summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorEinar Lönn <el@sunet.se>2017-08-10 13:11:20 +0200
committerEinar Lönn <el@sunet.se>2017-08-10 13:11:20 +0200
commita99881fc52aa1d4520d4dbae863658d96c449347 (patch)
tree04117883dba802f8c6ffa68dca9d9babd25d8972
parente2ff0a7a4ef22ab8ee519b059c8e94bb3cfd1fbc (diff)
Solves https://rt.sunet.se/Ticket/Display.html?id=153 (a.k.a. Einar testing COmanage)
-rw-r--r--swamid-2.0/comanage.sunet.se-shibboleth.xml97
-rw-r--r--swamid-sp-2.0.mxml1
2 files changed, 98 insertions, 0 deletions
diff --git a/swamid-2.0/comanage.sunet.se-shibboleth.xml b/swamid-2.0/comanage.sunet.se-shibboleth.xml
new file mode 100644
index 00000000..bd9e98c0
--- /dev/null
+++ b/swamid-2.0/comanage.sunet.se-shibboleth.xml
@@ -0,0 +1,97 @@
+<!--
+This is example metadata only. Do *NOT* supply it as is without review,
+and do *NOT* provide it in real time to your partners.
+ -->
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_cb95bd35f89462254f316588057ff2606813ff89" entityID="https://comanage.sunet.se/shibboleth">
+
+ <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
+ <samla:AttributeValue>http://www.swamid.se/category/nren-service</samla:AttributeValue>
+ <samla:AttributeValue>http://www.swamid.se/category/research-and-education</samla:AttributeValue>
+ </samla:Attribute>
+ </mdattr:EntityAttributes>
+ </md:Extensions>
+
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://comanage.sunet.se/Shibboleth.sso/Login"/>
+ <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://comanage.sunet.se/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="sv">Sunets COmanage (test)</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Sunet's COmanage (test)</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">COmanage (test) hos Sunet</mdui:Description>
+ <mdui:Description xml:lang="en">COmanage (test) at Sunet</mdui:Description>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
+ <ds:KeyName>comanage.sunet.se</ds:KeyName>
+ <ds:X509Data>
+ <ds:X509SubjectName>CN=comanage.sunet.se,O=Sunet,ST=Some-State,C=SE</ds:X509SubjectName>
+ <ds:X509Certificate>MIIFbzCCA1egAwIBAgIJAKqIeDbzrXB8MA0GCSqGSIb3DQEBCwUAME4xCzAJBgNV
+BAYTAlNFMRMwEQYDVQQIDApTb21lLVN0YXRlMQ4wDAYDVQQKDAVTdW5ldDEaMBgG
+A1UEAwwRY29tYW5hZ2Uuc3VuZXQuc2UwHhcNMTcwODA5MDg1NzA5WhcNMjcwODA3
+MDg1NzA5WjBOMQswCQYDVQQGEwJTRTETMBEGA1UECAwKU29tZS1TdGF0ZTEOMAwG
+A1UECgwFU3VuZXQxGjAYBgNVBAMMEWNvbWFuYWdlLnN1bmV0LnNlMIICIjANBgkq
+hkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAmUuEG7eB3ivIuSdSa+K/Kq5PhghmsPI1
+N9GLZZ2PWlhsyaCYSkeVThDqiEfqIoKl+e6ynQ4Tt4F/2dUX0aKLF5R6HwKakLkK
++vWStnXDGpRuYXkuZ5bp7GWQWVDs8gcRxPXDF0IPm291wMjTot8jQfj7Ev36RudG
+1hEIfwbPxFq0J7gKOWvPukkS1eJxTWQQA/lwLHfKmTPEKWGEmyAqi84BTzSlnbo4
+U6z4u8K8bs4q6uYbcuenVEL8l2lWpYF0dgLXiwUyrpYLttyIrTQRqecRhfSdwbbQ
+rOs1SzGMVIeXibWLNHCDNDrl95qJ947muhznwOToVcFNUstIbqfXWsqI+elfTl+t
+iQWOVg4o9Re+gsfUsFmKKdnU/siRxqbic6uD2959cYpaM4OENoY1z1ynGgQ1uYQD
+hTSkwRfYJjWpPrPtcCLk25/D9TmbOGI7nlB6UQrfXutNrjUiH/hkdSR6kY6X6IeP
+5LJKWBefCBolSmwJP/L1LWEGMFKHOxjMuMHW2t+HgFHmPn1mq3iCbi2juBJTsNAH
+Vy09kb9ivmuDemyS+qM+eFFOn7VzM8IOqV3MT2Bzg77g25NytTbciblhHpC06oJt
+Db9gFqWYynsw3RVOiQWolzsIHANiEQdwJnclpUMf0ukBHIV4N3K96zTmygyXFE+A
+5IMRQYZsJfUCAwEAAaNQME4wHQYDVR0OBBYEFNVoj5KNS4RQgQd84+4Tsf8R6jHC
+MB8GA1UdIwQYMBaAFNVoj5KNS4RQgQd84+4Tsf8R6jHCMAwGA1UdEwQFMAMBAf8w
+DQYJKoZIhvcNAQELBQADggIBAJQKfWx64TsE0AGXcobsxNjyClKx1LLcdStU80w1
+z1XhgP1kyLd7TXPfq8rU9XwUhhOXWJMmxT35WL/Pgb1m58hWb8SrnaQoM7CNczP9
+R+3D6OYa4/b8Dk3dnypV+wfej0m1qhPMX6uTcK9nWrIXGodLUX53iYZ3Uh3VfcUX
+DuR/un432RvFjOY6ZP+JRfKNNgAZDcgg9WOXOY9JfgO4QU03cIsKPQFjooVFB27d
+ibXS+VYDwJSn6NbO1XXiglGrK8m7PwX+6b/SMOHavPYxNftb5LbeNRaVHUeD9Fmc
+FK7rvaI44+o61KtiKHKfVKskjMFBbYD/ZMeXiL0SMlLDj5t14FeJSvzRvZd3FjSb
+9w12CQEXgL6S2SLHQH7q0+x+xI0WX3RwXK6BhLzZu/oJ3qxFWGbRMOx1dJ4RjTkR
+lH/ypN7ayQrz1VvRh4+VHTMA8OZdRkqdpDHi+1zlmOvRWLePqqMbkn76KLhbk8Gw
+mYMR9ZHbxCVi71Kx6n5RxYrhWRzMYxeV+4Cp8fWMoTrs5tg97TM3kYR3LnCIYPsc
+RmZKx/JkouBpRUyCSCS2rye+sO6zhUY/SVmqukyipm1/QaXIzZnn7Kwrc/rtKiWg
+fu54ZD4R2JUTIsNvjAXN85Y9owErIPLAezhWib5v2qmPox/mE57bPBjDDZpPrE9S
+kifA
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
+ </md:KeyDescriptor>
+ <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://comanage.sunet.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://comanage.sunet.se/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://comanage.sunet.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://comanage.sunet.se/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </md:SPSSODescriptor>
+
+</md:EntityDescriptor>
diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml
index a733ac46..b6f75fe2 100644
--- a/swamid-sp-2.0.mxml
+++ b/swamid-sp-2.0.mxml
@@ -496,6 +496,7 @@
<xi:include href="swamid-2.0/portfolio.med.lu.se-shibboleth.xml"/>
<xi:include href="swamid-2.0/moodlebeta.omv.lu.se-shibboleth.xml"/>
<xi:include href="swamid-2.0/rt.sunet.se-shibboleth.xml"/>
+ <xi:include href="swamid-2.0/comanage.sunet.se-shibboleth.xml"/>
<xi:include href="swamid-2.0/registry-test.swamid.se-saml2-metadata.xml"/>
<xi:include href="swamid-2.0/test.play.rkh.se.xml"/>
<xi:include href="swamid-2.0/ladok3-00.ladok.umu.se-gui-sp.xml"/>