summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorPaul Scott <paul.scott@kau.se>2020-02-18 07:48:53 +0000
committerPaul Scott <paul.scott@kau.se>2020-02-18 07:48:53 +0000
commit70d29c582008e44d9e98d2ded201a96d7ee7ba5b (patch)
tree8fe8c7f6fe5fc240010e79c4f09f99a089773196
parent5d95fd1af6d04cbc91ffe9ea24f6a34eb45700b8 (diff)
Resolves SWAMID-2675
-rw-r--r--swamid-2.0/bookings.kib.ki.se-shibboleth.xml112
-rw-r--r--swamid-sp-2.0.mxml1
2 files changed, 113 insertions, 0 deletions
diff --git a/swamid-2.0/bookings.kib.ki.se-shibboleth.xml b/swamid-2.0/bookings.kib.ki.se-shibboleth.xml
new file mode 100644
index 00000000..3e6a94cf
--- /dev/null
+++ b/swamid-2.0/bookings.kib.ki.se-shibboleth.xml
@@ -0,0 +1,112 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://bookings.kib.ki.se/shibboleth">
+ <md:Extensions>
+ <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/">
+ <mdrpi:RegistrationPolicy xml:lang="en">https://www.sunet.se/wp-content/uploads/2016/08/SWAMID-Metadata-Registration-Practice-Statement-v2.pdf</mdrpi:RegistrationPolicy>
+ </mdrpi:RegistrationInfo>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
+ <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue>
+ </samla:Attribute>
+ </mdattr:EntityAttributes>
+ </md:Extensions>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
+ <md:Extensions>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://bookings.kib.ki.se/Shibboleth.sso/Login/KI"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://bookings.kib.ki.se/Shibboleth.sso/Login/KI-test"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://bookings.kib.ki.se/Shibboleth.sso/Login/int.sll.se"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://bookings.kib.ki.se/Shibboleth.sso/Login/acc.sll.se"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://bookings.kib.ki.se/Shibboleth.sso/Login/idp.sll.se"/>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">Karolinska Institutet Universitetsbiblioteket</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Karolinska Institutet University Library</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">SWAMID Identitetsleverantör för Karolinska Institutet Universitetsbiblioteket.</mdui:Description>
+ <mdui:Description xml:lang="en">SWAMID Identity Provider for Karolinska Institutet University Library.</mdui:Description>
+ <mdui:InformationURL xml:lang="sv">https://kib.ki.se/om-webbplatsen</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://kib.ki.se/en/about-website</mdui:InformationURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:KeyName>bookings.kib.ki.se</ds:KeyName>
+ <ds:X509Data>
+ <ds:X509SubjectName>CN=bookings.kib.ki.se</ds:X509SubjectName>
+ <ds:X509Certificate>MIIECDCCAnCgAwIBAgIUZryWpkMggbHTi+oLgMrJtnJfQ+gwDQYJKoZIhvcNAQEL
+BQAwHTEbMBkGA1UEAxMSYm9va2luZ3Mua2liLmtpLnNlMB4XDTIwMDIxNDExMDA0
+NVoXDTMwMDIxMTExMDA0NVowHTEbMBkGA1UEAxMSYm9va2luZ3Mua2liLmtpLnNl
+MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAwMe6LosuUqnQbYNxxQ32
+/HAjcIa7S0ROtGcD4URdQ2pS4DaGvc0BCoPMmvcMva9WIYBRBvclMrE3B2DuQ8vs
+4MayTeMxbgoyRRRmuYEeHUnTY6GWvRm+R/a2w8tfF6IPGttuDnL68/03UMzqIJcp
+IwPXlK2YyejPHTopk96M0rNcynF1QXwp5TSRSZ69qulG8LLL4Wao1NiO4Uu33Iq3
+3eUsUcfGTvxVf81w9XCDGe2QcpI4Cql8BesPo5sGFfc34swIox7quzf/8ARsmzMy
+r4ivrVgrMR5peoRG7dN1KHVyrWEdRBpfslhzMFRSO0ZoR6zn2PW0qzpbbbG1+dqu
+YMNAIniVbyWSULJ/yGOMhEw42yzn0arw2urfWUUHj2xxdHQsWCCSi//wzV/+6xAV
+FDxiDUDlRTY0VVfRJd9QMm+Uqd/D5d3g2A/ZcQdz/yHYDrGAwxxmXgNs58LN14tC
+z+s8urWyp8fSfPoNRwVCuPJihS56pBL1Bx6gAB+mrqzRAgMBAAGjQDA+MB0GA1Ud
+EQQWMBSCEmJvb2tpbmdzLmtpYi5raS5zZTAdBgNVHQ4EFgQUeHqtZBsPVw7JTX7O
+gXn33HXb/BAwDQYJKoZIhvcNAQELBQADggGBAD3VvWSy/XybbyAUrMNvAInpboqa
+zSHW0vXOc4xDkjXu1PYJbvUuLldACVt+QEHkb9Bb0IWGkyCDwiADeOOR2fSj2BfU
+xnVg4Xm59Rm2p68nS3ixFaSHMlB1x4Bp/Xy9GQ6XZXs77SXHjyxhVHaMKBHzgSBQ
+jsEOR4w1SHKOzPP0ACqeX5N9otMqzelw9mnCq8lJW0jIav5lClr1MYMK3WMAQHyf
+/Qn3mo8qjCODMFs2z6tu7wYp2kZ96u9jMg5ODw7POxkTIcJd152QY2l+a4hvfM0X
+sz3sqNUO7cbZ6a5ua+Bq1xZ8/eFQfwBGABolxlfCiT+xvSdWpwZGuhACESJn0U4e
+a8g1q7tWclMf6bnz5zX4WmjxGd8tkaju7ZEQinit3g3A0qKdqdXqc3cXT8YCwYAu
++2hE4Kk/D8F4YXK3q0NQR4DAajlFW+zhvxeFPGb1BRvwuSKJoffoDo39R1IlyRr7
+zn8Uq6fIUHLfP4vxCjJIGmGoF4J/bPabGTzBrQ==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
+ </md:KeyDescriptor>
+ <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://bookings.kib.ki.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://bookings.kib.ki.se/Shibboleth.sso/SLO/SOAP"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bookings.kib.ki.se/Shibboleth.sso/SLO/Redirect"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bookings.kib.ki.se/Shibboleth.sso/SLO/POST"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bookings.kib.ki.se/Shibboleth.sso/SLO/Artifact"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://bookings.kib.ki.se/Shibboleth.sso/NIM/SOAP"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bookings.kib.ki.se/Shibboleth.sso/NIM/Redirect"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bookings.kib.ki.se/Shibboleth.sso/NIM/POST"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bookings.kib.ki.se/Shibboleth.sso/NIM/Artifact"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bookings.kib.ki.se/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bookings.kib.ki.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bookings.kib.ki.se/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bookings.kib.ki.se/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bookings.kib.ki.se/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </md:SPSSODescriptor>
+ <md:ContactPerson contactType="support">
+ <md:SurName>IT-support</md:SurName>
+ <md:EmailAddress>mailto:itsupport@kib.ki.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="administrative">
+ <md:SurName>IT-support</md:SurName>
+ <md:EmailAddress>mailto:itsupport@kib.ki.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="technical">
+ <md:SurName>IT-support</md:SurName>
+ <md:EmailAddress>mailto:itsupport@kib.ki.se</md:EmailAddress>
+ </md:ContactPerson>
+</md:EntityDescriptor>
diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml
index 080b62a3..6ba41539 100644
--- a/swamid-sp-2.0.mxml
+++ b/swamid-sp-2.0.mxml
@@ -614,4 +614,5 @@
<xi:include href="swamid-2.0/outscan.outpost24.com-opi-xmlapi-action-showspmetadata.xml"/>
<xi:include href="swamid-2.0/test.redcap.its.umu.se-shibboleth.xml"/>
<xi:include href="swamid-2.0/adfs.artologik.net-adfs-services-trust.xml"/>
+ <xi:include href="swamid-2.0/bookings.kib.ki.se-shibboleth.xml"/>
</md:EntitiesDescriptor>