summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorPaul Scott <paul.scott@kau.se>2019-04-16 13:31:21 +0000
committerPaul Scott <paul.scott@kau.se>2019-04-16 13:31:21 +0000
commit7e89799b602e51838e8560733e0bc24fea3bf697 (patch)
treea3b9a2f1cce2695c76960e7d1662f27ed1da09f6
parent450e82ae12d700477c3da99b84a50113bf36dd5f (diff)
Resolves SWAMID-2164
-rw-r--r--swamid-2.0/urn-auth0-safarijv-uppsala-university.xml6
-rw-r--r--swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml104
-rw-r--r--swamid-sp-2.0.mxml1
3 files changed, 108 insertions, 3 deletions
diff --git a/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml b/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml
index 185d3d30..9719868f 100644
--- a/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml
+++ b/swamid-2.0/urn-auth0-safarijv-uppsala-university.xml
@@ -54,14 +54,14 @@ xuvjUFEYjJuhY/HwYbmCghKebqIusOEkfaLO0HZmwpI=
</Organization>
<ContactPerson contactType="administrative">
<GivenName>Jesse Banning</GivenName>
- <EmailAddress>safari-prof-serv@oreilly.com</EmailAddress>
+ <EmailAddress>mailto:safari-prof-serv@oreilly.com</EmailAddress>
</ContactPerson>
<ContactPerson contactType="technical">
<GivenName>Jesse Banning</GivenName>
- <EmailAddress>safari-prof-serv@oreilly.com</EmailAddress>
+ <EmailAddress>mailto:safari-prof-serv@oreilly.com</EmailAddress>
</ContactPerson>
<ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
<GivenName>Matt Kirk</GivenName>
- <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ <EmailAddress>mailto:security-feedback@oreilly.com</EmailAddress>
</ContactPerson>
</EntityDescriptor>
diff --git a/swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml b/swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml
new file mode 100644
index 00000000..2c6ee47f
--- /dev/null
+++ b/swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml
@@ -0,0 +1,104 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://vfu-dev.su.se/Shibboleth.sso">
+ <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
+ <samla:AttributeValue>http://www.swamid.se/category/hei-service</samla:AttributeValue>
+ <samla:AttributeValue>http://www.swamid.se/category/research-and-education</samla:AttributeValue>
+ <samla:AttributeValue>http://www.swamid.se/category/sfs-1993-1153</samla:AttributeValue>
+ </samla:Attribute>
+ </mdattr:EntityAttributes>
+ </md:Extensions>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF"/>
+ <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF" index="1"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/wavelan"/>
+ <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/wavelan" index="2"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/idp.it.su.se"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/WAYF/guest-idp.it.su.se"/>
+ <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://vfu-dev.su.se/Shibboleth.sso/SWAMID"/>
+ <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vfu-dev.su.se/Shibboleth.sso/SWAMID" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="sv">VFU-Portalen utvecklingsmiljö</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">VFU-Portalen development environment</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">VFU-portalen utvecklingsmiljlö, Stockholms univsersitet</mdui:Description>
+ <mdui:Description xml:lang="en">VFU-portalen development environment, Stockholm University</mdui:Description>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
+ <ds:KeyName>vfu-dev-app01.it.su.se</ds:KeyName>
+ <ds:X509Data>
+ <ds:X509SubjectName>CN=vfu-dev-app01.it.su.se</ds:X509SubjectName>
+ <ds:X509Certificate>MIIECTCCAnGgAwIBAgIJAJJZBo51HyoQMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
+ </md:KeyDescriptor>
+ <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vfu-dev.su.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/SOAP"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/Redirect"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/POST"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vfu-dev.su.se/Shibboleth.sso/SLO/Artifact"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/SOAP"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/Redirect"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/POST"/>
+ <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vfu-dev.su.se/Shibboleth.sso/NIM/Artifact"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vfu-dev.su.se/Shibboleth.sso/SAML2/ECP" index="9"/>
+ </md:SPSSODescriptor>
+ <md:ContactPerson contactType="technical">
+ <md:SurName>IT-avdelningen</md:SurName>
+ <md:EmailAddress>mailto:helpdesk@su.se</md:EmailAddress>
+ </md:ContactPerson>
+</md:EntityDescriptor>
diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml
index b9f5088a..02ee4cb9 100644
--- a/swamid-sp-2.0.mxml
+++ b/swamid-sp-2.0.mxml
@@ -631,4 +631,5 @@
<xi:include href="swamid-2.0/ladok3-jenkins-master.ladok.umu.se-securityrealm-finishlogin.xml"/>
<xi:include href="swamid-2.0/expert.hubbletest.antagning.se-452-anvandare-sp.xml"/>
<xi:include href="swamid-2.0/uu-se.zoom.us.xml"/>
+ <xi:include href="swamid-2.0/vfu-dev.su.se-shibboleth.sso.xml"/>
</md:EntitiesDescriptor>