hviid</GivenName> + <EmailAddress>mailto:kare.hviid@ldc.lu.se</EmailAddress> + </ContactPerson> + <ContactPerson xmlns="urn:oasis:names:tc:SAML:2.0:metadata" contactType="administrative"> + <GivenName>Eskil Swahn</GivenName> + <EmailAddress>mailto:eskil.swahn@ldc.lu.se</EmailAddress> + </ContactPerson> + <ContactPerson xmlns="urn:oasis:names:tc:SAML:2.0:metadata" contactType="support"> + <GivenName>Servicedesk</GivenName> + <EmailAddress>mailto:servicedesk@lu.se</EmailAddress> + </ContactPerson> + <md:ContactPerson xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <GivenName>IRT Lund University</GivenName> + <EmailAddress>mailto:abuse@lu.se</EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml index 066b38bf..ba15320f 100644 --- a/swamid-sp-2.0.mxml +++ b/swamid-sp-2.0.mxml @@ -639,4 +639,5 @@ <xi:include href="swamid-2.0/se.timeedit.net-liu-staff.xml"/> <xi:include href="swamid-2.0/hird.humlab.umu.se.xml"/> <xi:include href="swamid-2.0/expertklient.test.antagning.se-ecs-sp.xml"/> + <xi:include href="swamid-2.0/edusign.lu.se-shibboleth.xml"/> </md:EntitiesDescriptor> |