summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorBjörn Mattsson <bjorn@sunet.se>2023-05-23 16:56:43 +0200
committerBjörn Mattsson <bjorn@sunet.se>2023-05-23 16:56:43 +0200
commitba7260728b5b9c88ad1e05790cb27c5c681d6171 (patch)
tree6ec139e3d3f1cb720efcccfbcfedf4b673866ca0
parent3cf98cb88db6faab5a21a3e0119ea25a876e66a5 (diff)
Updates during MFA hackatonmd-2023-05-23-v02
-rw-r--r--metadata/swamid-2.0/idp.qa.lnu.se-idp-shibboleth.xml71
-rw-r--r--metadata/swamid-edugain/idp.ltu.se-idp-shibboleth.xml114
-rw-r--r--metadata/swamid-edugain/idp3.hig.se-idp-shibboleth.xml74
-rw-r--r--metadata/swamid-testing-idp-1.0.mxml1
-rw-r--r--metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml96
-rw-r--r--metadata/swamid-testing/idp-shibtest.slu.se-idp.xml124
-rw-r--r--metadata/swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml241
-rw-r--r--metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml254
-rw-r--r--metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml72
-rw-r--r--metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml76
-rw-r--r--metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml84
11 files changed, 1121 insertions, 86 deletions
diff --git a/metadata/swamid-2.0/idp.qa.lnu.se-idp-shibboleth.xml b/metadata/swamid-2.0/idp.qa.lnu.se-idp-shibboleth.xml
index f815bc9d..a6262d56 100644
--- a/metadata/swamid-2.0/idp.qa.lnu.se-idp-shibboleth.xml
+++ b/metadata/swamid-2.0/idp.qa.lnu.se-idp-shibboleth.xml
@@ -20,9 +20,80 @@
</samla:Attribute>
<samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
<samla:AttributeValue>http://refeds.org/category/hide-from-discovery</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
</samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">Linnéuniversitetet QA</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Linnaeus University QA</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Quality Assurance Identity Provider för anställda och studenter vid Linnéuniversitetet.</mdui:Description>
+ <mdui:Description xml:lang="en">The Linnaeus University Quality Assurance Identity Provider is used by employees and students at the university.</mdui:Description>
+ <mdui:InformationURL xml:lang="sv">https://lnu.se</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://lnu.se/en</mdui:InformationURL>
+ <mdui:Keywords xml:lang="sv">lnu linné linnæus linne linnaeus linneuniversitetet linnéuniversitetet linnaeus+university</mdui:Keywords>
+ <mdui:Keywords xml:lang="en">lnu linné linnæus linne linnaeus linneuniversitetet linnéuniversitetet linnaeus+university</mdui:Keywords>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://lnu.se/mot-linneuniversitetet/kontakta-och-besoka/personuppgifter/</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://lnu.se/en/meet-linnaeus-university/contact-and-visit-us/personal-data/</mdui:PrivacyStatementURL>
+ <mdui:Logo xml:lang="sv" height="53" width="350">https://idp.lnu.se/logo_swamid.png</mdui:Logo>
+ <mdui:Logo xml:lang="en" height="57" width="350">https://idp.lnu.se/logo_swamid_en.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDIDCCAgigAwIBAgIVALsWLiU0bjznhr0dmYM5Ozs2LvCjMA0GCSqGSIb3DQEB
+ CwUAMBgxFjAUBgNVBAMMDWlkcC5xYS5sbnUuc2UwHhcNMTYwMjExMTM1NDQ5WhcN
+ MzYwMjExMTM1NDQ5WjAYMRYwFAYDVQQDDA1pZHAucWEubG51LnNlMIIBIjANBgkq
+ hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvRXkpNn7yznalCaVC3ZrkoADrgesp0bW
+ 9ntBH4ZzJusycMlLmV6uSc+e+Cvf1RdEDSPiFC5/emp6powMKqatGkPir1lVvtOw
+ 9qN9YharOWLdcKipewLXw1TloKRJbbz8WEA+9lF4aEJ26Bsrs5R4sd4CDSaB+/uR
+ Fl/Kf3pyFrcT+5lXJJU3s+ExUvAT9LJg9MuXjuVKxpfW1fzLeMGP+OyguKpPYVfh
+ fQlb/P9rDbCE7JuSdPEI7PmUzL1m/r2BQVZWKuTSlQdguLUausZO+LF+TG7UCoDL
+ 6QnUV7s+rSIJhiAwi46MGsl/ffOSwg5yD3qSZpP7bcHiOr5YwzJSFQIDAQABo2Ew
+ XzAdBgNVHQ4EFgQUzGqm14Wn313OVa5G6gI+YMJtbLswPgYDVR0RBDcwNYINaWRw
+ LnFhLmxudS5zZYYkaHR0cHM6Ly9pZHAucWEubG51LnNlL2lkcC9zaGliYm9sZXRo
+ MA0GCSqGSIb3DQEBCwUAA4IBAQBXPqKVa61Maj1dldxY6x5f2hL9TLJHGx50eHXY
+ iWlbmgvMq6pzW7zVoaHc46zQdSrHqaomfK2EI+bpE8aY2XpmGM3+IZ46wk5woCs3
+ pWJ2odvhi95dUV0eJovEU3BiJUpHCOkzNZKESemO+YhNtuo76Plnzd6LRDwYIvZ0
+ KM+EK8dK0v1qR1izx6mgLF7ilvys0szQijgmrTIAHeQo47HcU2mZGXSNi+7HKih8
+ BcS85qRJ7DXX3ms1Ukkl9yBAVHNcewPrRAcqed2gHa529IuDJs++UegMv1Eruvn3
+ NIIFZX0z91PiBr4x0e2GUKRLdbKRDRYKZt40ib4dKqK/Ho+d</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDHzCCAgegAwIBAgIUX9/ndzdxOTuID3qLwMXOmUkyhfEwDQYJKoZIhvcNAQEL
+ BQAwGDEWMBQGA1UEAwwNaWRwLnFhLmxudS5zZTAeFw0xNjAyMTExMzU0NDlaFw0z
+ NjAyMTExMzU0NDlaMBgxFjAUBgNVBAMMDWlkcC5xYS5sbnUuc2UwggEiMA0GCSqG
+ SIb3DQEBAQUAA4IBDwAwggEKAoIBAQDRNOOQbJexYAD/wSSbKtMLvtGL0uR/ccFP
+ 9ukiEvloE9Aa82mokRGPjTfyDpPAA42Sfa7jQGAN2ORNN1JCz4tXZbqzqN1tWtmH
+ fxJG7iMR/WMKMkyueRB85bEhW4bE17F5DdZGPk6asIwz1uQdxOe9+wX62kMYMY/e
+ 4tFkpgDd3NPfuMmePg1efukyaLA8FgFck84YOKPliB+etfeclRE8rOrRoWira2Im
+ Uwbmm4L/hunA7iWinS8ElhE/GDHdZESNibMM8ouOU5VD9JA+eEgA7Bmunsth4f3l
+ v1DMUiJpIIqpldE8Kbah+KK5h5r1P+T6SSQXardinxu2T+rSo8tHAgMBAAGjYTBf
+ MB0GA1UdDgQWBBQx/2DV/8jfLuF6lNW6pR+EByoK8TA+BgNVHREENzA1gg1pZHAu
+ cWEubG51LnNlhiRodHRwczovL2lkcC5xYS5sbnUuc2UvaWRwL3NoaWJib2xldGgw
+ DQYJKoZIhvcNAQELBQADggEBAEbCLxAWuO17sm5K+JymG+VEs1QWTg1dxOiRHCgT
+ L2Y13xLiQmh/TFydVz1ZZV3mXofD6n/OxPW2lRljYw5E2QOk+QNBi1o5elwuFfgd
+ nWFwwMOWh9lk3RCaIHSMoijOlMpn2nzv4dKDxmAth2dSgCGPKzvhU3l7Yf0ZDFGK
+ 3Cv1UqXbI3/qeV6eFacjLAT4d3/lGQ9U7DTItVQSSAA7ZSuOiydCm6929iC5NcF2
+ 2EXoujSrwRIk4TN6+IXv36wYx0xeg+2HsHvf5rS5fQ4X5frPHiradBAV2shaey5h
+ bWRd8ky1oAJg1t5Obyk6r5Bpk64j1fe1dfjdIY8DeBneDwo=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.qa.lnu.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">Linnaeus University QA</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Linnéuniversitetet QA</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://idp.qa.lnu.se/idp/shibboleth">
<md:Extensions>
<shibmd:Scope regexp="false">lnu.se</shibmd:Scope>
diff --git a/metadata/swamid-edugain/idp.ltu.se-idp-shibboleth.xml b/metadata/swamid-edugain/idp.ltu.se-idp-shibboleth.xml
index b247b4a1..79467ebc 100644
--- a/metadata/swamid-edugain/idp.ltu.se-idp-shibboleth.xml
+++ b/metadata/swamid-edugain/idp.ltu.se-idp-shibboleth.xml
@@ -14,9 +14,87 @@
<samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue>
<samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue>
<samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ </samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
</samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">Luleå tekniska universitet</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Lulea University of Technology</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Identity Provider för Luleå tekniska universitet</mdui:Description>
+ <mdui:Description xml:lang="en">Identity Provider for Lulea University of Technology</mdui:Description>
+ <mdui:InformationURL xml:lang="sv">http://www.ltu.se</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">http://www.ltu.se/?l=en</mdui:InformationURL>
+ <mdui:Logo xml:lang="sv" height="130" width="250">https://www.ltu.se/image/LTU_logo-sve-smal.png</mdui:Logo>
+ <mdui:Logo xml:lang="en" height="130" width="250">https://www.ltu.se/image/LTU_logo-eng-smal.png</mdui:Logo>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://www.ltu.se/student/Tjanster-och-service/IT-support-student/Din-anvandare/Behandling-av-personuppgifter-vid-aktivering-och-losenordsaterstallning-av-studentkonton-1.224237</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ltu.se/student/Tjanster-och-service/IT-support-student/Din-anvandare/Behandling-av-personuppgifter-vid-aktivering-och-losenordsaterstallning-av-studentkonton-1.224237?l=en</mdui:PrivacyStatementURL>
+ <mdui:Keywords xml:lang="sv">LTU lulea+tekniska+universitet lulea+university+of+technology</mdui:Keywords>
+ <mdui:Keywords xml:lang="en">LTU lulea+tekniska+universitet lulea+university+of+technology</mdui:Keywords>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAOGyXLVRoSiwOvBslVqyO8H8MUpkMA0GCSqGSIb3DQEB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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAJtIqlatDGFOju804cuPymREGdCnMA0GCSqGSIb3DQEB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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibmfa.test.swamid.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">Lulea University of Technology</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Luleå tekniska universitet</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://www.ltu.se/ltu/it-support/loginerror-1.207338">
<md:Extensions>
<shibmd:Scope regexp="false">ltu.se</shibmd:Scope>
@@ -42,8 +120,7 @@
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDEzCCAfugAwIBAgIUEF1BMNIKMVmOiuK2uUY7yMT/FZEwDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIDEzCCAfugAwIBAgIUEF1BMNIKMVmOiuK2uUY7yMT/FZEwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLmx0dS5zZTAeFw0xNjEwMDMxMDU0NDRaFw0zNjEw
MDMxMDU0NDRaMBUxEzARBgNVBAMMCmlkcC5sdHUuc2UwggEiMA0GCSqGSIb3DQEB
AQUAA4IBDwAwggEKAoIBAQC77HPEN3ywPEqpkuv92tbanirV61gX3Eg9LFBPGhXM
@@ -59,16 +136,14 @@ wOWcty/UyZQpxHZucSXumj11iSeIY8FQ+hH0IusDg32esITifj67nNZaWsY7KPVg
IPq41WLphw/6UPHBtv3KkG3dwhx7ZglIc1uf904zLZyl5W5t4KSSues7E9yWcURV
QbftDOzCzlTCiqH4LAOrNzY5T03E/NzoDCynKGpML+KLHqH8yCFHzpPzXopprG+f
1aH7y6eF6sFdeeD7xbvPNNqRF1dLIz2N997LrmEjLQGRUPhCeaXo0kNMDxzJMbAc
-Imrso4dObDk/xFdJSbWgmKWEnvUc2+o=
- </ds:X509Certificate>
+Imrso4dObDk/xFdJSbWgmKWEnvUc2+o=</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDFDCCAfygAwIBAgIVAOGyXLVRoSiwOvBslVqyO8H8MUpkMA0GCSqGSIb3DQEB
+ <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAOGyXLVRoSiwOvBslVqyO8H8MUpkMA0GCSqGSIb3DQEB
CwUAMBUxEzARBgNVBAMMCmlkcC5sdHUuc2UwHhcNMTYxMDAzMTA1NDQzWhcNMzYx
MDAzMTA1NDQzWjAVMRMwEQYDVQQDDAppZHAubHR1LnNlMIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAi1hFx0uyuGSOAI4syizgW1tHwR5mtSrzmeNDBFYM
@@ -84,16 +159,14 @@ CwUAA4IBAQADhDlm/9jU3jn49SjTtYbvBCvGj4pQXit0m0uRo6nFpYK3IZFTlUA6
olQ/A1/53G6ibw7zQM7G9luRuE9NsIlUp40+XmSkZAb+ywaPG74OHJo2FzIbwC20
+donlVlCl22RG0hRqoyKRjFaDr6wskvw5kXqqjcnCyEp81HiJHu9DefFiKSy7knQ
ZVSpDwl0ijbRGFwWRPYwOf+M2H8b49UKq3D0nhXRhynPP+txW7xwFg4gIsqg4kgC
-X4dei9FUiIpNKgYziKf/tzbvJQqiV18l
- </ds:X509Certificate>
+X4dei9FUiIpNKgYziKf/tzbvJQqiV18l</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDFDCCAfygAwIBAgIVAJtIqlatDGFOju804cuPymREGdCnMA0GCSqGSIb3DQEB
+ <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAJtIqlatDGFOju804cuPymREGdCnMA0GCSqGSIb3DQEB
CwUAMBUxEzARBgNVBAMMCmlkcC5sdHUuc2UwHhcNMTYxMDAzMTA1NDQ0WhcNMzYx
MDAzMTA1NDQ0WjAVMRMwEQYDVQQDDAppZHAubHR1LnNlMIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEApssNdGrdf68j/MkcesycaSHS09IOOJOfvKAMsTS3
@@ -109,8 +182,7 @@ TmDtc3WkxSMtJ3sk6JXr+SHKCMdDoFhUH2R/djGEnjLURtMLhEeMIEIk3tY3v4cO
7SoVlJMf+3olbpvWzd9DzkONU9U/CcY6si0FWXFnzWkkJOzCdJcvIpY2eQ5ToBvr
uowwVDOkLMkwJEKleCa0iFm6oRGmGOGavnymCFZSG2BCikRllS5J0j0Pj3ZYwc5p
MfScMYUVxXQNrKv/yODSBaeDgqvxmTzKjSyNUShynz+WXbFOxV/HlCKtaaZNh2Zv
-ZdLXjuEF1cFQB3AAK9PIEmkLc69IXjPQ
- </ds:X509Certificate>
+ZdLXjuEF1cFQB3AAK9PIEmkLc69IXjPQ</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
@@ -129,8 +201,7 @@ ZdLXjuEF1cFQB3AAK9PIEmkLc69IXjPQ
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDEzCCAfugAwIBAgIUEF1BMNIKMVmOiuK2uUY7yMT/FZEwDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIDEzCCAfugAwIBAgIUEF1BMNIKMVmOiuK2uUY7yMT/FZEwDQYJKoZIhvcNAQEL
BQAwFTETMBEGA1UEAwwKaWRwLmx0dS5zZTAeFw0xNjEwMDMxMDU0NDRaFw0zNjEw
MDMxMDU0NDRaMBUxEzARBgNVBAMMCmlkcC5sdHUuc2UwggEiMA0GCSqGSIb3DQEB
AQUAA4IBDwAwggEKAoIBAQC77HPEN3ywPEqpkuv92tbanirV61gX3Eg9LFBPGhXM
@@ -146,16 +217,14 @@ wOWcty/UyZQpxHZucSXumj11iSeIY8FQ+hH0IusDg32esITifj67nNZaWsY7KPVg
IPq41WLphw/6UPHBtv3KkG3dwhx7ZglIc1uf904zLZyl5W5t4KSSues7E9yWcURV
QbftDOzCzlTCiqH4LAOrNzY5T03E/NzoDCynKGpML+KLHqH8yCFHzpPzXopprG+f
1aH7y6eF6sFdeeD7xbvPNNqRF1dLIz2N997LrmEjLQGRUPhCeaXo0kNMDxzJMbAc
-Imrso4dObDk/xFdJSbWgmKWEnvUc2+o=
- </ds:X509Certificate>
+Imrso4dObDk/xFdJSbWgmKWEnvUc2+o=</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDFDCCAfygAwIBAgIVAOGyXLVRoSiwOvBslVqyO8H8MUpkMA0GCSqGSIb3DQEB
+ <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAOGyXLVRoSiwOvBslVqyO8H8MUpkMA0GCSqGSIb3DQEB
CwUAMBUxEzARBgNVBAMMCmlkcC5sdHUuc2UwHhcNMTYxMDAzMTA1NDQzWhcNMzYx
MDAzMTA1NDQzWjAVMRMwEQYDVQQDDAppZHAubHR1LnNlMIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEAi1hFx0uyuGSOAI4syizgW1tHwR5mtSrzmeNDBFYM
@@ -171,16 +240,14 @@ CwUAA4IBAQADhDlm/9jU3jn49SjTtYbvBCvGj4pQXit0m0uRo6nFpYK3IZFTlUA6
olQ/A1/53G6ibw7zQM7G9luRuE9NsIlUp40+XmSkZAb+ywaPG74OHJo2FzIbwC20
+donlVlCl22RG0hRqoyKRjFaDr6wskvw5kXqqjcnCyEp81HiJHu9DefFiKSy7knQ
ZVSpDwl0ijbRGFwWRPYwOf+M2H8b49UKq3D0nhXRhynPP+txW7xwFg4gIsqg4kgC
-X4dei9FUiIpNKgYziKf/tzbvJQqiV18l
- </ds:X509Certificate>
+X4dei9FUiIpNKgYziKf/tzbvJQqiV18l</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDFDCCAfygAwIBAgIVAJtIqlatDGFOju804cuPymREGdCnMA0GCSqGSIb3DQEB
+ <ds:X509Certificate>MIIDFDCCAfygAwIBAgIVAJtIqlatDGFOju804cuPymREGdCnMA0GCSqGSIb3DQEB
CwUAMBUxEzARBgNVBAMMCmlkcC5sdHUuc2UwHhcNMTYxMDAzMTA1NDQ0WhcNMzYx
MDAzMTA1NDQ0WjAVMRMwEQYDVQQDDAppZHAubHR1LnNlMIIBIjANBgkqhkiG9w0B
AQEFAAOCAQ8AMIIBCgKCAQEApssNdGrdf68j/MkcesycaSHS09IOOJOfvKAMsTS3
@@ -196,8 +263,7 @@ TmDtc3WkxSMtJ3sk6JXr+SHKCMdDoFhUH2R/djGEnjLURtMLhEeMIEIk3tY3v4cO
7SoVlJMf+3olbpvWzd9DzkONU9U/CcY6si0FWXFnzWkkJOzCdJcvIpY2eQ5ToBvr
uowwVDOkLMkwJEKleCa0iFm6oRGmGOGavnymCFZSG2BCikRllS5J0j0Pj3ZYwc5p
MfScMYUVxXQNrKv/yODSBaeDgqvxmTzKjSyNUShynz+WXbFOxV/HlCKtaaZNh2Zv
-ZdLXjuEF1cFQB3AAK9PIEmkLc69IXjPQ
- </ds:X509Certificate>
+ZdLXjuEF1cFQB3AAK9PIEmkLc69IXjPQ</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
diff --git a/metadata/swamid-edugain/idp3.hig.se-idp-shibboleth.xml b/metadata/swamid-edugain/idp3.hig.se-idp-shibboleth.xml
index 4d9b6a6b..626561d6 100644
--- a/metadata/swamid-edugain/idp3.hig.se-idp-shibboleth.xml
+++ b/metadata/swamid-edugain/idp3.hig.se-idp-shibboleth.xml
@@ -19,6 +19,10 @@
<samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue>
<samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
</samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ </samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://idp3.hig.se/idp/shibboleth">
@@ -124,6 +128,76 @@ uSUv8QvuQcOa9kYsSNH4o1+qTVp8mrFCghss</ds:X509Certificate>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp3.hig.se/idp/profile/SAML2/POST/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp3.hig.se/idp/profile/SAML2/Redirect/SSO"/>
</md:IDPSSODescriptor>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">Högskolan i Gävle SP</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">University of Gävle SP</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Identity Provider för anställda och studenter vid Högskolan i Gävle. SP</mdui:Description>
+ <mdui:Description xml:lang="en">The University of Gävle Identity Provider is used by employees and students at the university. SP</mdui:Description>
+ <mdui:Logo xml:lang="en" height="83" width="94">https://reset.hig.se/head/loggaengelska.png</mdui:Logo>
+ <mdui:Keywords xml:lang="sv">gävle gavle hig</mdui:Keywords>
+ <mdui:Keywords xml:lang="en">gävle gavle hig</mdui:Keywords>
+ <mdui:InformationURL xml:lang="sv">https://hig.se/Ext/Sv/Om-Hogskolan.html</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://hig.se/Ext/En/University-of-Gavle/About-the-University.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://www.hig.se/Ext/Sv/-Om-webbplatsen/Om-webbplatsen/Behandling-av-personuppgifter---IDP.html</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hig.se/Ext/En/University-of-Gavle/Om-webbplatsen/About-the-website/Processing-of-personal-data---IDP.html</mdui:PrivacyStatementURL>
+ <mdui:Logo xml:lang="sv" height="83" width="94">https://reset.hig.se/head/logga3.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIURDaPmh4fojI5RTQlsw6odpGuJ9IwDQYJKoZIhvcNAQEL
+BQAwFjEUMBIGA1UEAwwLaWRwMy5oaWcuc2UwHhcNMTYxMTE2MTQzNDI1WhcNMzYx
+MTE2MTQzNDI1WjAWMRQwEgYDVQQDDAtpZHAzLmhpZy5zZTCCASIwDQYJKoZIhvcN
+AQEBBQADggEPADCCAQoCggEBAJNac0ev7kxZgrXM1GL1XM3rnBiD8PsiaFHFB5fn
+hXKrmDEtb1gXSp8ZS5ZDkZdyOW1LHWGkflGdR1y5LfmZUdTI3LGAwUx+5QgHggQd
+LSB9x5kLP3m2RE/cmFV9Ec0CAyoizbpKcoYuBjCN/YfQH4u6ZtWbrPBIhEZ9tF70
+HHJ26e+6UXWmFzw2BHv9BJ47XywJg3pbQ+ozhV/kRm727YyyxAb2s4j69dtpWcxM
+bpaHbZf3ZZUwODBFY+wlVWwL2GSZomBTIxSdWyjUBmdxFnWmtrP7gu1MqTXOMaGm
+90KJbmvNko9hw0wD1EbkNL7LTjRhjuUIaOSZuOUUXjjFBkUCAwEAAaNdMFswHQYD
+VR0OBBYEFKkedXD1X7fDQXcCyWHjSWf85AGhMDoGA1UdEQQzMDGCC2lkcDMuaGln
+LnNlhiJodHRwczovL2lkcDMuaGlnLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
+DQEBCwUAA4IBAQBcHSpCvSXvIqjKu1z6L51V6t6joTmqDUYeuQG6wPeMNXuNojI5
+zuIv4hvKuLUfyjryH8igCl8361zkjkiOw5vJqCTIpmIsH+OkxqL88H6GOr2jzAQ5
+53f8zLmNSi6ThwTWRfUIGc7qu+zbjPUh3fi3JRiJXmye8DiOvr0vTOManWtsnab5
++70k82K16/LTroAtsoL5ILTpP0XH/f5UzEnrUP5seaFMP+zA4n2ps4jc1h7kLkfb
+UAZ6TEcqZzYGuUQhgz7Q4dwexohnWyfJXSzADbEgxqYrG6M4OUhMsVSYwsx06oQz
+MfV1UqCXysIAIN4hzYWJPMBj/EBD8cha92n8</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDFzCCAf+gAwIBAgIUd7xvAjohRdOXVDSf0wu3l75uPbMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp3.hig.se.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">University of Gävle SP</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Högskolan i Gävle SP</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
<md:Extensions>
<shibmd:Scope regexp="false">hig.se</shibmd:Scope>
diff --git a/metadata/swamid-testing-idp-1.0.mxml b/metadata/swamid-testing-idp-1.0.mxml
index ad64d2c3..1a0887ac 100644
--- a/metadata/swamid-testing-idp-1.0.mxml
+++ b/metadata/swamid-testing-idp-1.0.mxml
@@ -23,6 +23,7 @@
<xi:include href="swamid-testing/idp2.it.gu.se-idp-shibboleth.xml"/>
<xi:include href="swamid-testing/idpproxy.dev.eduid.se-idp.xml"/>
<xi:include href="swamid-testing/idptest.it.gu.se-adfs-services-trust.xml"/>
+ <xi:include href="swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml"/>
<xi:include href="swamid-testing/login-dev.du.se-idp-shibboleth.xml"/>
<xi:include href="swamid-testing/login.temp1235.hhs.se-adfs-services-trust.xml"/>
<xi:include href="swamid-testing/login.tst.ki.se-idp-shibboleth.xml"/>
diff --git a/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml b/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml
index 9686ce7f..0c32cabe 100644
--- a/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml
+++ b/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml
@@ -18,6 +18,10 @@
<samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
<samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
</samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ </samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://hbidp-test.test.hb.se/idp/shibboleth">
@@ -164,6 +168,98 @@ O1aA7Vc=</ds:X509Certificate>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hbidp-test.test.hb.se/idp/profile/SAML2/POST-SimpleSign/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hbidp-test.test.hb.se/idp/profile/SAML2/Redirect/SSO"/>
</md:IDPSSODescriptor>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">Högskolan i Borås - Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">University of Borås - Test</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Test Identity Provider för anställda och studenter vid Högskolan i Borås.</mdui:Description>
+ <mdui:Description xml:lang="en">Test Identity Provider for employees and students at Borås University.</mdui:Description>
+ <mdui:InformationURL xml:lang="sv">http://www.hb.se/Om-hogskolan/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://www.hb.se/en/About-UB/</mdui:InformationURL>
+ <mdui:Logo xml:lang="sv" height="71" width="350">https://logga.hb.se/HB_logo_sv_350px.png</mdui:Logo>
+ <mdui:Logo xml:lang="en" height="67" width="350">https://logga.hb.se/HB_logo_en_350px.png</mdui:Logo>
+ <mdui:Keywords xml:lang="sv">hb högskolan+i+borås hogskolan+i+boras textilhogskolan textilhögskolan bibliotekshogskolan bibliotekshögskolan university+of+borås textile+university+of+borås university+of+boras textile+university+of+boras boras+university+of+library+scieence borås+university+of+library+science</mdui:Keywords>
+ <mdui:Keywords xml:lang="en">hb högskolan+i+borås hogskolan+i+boras textilhogskolan textilhögskolan bibliotekshogskolan bibliotekshögskolan university+of+borås textile+university+of+borås university+of+boras textile+university+of+boras boras+university+of+library+scieence borås+university+of+library+science</mdui:Keywords>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://www.hb.se/genvagar/om-webbplatsen/integritetspolicy/</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hb.se/en/shortcuts/about-the-site/privacy-policy/</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIFETCCAvmgAwIBAgIUXnD1F3XbyCf+Jqb8RkTasy3fWQ8wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIFETCCAvmgAwIBAgIUAWBT8/bGYBTu+BX/TRYpyvIC4nUwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibmfa.test.swamid.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">University of Borås - Test</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Högskolan i Borås - Test</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
<md:Extensions>
<shibmd:Scope regexp="false">hb.se</shibmd:Scope>
diff --git a/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml b/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml
index 125b0dd1..c1cb1683 100644
--- a/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml
+++ b/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml
@@ -17,6 +17,10 @@
<samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue>
<samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue>
</samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ </samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://idp-shibtest.slu.se/idp">
@@ -35,12 +39,10 @@
<mdui:Logo xml:lang="en" height="102" width="102">https://idp-shibtest.slu.se/images/logo.png</mdui:Logo>
</mdui:UIInfo>
</md:Extensions>
- <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL
BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1
NzU3WhcNNDAwOTA3MDg1NzU3WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs
dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALv1eV6CikXVLXZb
@@ -62,16 +64,14 @@ CdYsBNVA9CGxNQmvO7sgdC+rOjj4r05as/XczXHwKAwjnuQnOgTGoimNYAqvIM5q
qX2ghl3ZLngKmPK+CZSBiLRYPqmzaBglFHEP+zTDWAkauajY3YFsVBUKmRdXOuEq
6bBj5Cvi6v3GqEosbFsdoUqOZphdbyUuo78Irg+TijAXat+VM5YA/YWjoi9buexe
rbmBK2bCILRtcGsMPk3uMUsq0Jn6LYrHLzCl1ZRgG6HHwGXrbBqdanHGHoJGACtC
-lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g==
- </ds:X509Certificate>
+lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL
BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1
NzU0WhcNNDAwOTA3MDg1NzU0WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs
dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALKMy258/b8UEUfM
@@ -93,16 +93,14 @@ O5AvgTSPdY8UzssqmE5add93yeMlkbDbLgDuLmOf/MT0Q0DQGOpVy18Fs9nD9iwz
BtgLIW+NSUEKwSIbAquFIxcNJLwDlvdLkmreRxrcr1Q3TnUsT0dqyk0Be9wMukQm
zwC6BS/r7dT3EKRlywxxmVr0V6TzeXbX2Ibspjndp7zQz3hb0not/IWUEMvZojgO
50NDCxzWH5CWdUuN1hvAVcruGwJ2UKbgQMAf+3K6kgUeWwbSo+ENo52Mr4jsOdcj
-fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA==
- </ds:X509Certificate>
+fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL
BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1
NzU2WhcNNDAwOTA3MDg1NzU2WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs
dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIoI0cm30Fp2N4Bv
@@ -124,8 +122,7 @@ QRRt/b1drYL93EeD+pvGx3nUI/oyS4n9PLiIKtUx6Bm4hlc0ByW7y/hZp6dmPsk+
hmdVa6a6eRuKkGnzGpr3FzbH723+BPfLqEz6Wy51X8ER7ngvjIvbJykRJHWS/E1A
6ipNj79/PyC9nSwTuf49Djs1bY1Gky5Dj5n+aG/gPcPGbxmrf5CKUPxLnwTbx+tg
jc1JNTh2kaMuVtUXytuU6+dTEHSi6u4BqT6Utn103E+nWQlAXsJSA6kWegWT16z8
-osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==
- </ds:X509Certificate>
+osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
@@ -138,16 +135,96 @@ osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==
<md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" ns1:supportsRequestedAttributes="true" Location="https://idp-shibtest.slu.se/idp/profile/SAML2/POST/SSO"/>
<md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp-shibtest.slu.se/idp/profile/Shibboleth/SSO"/>
</md:IDPSSODescriptor>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">SLU Shibboleth Idp Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">SLU Shibboleth Idp Test</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Test Shibboleth Service Provider för SLU.</mdui:Description>
+ <mdui:Description xml:lang="en">Test Shibboleth Service Provider for SLU.</mdui:Description>
+ <mdui:InformationURL xml:lang="sv">https://idp-shibtest.slu.se/info/om.html</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://idp-shibtest.slu.se/info/about.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://idp-shibtest.slu.se/info/integritet.html</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://idp-shibtest.slu.se/info/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo xml:lang="sv" height="102" width="102">https://idp-shibtest.slu.se/images/logo.png</mdui:Logo>
+ <mdui:Logo xml:lang="en" height="102" width="102">https://idp-shibtest.slu.se/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-shibtest.slu.se:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-shibtest.slu.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-shibtest.slu.se:8443/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">SLU Shibboleth Idp Test</md:ServiceName>
+ <md:ServiceName xml:lang="sv">SLU Shibboleth Idp Test</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
<md:Extensions>
<shibmd:Scope regexp="false">slu.se</shibmd:Scope>
</md:Extensions>
- <!-- First signing certificate is BackChannel, the Second is FrontChannel -->
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL
BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1
NzU3WhcNNDAwOTA3MDg1NzU3WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs
dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALv1eV6CikXVLXZb
@@ -169,16 +246,14 @@ CdYsBNVA9CGxNQmvO7sgdC+rOjj4r05as/XczXHwKAwjnuQnOgTGoimNYAqvIM5q
qX2ghl3ZLngKmPK+CZSBiLRYPqmzaBglFHEP+zTDWAkauajY3YFsVBUKmRdXOuEq
6bBj5Cvi6v3GqEosbFsdoUqOZphdbyUuo78Irg+TijAXat+VM5YA/YWjoi9buexe
rbmBK2bCILRtcGsMPk3uMUsq0Jn6LYrHLzCl1ZRgG6HHwGXrbBqdanHGHoJGACtC
-lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g==
- </ds:X509Certificate>
+lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL
BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1
NzU0WhcNNDAwOTA3MDg1NzU0WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs
dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALKMy258/b8UEUfM
@@ -200,16 +275,14 @@ O5AvgTSPdY8UzssqmE5add93yeMlkbDbLgDuLmOf/MT0Q0DQGOpVy18Fs9nD9iwz
BtgLIW+NSUEKwSIbAquFIxcNJLwDlvdLkmreRxrcr1Q3TnUsT0dqyk0Be9wMukQm
zwC6BS/r7dT3EKRlywxxmVr0V6TzeXbX2Ibspjndp7zQz3hb0not/IWUEMvZojgO
50NDCxzWH5CWdUuN1hvAVcruGwJ2UKbgQMAf+3K6kgUeWwbSo+ENo52Mr4jsOdcj
-fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA==
- </ds:X509Certificate>
+fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL
+ <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL
BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1
NzU2WhcNNDAwOTA3MDg1NzU2WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs
dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIoI0cm30Fp2N4Bv
@@ -231,8 +304,7 @@ QRRt/b1drYL93EeD+pvGx3nUI/oyS4n9PLiIKtUx6Bm4hlc0ByW7y/hZp6dmPsk+
hmdVa6a6eRuKkGnzGpr3FzbH723+BPfLqEz6Wy51X8ER7ngvjIvbJykRJHWS/E1A
6ipNj79/PyC9nSwTuf49Djs1bY1Gky5Dj5n+aG/gPcPGbxmrf5CKUPxLnwTbx+tg
jc1JNTh2kaMuVtUXytuU6+dTEHSi6u4BqT6Utn103E+nWQlAXsJSA6kWegWT16z8
-osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==
- </ds:X509Certificate>
+osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
diff --git a/metadata/swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml b/metadata/swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml
new file mode 100644
index 00000000..faaa00e1
--- /dev/null
+++ b/metadata/swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml
@@ -0,0 +1,241 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kitstlogin03.user.ki.se/idp/shibboleth">
+ <md:Extensions>
+ <mdattr:EntityAttributes>
+ <samla:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue>
+ <samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/sirtfi</samla:AttributeValue>
+ </samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue>
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ <samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue>
+ </samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ </samla:Attribute>
+ </mdattr:EntityAttributes>
+ <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2023-05-23T13:35:14Z">
+ <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
+ </mdrpi:RegistrationInfo>
+ </md:Extensions>
+ <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://login.tst.ki.se/idp/shibboleth">
+ <md:Extensions>
+ <shibmd:Scope regexp="false">ki.se</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Karolinska Institutet test IdP</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="sv">Karolinska Institutet test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Karolinska Institutet test IdP</mdui:Description>
+ <mdui:Description xml:lang="sv">Karolinska Institutet test IdP</mdui:Description>
+ <mdui:Logo xml:lang="en" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo>
+ <mdui:Logo xml:lang="sv" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">https://staff.ki.se/service-definition-saml2-websso-identity-provider</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://staff.ki.se/rules-and-regulations-for-the-management-of-personal-information-within-the-identity-provider-idp</mdui:PrivacyStatementURL>
+ <mdui:InformationURL xml:lang="sv">https://medarbetare.ki.se/tjanstebeskrivning-saml2-websso-identitetsutgivare</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://medarbetare.ki.se/policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-identity-provider-idp</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVANn8y/AQRmrw3BXYraPBLAEE7gKtMA0GCSqGSIb3DQEB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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUZavdR7VBjCyadcYTYGSw0IyoH58wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVALBgBInBAVhcW99wf5MMCoY/Ess9MA0GCSqGSIb3DQEB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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kitstlogin03.user.ki.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" ns1:supportsRequestedAttributes="true" Location="https://kitstlogin03.user.ki.se/idp/profile/SAML2/Redirect/SSO"/>
+ <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" ns1:supportsRequestedAttributes="true" Location="https://kitstlogin03.user.ki.se/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" ns1:supportsRequestedAttributes="true" Location="https://kitstlogin03.user.ki.se/idp/profile/SAML2/POST/SSO"/>
+ </md:IDPSSODescriptor>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Karolinska Institutet test IdP SP</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="sv">Karolinska Institutet test IdP SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Karolinska Institutet test IdP SP</mdui:Description>
+ <mdui:Description xml:lang="sv">Karolinska Institutet test IdP SP</mdui:Description>
+ <mdui:Logo xml:lang="en" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo>
+ <mdui:Logo xml:lang="sv" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">https://staff.ki.se/service-definition-saml2-websso-identity-provider</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://staff.ki.se/rules-and-regulations-for-the-management-of-personal-information-within-the-identity-provider-idp</mdui:PrivacyStatementURL>
+ <mdui:InformationURL xml:lang="sv">https://medarbetare.ki.se/tjanstebeskrivning-saml2-websso-identitetsutgivare</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://medarbetare.ki.se/policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-identity-provider-idp</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUZavdR7VBjCyadcYTYGSw0IyoH58wDQYJKoZIhvcNAQEL
+BQAwGjEYMBYGA1UEAwwPbG9naW4udHN0LmtpLnNlMB4XDTIxMDQwNzEyMzUzNFoX
+DTQxMDQwNzEyMzUzNFowGjEYMBYGA1UEAwwPbG9naW4udHN0LmtpLnNlMIIBojAN
+BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAh30nX0vLYubmg2cEUOvzBZg9qxGn
+rR6w4JUt5UfsQQoKmPgUjDxuQgidYyBiuHAq3XwRkKa0qx96ON778vXyvgjcF4Vz
+0utBh/AUO4Uo38hTVnNwr6vE5YBlB/5T0yTa/eX3pa96BZFWIBJ5n0OaBEZEx6/k
+Qmsx2k6BbHzhxYiG24wxu04Iot4XtiD2iyLz8/6idGTAZu0dFv0w/j7im5SqlKy3
+pPrLPwXIuet71NxAwP4bGMZL0i4I1OyagH8bZUdcBiEGUu3TKecx20n7Siidqif1
+UjrwnvhX2HTpfedZ/4xa2RoQFMV3NrLAzZ2W5sxCDGH0InFzRW3uqCb7b4HUBIoY
+/OkdECqmzoQl1CGIgBCv7IkFhTjmRfGp1JrX1qnQfKZkOCMJ8Qz0DEMzJuM3E5r0
+mxsd4CbxjyzYU4XLlOR5uubVmqUmb8CEcW829urwnh5dAq548S207pXJqKre8dxM
+AfvYnkZHgR48nRhy9p3r0RRu0qp4KX44VVM/AgMBAAGjZTBjMB0GA1UdDgQWBBT7
+0/YE78UeD0KBvVb2/pyJMgEPaDBCBgNVHREEOzA5gg9sb2dpbi50c3Qua2kuc2WG
+Jmh0dHBzOi8vbG9naW4udHN0LmtpLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
+DQEBCwUAA4IBgQAKrPzc0tDSpNaqgP6Jgs94RZSoHXafFsrsdNa2yYTHv2vrYpQr
+qRsu5phFBigGSCSjEsmCacpPVhIzFhsOFlubvB8aJTjgN5bavMGsWE9j1tK3QOFt
+XmlJA1Ey8nX6MZa1kyAHBW+iIrH5Ort6KUe1cHscUfs8XjX5ojTl/R92xUjeGnum
+LJi8ZeaoIPejpa/jkEtuZK87nU/J2Iy0fX7SrJjcma3hHq7aqdrc1wSIHElo/JMb
+Y2myx7OUJEvVijLWTB6ZDVzd/AHEk7N+no0u1bsT4ux5n/TP3zmx2+xBlMmvFLHN
+5TNvF5HnkPH5/e5Y2bHuIT+A0oJCSZwx7LNYLFU7BBRwrMsDrfK6Ut55IQYlq2Qd
+MlS2rRXvQ7AWk7HnfcT8NdWSnpTKt8MDqaR9vHocZkNxyKmCNyRDlj/yBK3k9cY8
++TEPOkimAgXUXbJBna5pH6PD3tpYmbYk3K45C/B/QYGDpCggi8G5OzTIBwDMASaI
+OE3J+Gw3YG29EFc=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVALBgBInBAVhcW99wf5MMCoY/Ess9MA0GCSqGSIb3DQEB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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kitstlogin03.user.ki.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">Karolinska Institutet test IdP SP</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Karolinska Institutet test IdP SP</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
+ <md:Organization>
+ <md:OrganizationName xml:lang="en">Karolinska Institutet</md:OrganizationName>
+ <md:OrganizationName xml:lang="sv">Karolinska Institutet</md:OrganizationName>
+ <md:OrganizationDisplayName xml:lang="sv">Karolinska Institutet</md:OrganizationDisplayName>
+ <md:OrganizationDisplayName xml:lang="en">Karolinska Institutet</md:OrganizationDisplayName>
+ <md:OrganizationURL xml:lang="en">https://ki.se</md:OrganizationURL>
+ <md:OrganizationURL xml:lang="sv">https://ki.se</md:OrganizationURL>
+ </md:Organization>
+ <md:ContactPerson contactType="administrative">
+ <md:Company>Karolinska Institutet</md:Company>
+ <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="technical">
+ <md:Company>Karolinska Institutet</md:Company>
+ <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="support">
+ <md:Company>Karolinska Institutet</md:Company>
+ <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress>
+ <md:TelephoneNumber>+46 8 524 82222</md:TelephoneNumber>
+ </md:ContactPerson>
+ <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <md:GivenName>Security Response Team</md:GivenName>
+ <md:EmailAddress>mailto:abuse@ki.se</md:EmailAddress>
+ </md:ContactPerson>
+</md:EntityDescriptor>
diff --git a/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml b/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml
index a5895c5e..ae0018ee 100644
--- a/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml
+++ b/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml
@@ -5,45 +5,70 @@
<mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<mdattr:EntityAttributes>
- <samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category-support">
- <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
- <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue>
- <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue>
- <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue>
- <samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue>
- <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
- </samla:Attribute>
<samla:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue>
<samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue>
</samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue>
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue>
+ </samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ </samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
- <md:IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://login-dev.du.se/idp/shibboleth">
+ <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://login-dev.du.se/idp/shibboleth">
<md:Extensions>
<shibmd:Scope regexp="false">du.se</shibmd:Scope>
<mdui:UIInfo>
- <mdui:DisplayName xml:lang="en">Dalarna University (TEST)</mdui:DisplayName>
- <mdui:DisplayName xml:lang="sv">Högskolan Dalarna (TEST)</mdui:DisplayName>
- <mdui:Description xml:lang="sv">Högskolan Dalarna (ENDAST TEST)</mdui:Description>
<mdui:Description xml:lang="en">Dalarna University (ONLY FOR TESTING)</mdui:Description>
- <mdui:Keywords xml:lang="en">hda du</mdui:Keywords>
- <mdui:Keywords xml:lang="sv">hda du</mdui:Keywords>
- <mdui:Logo xml:lang="sv" height="16" width="16">https://login.du.se/duse-logo-16x16.png</mdui:Logo>
- <mdui:Logo xml:lang="en" height="16" width="16">https://login.du.se/duse-logo-16x16.png</mdui:Logo>
- <mdui:Logo xml:lang="sv" height="146" width="350">https://login.du.se/duse-logo-sv.png</mdui:Logo>
- <mdui:Logo xml:lang="en" height="146" width="350">https://login.du.se/duse-logo-en.png</mdui:Logo>
+ <mdui:DisplayName xml:lang="en">Dalarna University (TEST)</mdui:DisplayName>
<mdui:InformationURL xml:lang="en">https://www.du.se/en</mdui:InformationURL>
+ <mdui:Keywords xml:lang="en">hda du</mdui:Keywords>
+ <mdui:Logo xml:lang="en" height="146" width="350">https://login-dev.du.se/duse-logo-en.png</mdui:Logo>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.du.se/personal-data-protection</mdui:PrivacyStatementURL>
+ <mdui:Description xml:lang="sv">Högskolan Dalarna (ENDAST TEST)</mdui:Description>
+ <mdui:DisplayName xml:lang="sv">Högskolan Dalarna (TEST)</mdui:DisplayName>
<mdui:InformationURL xml:lang="sv">https://www.du.se</mdui:InformationURL>
+ <mdui:Keywords xml:lang="sv">hda du</mdui:Keywords>
+ <mdui:Logo xml:lang="sv" height="146" width="350">https://login-dev.du.se/duse-logo-sv.png</mdui:Logo>
<mdui:PrivacyStatementURL xml:lang="sv">https://www.du.se/sv/hjalp/personuppgifter/</mdui:PrivacyStatementURL>
- <mdui:PrivacyStatementURL xml:lang="en">https://www.du.se/personal-data-protection</mdui:PrivacyStatementURL>
+ <mdui:Logo xml:lang="en" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo>
+ <mdui:Logo xml:lang="sv" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo>
</mdui:UIInfo>
</md:Extensions>
- <md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB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=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB
BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa
Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J
@@ -59,9 +84,30 @@ QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN
zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS
x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF
C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a
-xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=
-
- </ds:X509Certificate>
+xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB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=</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
@@ -78,11 +124,10 @@ xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=
<md:Extensions>
<shibmd:Scope regexp="false">du.se</shibmd:Scope>
</md:Extensions>
- <md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:X509Data>
- <ds:X509Certificate>
-MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB
BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa
Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J
@@ -98,24 +143,161 @@ QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN
zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS
x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF
C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a
-xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=
-
- </ds:X509Certificate>
+xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB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=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB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=</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login-dev.du.se:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-dev.du.se:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
- <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
- <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
</md:AttributeAuthorityDescriptor>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:Description xml:lang="en">Dalarna University (ONLY FOR TESTING)</mdui:Description>
+ <mdui:DisplayName xml:lang="en">Dalarna University (TEST)</mdui:DisplayName>
+ <mdui:Keywords xml:lang="en">hda du</mdui:Keywords>
+ <mdui:InformationURL xml:lang="en">https://www.du.se/en</mdui:InformationURL>
+ <mdui:Logo xml:lang="en" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo>
+ <mdui:Logo xml:lang="en" height="146" width="350">https://login-dev.du.se/duse-logo-en.png</mdui:Logo>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.du.se/personal-data-protection</mdui:PrivacyStatementURL>
+ <mdui:DisplayName xml:lang="sv">Högskolan Dalarna (TEST)</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Högskolan Dalarna (ENDAST FÖR TEST)</mdui:Description>
+ <mdui:Keywords xml:lang="sv">hda du</mdui:Keywords>
+ <mdui:InformationURL xml:lang="sv">https://www.du.se/en</mdui:InformationURL>
+ <mdui:Logo xml:lang="sv" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo>
+ <mdui:Logo xml:lang="sv" height="146" width="350">https://login-dev.du.se/duse-logo-sv.png</mdui:Logo>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://www.du.se/sv/hjalp/personuppgifter/</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB
+BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa
+Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J
+Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG
+vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC
+5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N
+v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC
+TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA
+AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu
+LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND
+QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN
+2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi
+zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS
+x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF
+C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a
+xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB
+BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa
+Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J
+Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG
+vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC
+5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N
+v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC
+TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA
+AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu
+LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND
+QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN
+2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi
+zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS
+x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF
+C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a
+xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB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=</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-dev.du.se:8443/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">Dalarna University (TEST)</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Högskolan Dalarna (TEST)</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">Dalarna University (TEST)</md:OrganizationName>
<md:OrganizationName xml:lang="sv">Högskolan Dalarna (TEST)</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">du.se (TEST)</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="sv">du.se (TEST)</md:OrganizationDisplayName>
- <md:OrganizationURL xml:lang="sv">https://www.du.se</md:OrganizationURL>
<md:OrganizationURL xml:lang="en">https://www.du.se/en</md:OrganizationURL>
+ <md:OrganizationURL xml:lang="sv">https://www.du.se</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="technical">
<md:Company>Dalarna University</md:Company>
@@ -123,13 +305,13 @@ xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=
<md:EmailAddress>mailto:shib-admin@du.se</md:EmailAddress>
<md:TelephoneNumber>+46 23 778000</md:TelephoneNumber>
</md:ContactPerson>
- <md:ContactPerson contactType="administrative">
+ <md:ContactPerson contactType="support">
<md:Company>Dalarna University</md:Company>
<md:GivenName>Office of IT and Digital Infrastructure</md:GivenName>
<md:EmailAddress>mailto:shib-admin@du.se</md:EmailAddress>
<md:TelephoneNumber>+46 23 778000</md:TelephoneNumber>
</md:ContactPerson>
- <md:ContactPerson contactType="support">
+ <md:ContactPerson contactType="administrative">
<md:Company>Dalarna University</md:Company>
<md:GivenName>Office of IT and Digital Infrastructure</md:GivenName>
<md:EmailAddress>mailto:shib-admin@du.se</md:EmailAddress>
diff --git a/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml b/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml
index 0d802fee..dc0a20b6 100644
--- a/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml
+++ b/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml
@@ -124,6 +124,78 @@ YAe2eCFJhzuNutfMyzzH4ZE1da+vfxQX0yLQpKiK4XRIH4Jr1THM/12L+YNmlRPF
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miunidptest.miun.se/idp/profile/SAML2/POST/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://miunidptest.miun.se/idp/profile/SAML2/Redirect/SSO"/>
</md:IDPSSODescriptor>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">Mittuniversitetet (test)</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">IDP för test på Mittuniversitetet</mdui:Description>
+ <mdui:DisplayName xml:lang="en">Mid Sweden University (test)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IDP for testing at Mid Sweden University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.miun.se/en/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="sv">http://www.miun.se</mdui:InformationURL>
+ <mdui:Keywords xml:lang="en">miun miu mittuniversitetet mid+sweden+university miunpunktse</mdui:Keywords>
+ <mdui:Keywords xml:lang="sv">miun miu mittuniversitetet mid+sweden+university miunpunktse</mdui:Keywords>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://miun.se/personuppgifterIdP</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://miun.se/en/personuppgifterIdP</mdui:PrivacyStatementURL>
+ <mdui:Logo xml:lang="en" height="146" width="260">https://miunidptest.miun.se/idp/images/miun-logo.png</mdui:Logo>
+ <mdui:Logo xml:lang="sv" height="146" width="260">https://miunidptest.miun.se/idp/images/miun-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDODCCAiCgAwIBAgIVAPRwsS0jawwgnaLnIOydT5jeXjVhMA0GCSqGSIb3DQEB
+ CwUAMB4xHDAaBgNVBAMME21pdW5pZHB0ZXN0Lm1pdW4uc2UwHhcNMTYwMzE0MTA0
+ ODMyWhcNMzYwMzE0MTA0ODMyWjAeMRwwGgYDVQQDDBNtaXVuaWRwdGVzdC5taXVu
+ LnNlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4EPO2E98M79WKFHy
+ APjeQALlMgPuAkrVa9aiC84V7q3hgfdbD0wbNJTGA9uj7an2Fz5uNfUWS1Rg/7DT
+ uEjrGpsWXn3mlBuH2wOZe9wHqFwVf5NUos/00gLxs6WIjaNv6gxnbnVss0pKURTL
+ +bl4mn7XSPpbNosWlHkn4IbnXBi8zTwQ7Us2+klu15YfAPnlkMYgzOl1YkxqB3cM
+ zxnejzBjzpG1VJWkLUOEFxlFYUwEsn5aOMpT4DXEq1PSSZfDmtz6tN+WQiV8W1rt
+ QYyThOUwvF+L6Z9N960IFfiirCVk30doFfu5P/KmzciFWKcRHH2Jce3R/pC0SVNs
+ 56Z63QIDAQABo20wazAdBgNVHQ4EFgQUhtV3ZMcE4JWqlNJJVYkqB5inKUEwSgYD
+ VR0RBEMwQYITbWl1bmlkcHRlc3QubWl1bi5zZYYqaHR0cHM6Ly9taXVuaWRwdGVz
+ dC5taXVuLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCKf/Z8
+ m1RMKsiP56XEBD/KlZToM23WF+i3xw7IPlo6a+bMT2emxKBCVv3CU6oMe55TMUeu
+ RHzNHB3g0oa/xH+APxLbP64FMvDrJAPFDsltRX97C9UyO47rBL983Jcjo20fjCt1
+ 03xMipYa9aYc6miUSXKSP0zLu8XoyRo8Vlx0+4y1hI1B/vfgw2I850thSfM/TepO
+ eHLpC5j1cjhz+omgj8KtOu4iwRShXmOTb3/MPKYQ0BezIuI99QfavE3jkdVg4+bb
+ sEjpTEgCNeNotsnug8EzSf3jMac7QVsKk/ZUjpMUiH1QWeXQSzpkT+BfEjcXUm23
+ p8Zy6HNa1RvGgW8P</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIUPMQjIIrMt+goB+uHSwi2oO14KAgwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miunidptest.miun.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">Mid Sweden University (test)</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Mittuniversitetet (test)</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
<md:Extensions>
<shibmd:Scope regexp="false">miun.se</shibmd:Scope>
diff --git a/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml b/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml
index c70d30bd..1bea1bf3 100644
--- a/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml
+++ b/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml
@@ -14,8 +14,84 @@
<samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue>
<samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue>
</samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ </samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Lulea University of Technology - TEST SP</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="sv">Luleå tekniska universitet - TEST SP</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Service Provider för Luleå tekniska universitet - TEST SP</mdui:Description>
+ <mdui:Description xml:lang="en">Service Provider for Lulea University of Technology - TEST SP</mdui:Description>
+ <mdui:InformationURL xml:lang="sv">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Generell-beskrivning-av-SAML2-WebSSO-1.218206</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Generell-beskrivning-av-SAML2-WebSSO-1.218206</mdui:InformationURL>
+ <mdui:Logo xml:lang="sv" height="130" width="250">https://www.ltu.se/image/LTU_logo-sve-smal.png</mdui:Logo>
+ <mdui:Logo xml:lang="en" height="130" width="250">https://www.ltu.se/image/LTU_logo-eng-smal.png</mdui:Logo>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Din-anvandare/Policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-Identity-Provider-IdP-1.218207</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Din-anvandare/Policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-Identity-Provider-IdP-1.218207?l=en</mdui:PrivacyStatementURL>
+ <mdui:Keywords xml:lang="sv">LTU lulea+tekniska+universitet lulea+university+of+technology</mdui:Keywords>
+ <mdui:Keywords xml:lang="en">LTU lulea+tekniska+universitet lulea+university+of+technology</mdui:Keywords>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDNDCCAhygAwIBAgIVANzbaWTqiitWHi/FZY/Cf0XjTG2tMA0GCSqGSIb3DQEB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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIDNDCCAhygAwIBAgIVALc7cXmNp5/uQQWtVri12AzDbYe/MA0GCSqGSIb3DQEB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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibmfa.test.swamid.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">Lulea University of Technology - TEST SP</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Luleå tekniska universitet - TEST SP</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&amp;errorurl_ts=ERRORURL_TS&amp;errorurl_rp=ERRORURL_RP&amp;errorurl_tid=ERRORURL_TID&amp;errorurl_ctx=ERRORURL_CTX&amp;entityid=https://shibbo3test.ltu.se/idp/shibboleth">
<md:Extensions>
<shibmd:Scope regexp="false">ltu.se</shibmd:Scope>
diff --git a/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml b/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml
index 5d380e11..030b54b5 100644
--- a/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml
+++ b/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml
@@ -7,6 +7,10 @@
<samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue>
<samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue>
</samla:Attribute>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ </samla:Attribute>
</mdattr:EntityAttributes>
<mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2023-05-17T10:21:08Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
@@ -120,6 +124,86 @@ Qr+e2bDPXd3Jvpz7Nk+ARrxWbtk756UyT4TTuL6YZ9kWg81+y6jCzDKa7/syKT0N
<md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" ns1:supportsRequestedAttributes="true" Location="https://shibmfa.test.swamid.se/idp/profile/SAML2/Redirect/SSO"/>
<md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" ns1:supportsRequestedAttributes="true" Location="https://shibmfa.test.swamid.se/idp/profile/SAML2/POST-SimpleSign/SSO"/>
</md:IDPSSODescriptor>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo>
+ <mdui:Description xml:lang="en">SWAMID TestSP MFA for Test</mdui:Description>
+ <mdui:Description xml:lang="sv">SWAMID TestSP MFA for Test</mdui:Description>
+ <mdui:DisplayName xml:lang="en">SWAMID TestSP MFA for Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="sv">SWAMID TestSP MFA for Test</mdui:DisplayName>
+ <mdui:Logo xml:lang="sv" height="100" width="115">https://release-check.swamid.se/swamid-logo-2-100x115.png</mdui:Logo>
+ <mdui:Logo xml:lang="en" height="100" width="115">https://release-check.swamid.se/swamid-logo-2-100x115.png</mdui:Logo>
+ <mdui:PrivacyStatementURL xml:lang="en">https://testidp.qa.swamid.se/</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://testidp.qa.swamid.se/</mdui:PrivacyStatementURL>
+ <mdui:InformationURL xml:lang="sv">https://testidp.qa.swamid.se/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://testidp.qa.swamid.se/</mdui:InformationURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUR3bWVVQpP7HaXqgz/kW+RRovJ+4wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUVmb7Ln6BabLbl9CUiQsXW/sRV04wDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibmfa.test.swamid.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">SWAMID TestSP MFA for Test</md:ServiceName>
+ <md:ServiceName xml:lang="sv">SWAMID TestSP MFA for Test</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">The Swedish Research Council</md:OrganizationName>
<md:OrganizationName xml:lang="sv">Vetenskapsrådet</md:OrganizationName>