diff options
author | Johan Wassberg <jocar@sunet.se> | 2023-06-01 10:19:41 +0200 |
---|---|---|
committer | Johan Wassberg <jocar@sunet.se> | 2023-06-01 10:19:41 +0200 |
commit | 84011fcfb96d40675d82532b4c2bb85177ac0c82 (patch) | |
tree | 682bda8f5ef1bace53ac4dcde61558c5f6a21a7b | |
parent | 3a8972dfbf0daf53e5cf89ca8928b7536c5efb66 (diff) |
SWAMID-2942: Added saml.account.hh.semd-2023-06-01-v03
-rw-r--r-- | metadata/swamid-2.0/saml.account.hh.se-shibboleth.xml | 168 | ||||
-rw-r--r-- | metadata/swamid-sp-2.0.mxml | 1 |
2 files changed, 169 insertions, 0 deletions
diff --git a/metadata/swamid-2.0/saml.account.hh.se-shibboleth.xml b/metadata/swamid-2.0/saml.account.hh.se-shibboleth.xml new file mode 100644 index 00000000..f9d877cf --- /dev/null +++ b/metadata/swamid-2.0/saml.account.hh.se-shibboleth.xml @@ -0,0 +1,168 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://saml.account.hh.se/shibboleth"> + <md:Extensions> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdattr:EntityAttributes> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2023-05-31T13:31:36Z"> + <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + </md:Extensions> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://saml.account.hh.se/Shibboleth.sso/Login"/> + <mdui:UIInfo> + <mdui:Description xml:lang="en">As a new user you can use this service to activate your university computer account or reset your password.</mdui:Description> + <mdui:Description xml:lang="sv">Med denna tjänst kan du aktivera ditt datorkonto vid högskolan eller återställa ditt glömda lösenord.</mdui:Description> + <mdui:DisplayName xml:lang="en">Halmstad University, account activation and password reset</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">Högskolan i Halmstad, kontoaktivering och lösenordsåterställning</mdui:DisplayName> + <mdui:InformationURL xml:lang="en">https://account.hh.se</mdui:InformationURL> + <mdui:InformationURL xml:lang="sv">https://account.hh.se</mdui:InformationURL> + <mdui:Logo xml:lang="en" height="116" width="350">https://idp.hh.se/idp/images/hh-logo-en-350x116.png</mdui:Logo> + <mdui:Logo xml:lang="sv" height="116" width="350">https://idp.hh.se/idp/images/hh-logo-sv-350x116.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="en">https://www.hh.se/om-webbplatsen/behandling-av-personuppgifter/overforing-av-personuppgifter-till-account.hh.se-samt-account-utv.hh.se-i-samband-med-federerad-inloggning-privacy-policy.html</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://www.hh.se/om-webbplatsen/behandling-av-personuppgifter/overforing-av-personuppgifter-till-account.hh.se-samt-account-utv.hh.se-i-samband-med-federerad-inloggning-privacy-policy.html</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:KeyName>saml.account.hh.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=saml.account.hh.se</ds:X509SubjectName> + <ds:X509Certificate>MIIFCDCCAvCgAwIBAgIUIs1UfRh8Jg3vQOM2oAIKwv9oJ6cwDQYJKoZIhvcNAQEL +BQAwHTEbMBkGA1UEAxMSc2FtbC5hY2NvdW50LmhoLnNlMB4XDTIzMDUzMTEzMjU0 +OVoXDTMzMDUyODEzMjU0OVowHTEbMBkGA1UEAxMSc2FtbC5hY2NvdW50LmhoLnNl +MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAoYYiqGrBw0o0ULioO7Hx +E/lbaTuj9Gwi4/IHChWNky9Qhtt7tJ++WfTZhSj32Mw/7hvDPKWdVrv/V+pyUPvu +18hItTmhBHuZ7fqC7FzUCsgcrF2XaDCqzxgfUEJyNdHFmeV7CCKurWKaNRJTrMzI +g8mJob1DB8NmBGkZTLboo7atUmXwUb6/QT2sjGhbU4/xn4HWj+CAOJRQ05q+N9FB +RzO4pzOSqcavPBb2pgEOdtvJnjR0jjVZq8IB6j4qN4cYXsgpwzO5pR7m0d79cam8 +D4Ni23umEuPeTY05PAFNC13qVLOBLasp/uPI20NPRv4BFo1Ruqd+fBm1hWvLN6ZM +cMCFPnjpzFEn+F9KveYsYjcjarXAiT93W6pIa4/NyUMoqOVOYjiTG+I4Buc4RLmT +C4O8EPKkYyXfDFVAXsLeW80nLqysEvNHZZWaf9+cneHM4AgQdmpi5JhnXrp6BPRP +KleYxjLlvDpBHV3X//43BDTFrPZhbp7QWFEmMsU3bXgwvT6GIx7aL36kB8iM0rvw +2bDu7FpyYFyfEyrLk2qF7hV7yd+EKwF4+H2bP+zxFyRY2DmQTJqRucHoFGOKmTes +D6+Sw4vcDCGT/GMnzTr06tpQP5KAa4mPyVzqxtB3INFoWQGROEkxZUnQgCJBa+qt +ZioMDgmx2biRdEOM7yeCGJcCAwEAAaNAMD4wHQYDVR0RBBYwFIISc2FtbC5hY2Nv +dW50LmhoLnNlMB0GA1UdDgQWBBR9Qx4Np0Qgn+RmEkU6V6vob+KUvDANBgkqhkiG +9w0BAQsFAAOCAgEAVta34eKlanZZhX1aA9P/P+XYGiCEpyKStLy/VEan9dWcvIS3 +NKgiGd+dk/FAibzLOT6ba29pmz+wlIGPVfY7xxI0FrZQ9zp5Q3+CatOuyKa4l2EN +sokzGd4+XoqT44wvpJyJC3rRSOFLfRwBAUSmrcyw5Ah8OasmkjaLviF0BVjhpxAP +JPKqkO/bdQNZ6Lb4h8chlDUDaBf87kXX/9EAo/T/mpG72f5cbrsLyq8ZFeKCtQG6 +JC7g/jS7jeDDwPbq4iPZrFF5yQeGGqZmobFaNNnng9RdUKUt+eL/SWmHA4CTGr5Y +Ob5tdP3zv6ocafNnAF4RFGg6LI+6tE61H6reRnnoaFcpvijWNP9gfSIcbOyI2iSg +YdBa3v4DRbpAHSgmFHTngrHtKLHHMvmuxBLISYcfZho3xK/XR3b5ANxwEKN0noou +heOHl7kW2Yag4jutI476RthkGPveyQPEli/khnop6U2HeXncO8HK9j77rpSmuXbo +wKZgCrSUHrCg9ui/AxHlryIHcfBjriyh1kEXkND1reimaZHn8hZvNdIiY47Uv4DT +WbFVSfAlewg/fyQxP/CrAhSfejDchKt7dVEPLr5dLp8EaQ1040xeoGxR2G+QnQcD +fdHMF+IlRZCESHh2DmutXWOELh3tpKE93o5ZfkYWl0vR4j+AFVMkBt4dF4c=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:KeyName>saml.account.hh.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=saml.account.hh.se</ds:X509SubjectName> + <ds:X509Certificate>MIIFCDCCAvCgAwIBAgIUE81wD84bhFdxinvBpikc5jCOm/kwDQYJKoZIhvcNAQEL +BQAwHTEbMBkGA1UEAxMSc2FtbC5hY2NvdW50LmhoLnNlMB4XDTIzMDUzMTEzMjYw +MFoXDTMzMDUyODEzMjYwMFowHTEbMBkGA1UEAxMSc2FtbC5hY2NvdW50LmhoLnNl +MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA66xyNQPdd2oRISrewRK4 +vSqKyImc9BEWr/Q0ro1YLkiCA3KZQbKrU3FVhHzSnFGug0XLYVzmCtDNijINbPjl +KflPOD0BrtZjk1vw2Dpw59G1H8G4SfGvBaHdXG0GVhJFrBWI3uAOyOkgQFOFjlx9 +eeOUN8Yi7NFdqcjTNQWDTHRQ8X4v8CjYiTT2w4vwb+W3VfbIZWArtSS2OzJczee1 +UMp3faRHLsTBftEeVeDdsxtmIDDPLnimg5gRLlmBO6eBGkZJvJMiOWIZW7e23dgY +IJGOYpvXB64N8vPqtaRfxRB38Xjzmtl4AManP8mHGGwZB1tRJLbYfxC9t/hMi26R +IxTpwpnx67efZg7/683zR8ILZHW6nlZ8mwRrmWKQaux2aaDOpP/KNbQwsWzFZuma +p5LbrWYGz4SaMKSE0tdNdjAWymYiMmQOUNX0Uizd8vom0l7AER8U2Fz4NsZhyuNC +Qez1Vvd/WUfSdSJs3/ILARxKirpmuiNy8BDB5EB2pKSRfT0pTzdzyrIpIY54Hx5T +ljD5yJfTCmXQ5/ejQ0+1YQLNSkkb7xkX+/V7JZLkZ7ZuRvUuOeruwUHZ1Qs0y1yf +pagnF2YdlCZgdfKiLDJN8gh+EC4sEZc866jL80fApb6hsvF/yQ5PEnK1856KFhxk +/+8FlVJpeHpmrzmbHhipIEcCAwEAAaNAMD4wHQYDVR0RBBYwFIISc2FtbC5hY2Nv +dW50LmhoLnNlMB0GA1UdDgQWBBQQGkE3uKMcNAQKP3LXiYsMBoVn1jANBgkqhkiG +9w0BAQsFAAOCAgEA2vVKuRwAIk3HuM8aH+t0TSmCx+aRaqk3FElJKygzIrUq4Xte +6Y8UrzyQeTiPNsSvTD2AL/HDI1ufWJccfmwh8x5N9sCUXwMA7BjiysGVk1W8Awx4 +8f3AdADUF1UiN2Cl4eEMUmNVYkLQFsJAWAFIdYH+9OMpSJKmsZ/E19gzXQGLPkjP +Ioh3E+cbIhmvSEKLqin1IWupco2fjbenxmeumyyxrQYaF2RZUXkNF3Qgj4eVw2R/ +P5luGte97qCk+mnaBlWQtgX4Gfe1japdJ/AkeIGpIeFAglrQiarKJdqAzlVhfbxd +uMm1Sljt7W8aQV9IUHHOPQOkZt8gS82+p648bORv/abjUwNxlkVhf34m36S1/chK +AVHmouikwC41qaxWvQsHht0XIkTVy+mrqpvJC7yxLwz1LbJNobwjFMDzpqGleyaw +6MG3xzIvAtbNusIMOhavMFQite8gTeQdmqRHgD1zKTP5O/nCx6vkpLLhpnvBRmQA +eph1f1+fM9/3Qrhcrqr+JtTUWxm2V/A/BGFVjE/jkDNIlWjzfzFGkgY/H+UCBej4 +H5Lb3qlV5kyLOEzvR2uTnXkwHpZG7ja1tgZMzHAQz6wfTzILZ0z8ws+soH6if9Lj +cSPM/gSW3ZQ6+jEOTQZhwoPDQGAMSLzY4LVyw2fxZXgWUxJV5nounTS8kVg=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://saml.account.hh.se/Shibboleth.sso/Artifact/SOAP" index="1"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://saml.account.hh.se/Shibboleth.sso/SLO/SOAP"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.account.hh.se/Shibboleth.sso/SLO/Redirect"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.account.hh.se/Shibboleth.sso/SLO/POST"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml.account.hh.se/Shibboleth.sso/SLO/Artifact"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.account.hh.se/Shibboleth.sso/SAML2/POST" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://saml.account.hh.se/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml.account.hh.se/Shibboleth.sso/SAML2/Artifact" index="3"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://saml.account.hh.se/Shibboleth.sso/SAML2/ECP" index="4"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">Halmstad University, account activation and password reset</md:ServiceName> + <md:ServiceName xml:lang="sv">Högskolan i Halmstad, kontoaktivering och lösenordsåterställning</md:ServiceName> + <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> + <md:Organization> + <md:OrganizationName xml:lang="en">HH</md:OrganizationName> + <md:OrganizationName xml:lang="sv">HH</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="en">Halmstad university</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="sv">Högskolan i Halmstad</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">https://www.hh.se</md:OrganizationURL> + <md:OrganizationURL xml:lang="sv">https://www.hh.se</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="administrative"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="technical"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="support"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <md:GivenName>Helpdesk</md:GivenName> + <md:EmailAddress>mailto:helpdesk@hh.se</md:EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> diff --git a/metadata/swamid-sp-2.0.mxml b/metadata/swamid-sp-2.0.mxml index 873ded71..4b8e5a2d 100644 --- a/metadata/swamid-sp-2.0.mxml +++ b/metadata/swamid-sp-2.0.mxml @@ -325,6 +325,7 @@ <xi:include href="swamid-2.0/sam.control.lth.se-shibboleth.xml"/> <xi:include href="swamid-2.0/sam.cs.lth.se-shibboleth.xml"/> <xi:include href="swamid-2.0/saml.account-utv.hh.se-shibboleth.xml"/> + <xi:include href="swamid-2.0/saml.account.hh.se-shibboleth.xml"/> <xi:include href="swamid-2.0/sandbox03-eu.alma.exlibrisgroup.com-mng-login.xml"/> <xi:include href="swamid-2.0/sandbox03-eu.primo.exlibrisgroup.com-mng-login.xml"/> <xi:include href="swamid-2.0/scim.lab.swamid.se-shibboleth.xml"/> |