diff options
author | Paul Scott <paul.scott@kau.se> | 2019-04-16 13:31:21 +0000 |
---|---|---|
committer | Paul Scott <paul.scott@kau.se> | 2019-04-16 13:31:21 +0000 |
commit | 7e89799b602e51838e8560733e0bc24fea3bf697 (patch) | |
tree | a3b9a2f1cce2695c76960e7d1662f27ed1da09f6 | |
parent | 450e82ae12d700477c3da99b84a50113bf36dd5f (diff) |
Resolves SWAMID-2164
-rw-r--r-- | swamid-2.0/urn-auth0-safarijv-uppsala-university.xml | 6 | ||||
-rw-r--r-- | swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml | 104 | ||||
-rw-r--r-- | swamid-sp-2.0.mxml | 1 |
3 files changed, 108 insertions, 3 deletions
diff --git a/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml b/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml index 185d3d30..9719868f 100644 --- a/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml +++ b/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml @@ -54,14 +54,14 @@ xuvjUFEYjJuhY/HwYbmCghKebqIusOEkfaLO0HZmwpI= </Organization> <ContactPerson contactType="administrative"> <GivenName>Jesse Banning</GivenName> - <EmailAddress>safari-prof-serv@oreilly.com</EmailAddress> + <EmailAddress>mailto:safari-prof-serv@oreilly.com</EmailAddress> </ContactPerson> <ContactPerson contactType="technical"> <GivenName>Jesse Banning</GivenName> - <EmailAddress>safari-prof-serv@oreilly.com</EmailAddress> + <EmailAddress>mailto:safari-prof-serv@oreilly.com</EmailAddress> </ContactPerson> <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> <GivenName>Matt Kirk</GivenName> - <EmailAddress>security-feedback@oreilly.com</EmailAddress> + <EmailAddress>mailto:security-feedback@oreilly.com</EmailAddress> </ContactPerson> </EntityDescriptor> diff --git a/swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml b/swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml new file mode 100644 index 00000000..2c6ee47f --- /dev/null +++ b/swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml @@ -0,0 +1,104 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vfu-dev.su.se/Shibboleth.sso"> + <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> + <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> + <samla:AttributeValue>http://www.swamid.se/category/hei-service</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/category/research-and-education</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/category/sfs-1993-1153</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + </md:Extensions> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF" index="1"/> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/wavelan"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/wavelan" index="2"/> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/idp.it.su.se"/> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/guest-idp.it.su.se"/> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/SWAMID"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vfu-dev.su.se/Shibboleth.sso/SWAMID" index="3"/> + <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"> + <mdui:DisplayName xml:lang="sv">VFU-Portalen utvecklingsmiljö</mdui:DisplayName> + <mdui:DisplayName xml:lang="en">VFU-Portalen development environment</mdui:DisplayName> + <mdui:Description xml:lang="sv">VFU-portalen utvecklingsmiljlö, Stockholms univsersitet</mdui:Description> + <mdui:Description xml:lang="en">VFU-portalen development environment, Stockholm University</mdui:Description> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>vfu-dev-app01.it.su.se</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=vfu-dev-app01.it.su.se</ds:X509SubjectName> + <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAJJZBo51HyoQMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV +BAMTFnZmdS1kZXYtYXBwMDEuaXQuc3Uuc2UwHhcNMTkwMzEyMTEyOTAyWhcNMjkw +MzA5MTEyOTAyWjAhMR8wHQYDVQQDExZ2ZnUtZGV2LWFwcDAxLml0LnN1LnNlMIIB +ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA1KjZlZOhiaI8chKaUTYAdpgy +FhZlHOZkle9ACEUsH5dtOGHogbhlEyrdNGOihacdgfBezempPZJZPhYBH9/89k4Y +0LAxfw0EnxellxBaRZbOr1OL/B91e2ldeJiikkgv1/pssEVTOrw2Yvg/sNi+ZHsp +VDb+N059kTng1Kfxnke12bMSZy/ypHJVnKypm+qmzpPrhnRdI270rthgDMFGqPlt +YJdUBJ/wZBsn5qwjWkn2jnTeFof4kJnpPOgugEgxY7nWnhqXnlAeGYwl5IBop1No +8z2fiTV6dnFNL3Ehq9g2wyA1SnraCUidLnq0+PtFh/IpLw283DAg5x0vp4SK+5gf +y2NWXz2QfHgwzSxk3q6yT9283t+z/6mA/4R0jXrX9pHts4u9dUCs8KniLtYmqCEy +manyz0+UEXb2eEapjvs7vZZ6x/qECbhQzyfla+w8eIveMZNc/xqLWuQUaoPx3K9c +h7YsjosPJF9m5dCt2vS84pCW7sxiIxhHCMbTK51xAgMBAAGjRDBCMCEGA1UdEQQa +MBiCFnZmdS1kZXYtYXBwMDEuaXQuc3Uuc2UwHQYDVR0OBBYEFFKIHe7/GTluH8tW +p1t7UtfyeWwGMA0GCSqGSIb3DQEBCwUAA4IBgQCBhkrZRri0LyeI4gvC/jrYrws0 +6wbagSbbLXSHUhaD6eiLzb6wo6GXIjzKrr0COVhddUCQV0DRVwZHueZgda3awr1E +eJBFJ6vYX5cQ4H75ddsSfqr0ZxqNyo+U14HCuHTzowhScp/DrTVsGFCQNLtowkab +ecve63+ImoIm3Rk5smLf8A351Wly4ukUhFsFnP03CwpYkdDUlT9R8dnKdr2/JtaN +mXHXTpa8q/i+dRb1MKfwUCUzcMLGmk8OBoVyjZPNcU5oU6JzjgZiCeYJTjlH7O20 +Q5XYE6PdbfzXpIpUDLAStWM3SfHWFQ38lQ4V7/sddMHr6kEaEF0emDk0eySppVzm +ktorn3oUw5pNCIdiJDSqTUqEVgSkNtBvmG8elfzZRlBlmgk5Hf313RaDJ34kPulu +PF6h4jo9EURgfQhOY3GtDrd7NzGsIZ/uRrvBw8ueJFGk94tUZKLFXa53wPCIYci/ +OfgfAaitGQwEniw6a8XAyH8IJbFaDvS3zSLWnrA= +</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vfu-dev.su.se/Shibboleth.sso/Artifact/SOAP" index="1"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/SOAP"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/Redirect"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/POST"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/Artifact"/> + <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/SOAP"/> + <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/Redirect"/> + <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/POST"/> + <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/Artifact"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML/POST" index="5"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML/Artifact" index="6"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML2/POST" index="7"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML2/Artifact" index="8"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML2/ECP" index="9"/> + </md:SPSSODescriptor> + <md:ContactPerson contactType="technical"> + <md:SurName>IT-avdelningen</md:SurName> + <md:EmailAddress>mailto:helpdesk@su.se</md:EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml index b9f5088a..02ee4cb9 100644 --- a/swamid-sp-2.0.mxml +++ b/swamid-sp-2.0.mxml @@ -631,4 +631,5 @@ <xi:include href="swamid-2.0/ladok3-jenkins-master.ladok.umu.se-securityrealm-finishlogin.xml"/> <xi:include href="swamid-2.0/expert.hubbletest.antagning.se-452-anvandare-sp.xml"/> <xi:include href="swamid-2.0/uu-se.zoom.us.xml"/> + <xi:include href="swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml"/> </md:EntitiesDescriptor> |