diff options
author | Einar Lönn <el@sunet.se> | 2017-08-10 13:11:20 +0200 |
---|---|---|
committer | Einar Lönn <el@sunet.se> | 2017-08-10 13:11:20 +0200 |
commit | a99881fc52aa1d4520d4dbae863658d96c449347 (patch) | |
tree | 04117883dba802f8c6ffa68dca9d9babd25d8972 | |
parent | e2ff0a7a4ef22ab8ee519b059c8e94bb3cfd1fbc (diff) |
Solves https://rt.sunet.se/Ticket/Display.html?id=153 (a.k.a. Einar testing COmanage)
-rw-r--r-- | swamid-2.0/comanage.sunet.se-shibboleth.xml | 97 | ||||
-rw-r--r-- | swamid-sp-2.0.mxml | 1 |
2 files changed, 98 insertions, 0 deletions
diff --git a/swamid-2.0/comanage.sunet.se-shibboleth.xml b/swamid-2.0/comanage.sunet.se-shibboleth.xml new file mode 100644 index 00000000..bd9e98c0 --- /dev/null +++ b/swamid-2.0/comanage.sunet.se-shibboleth.xml @@ -0,0 +1,97 @@ +<!-- +This is example metadata only. Do *NOT* supply it as is without review, +and do *NOT* provide it in real time to your partners. + --> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_cb95bd35f89462254f316588057ff2606813ff89" entityID="https://comanage.sunet.se/shibboleth"> + + <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> + <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> + <samla:AttributeValue>http://www.swamid.se/category/nren-service</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/category/research-and-education</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + </md:Extensions> + + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://comanage.sunet.se/Shibboleth.sso/Login"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://comanage.sunet.se/Shibboleth.sso/Login" index="1"/> + <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"> + <mdui:DisplayName xml:lang="sv">Sunets COmanage (test)</mdui:DisplayName> + <mdui:DisplayName xml:lang="en">Sunet's COmanage (test)</mdui:DisplayName> + <mdui:Description xml:lang="sv">COmanage (test) hos Sunet</mdui:Description> + <mdui:Description xml:lang="en">COmanage (test) at Sunet</mdui:Description> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>comanage.sunet.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=comanage.sunet.se,O=Sunet,ST=Some-State,C=SE</ds:X509SubjectName> + <ds:X509Certificate>MIIFbzCCA1egAwIBAgIJAKqIeDbzrXB8MA0GCSqGSIb3DQEBCwUAME4xCzAJBgNV +BAYTAlNFMRMwEQYDVQQIDApTb21lLVN0YXRlMQ4wDAYDVQQKDAVTdW5ldDEaMBgG +A1UEAwwRY29tYW5hZ2Uuc3VuZXQuc2UwHhcNMTcwODA5MDg1NzA5WhcNMjcwODA3 +MDg1NzA5WjBOMQswCQYDVQQGEwJTRTETMBEGA1UECAwKU29tZS1TdGF0ZTEOMAwG +A1UECgwFU3VuZXQxGjAYBgNVBAMMEWNvbWFuYWdlLnN1bmV0LnNlMIICIjANBgkq +hkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAmUuEG7eB3ivIuSdSa+K/Kq5PhghmsPI1 +N9GLZZ2PWlhsyaCYSkeVThDqiEfqIoKl+e6ynQ4Tt4F/2dUX0aKLF5R6HwKakLkK ++vWStnXDGpRuYXkuZ5bp7GWQWVDs8gcRxPXDF0IPm291wMjTot8jQfj7Ev36RudG +1hEIfwbPxFq0J7gKOWvPukkS1eJxTWQQA/lwLHfKmTPEKWGEmyAqi84BTzSlnbo4 +U6z4u8K8bs4q6uYbcuenVEL8l2lWpYF0dgLXiwUyrpYLttyIrTQRqecRhfSdwbbQ +rOs1SzGMVIeXibWLNHCDNDrl95qJ947muhznwOToVcFNUstIbqfXWsqI+elfTl+t +iQWOVg4o9Re+gsfUsFmKKdnU/siRxqbic6uD2959cYpaM4OENoY1z1ynGgQ1uYQD +hTSkwRfYJjWpPrPtcCLk25/D9TmbOGI7nlB6UQrfXutNrjUiH/hkdSR6kY6X6IeP +5LJKWBefCBolSmwJP/L1LWEGMFKHOxjMuMHW2t+HgFHmPn1mq3iCbi2juBJTsNAH +Vy09kb9ivmuDemyS+qM+eFFOn7VzM8IOqV3MT2Bzg77g25NytTbciblhHpC06oJt +Db9gFqWYynsw3RVOiQWolzsIHANiEQdwJnclpUMf0ukBHIV4N3K96zTmygyXFE+A +5IMRQYZsJfUCAwEAAaNQME4wHQYDVR0OBBYEFNVoj5KNS4RQgQd84+4Tsf8R6jHC +MB8GA1UdIwQYMBaAFNVoj5KNS4RQgQd84+4Tsf8R6jHCMAwGA1UdEwQFMAMBAf8w +DQYJKoZIhvcNAQELBQADggIBAJQKfWx64TsE0AGXcobsxNjyClKx1LLcdStU80w1 +z1XhgP1kyLd7TXPfq8rU9XwUhhOXWJMmxT35WL/Pgb1m58hWb8SrnaQoM7CNczP9 +R+3D6OYa4/b8Dk3dnypV+wfej0m1qhPMX6uTcK9nWrIXGodLUX53iYZ3Uh3VfcUX +DuR/un432RvFjOY6ZP+JRfKNNgAZDcgg9WOXOY9JfgO4QU03cIsKPQFjooVFB27d +ibXS+VYDwJSn6NbO1XXiglGrK8m7PwX+6b/SMOHavPYxNftb5LbeNRaVHUeD9Fmc +FK7rvaI44+o61KtiKHKfVKskjMFBbYD/ZMeXiL0SMlLDj5t14FeJSvzRvZd3FjSb +9w12CQEXgL6S2SLHQH7q0+x+xI0WX3RwXK6BhLzZu/oJ3qxFWGbRMOx1dJ4RjTkR +lH/ypN7ayQrz1VvRh4+VHTMA8OZdRkqdpDHi+1zlmOvRWLePqqMbkn76KLhbk8Gw +mYMR9ZHbxCVi71Kx6n5RxYrhWRzMYxeV+4Cp8fWMoTrs5tg97TM3kYR3LnCIYPsc +RmZKx/JkouBpRUyCSCS2rye+sO6zhUY/SVmqukyipm1/QaXIzZnn7Kwrc/rtKiWg +fu54ZD4R2JUTIsNvjAXN85Y9owErIPLAezhWib5v2qmPox/mE57bPBjDDZpPrE9S +kifA + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://comanage.sunet.se/Shibboleth.sso/Artifact/SOAP" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://comanage.sunet.se/Shibboleth.sso/SAML2/POST" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://comanage.sunet.se/Shibboleth.sso/SAML2/Artifact" index="3"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://comanage.sunet.se/Shibboleth.sso/SAML2/ECP" index="4"/> + </md:SPSSODescriptor> + +</md:EntityDescriptor> diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml index a733ac46..b6f75fe2 100644 --- a/swamid-sp-2.0.mxml +++ b/swamid-sp-2.0.mxml @@ -496,6 +496,7 @@ <xi:include href="swamid-2.0/portfolio.med.lu.se-shibboleth.xml"/> <xi:include href="swamid-2.0/moodlebeta.omv.lu.se-shibboleth.xml"/> <xi:include href="swamid-2.0/rt.sunet.se-shibboleth.xml"/> + <xi:include href="swamid-2.0/comanage.sunet.se-shibboleth.xml"/> <xi:include href="swamid-2.0/registry-test.swamid.se-saml2-metadata.xml"/> <xi:include href="swamid-2.0/test.play.rkh.se.xml"/> <xi:include href="swamid-2.0/ladok3-00.ladok.umu.se-gui-sp.xml"/> |