summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorJohan Wassberg <jocar@sunet.se>2023-05-15 13:23:13 +0200
committerJohan Wassberg <jocar@sunet.se>2023-05-15 13:24:21 +0200
commitc220a315a62ee5310789e1095fa04af7c602a897 (patch)
treef78dfeab207f37b9e2367579a6abd985c3a546a9
parentf5247e7d207598880382ced0ededd0bc7c57a70e (diff)
Run both signers with the same pyff configrationmd-2023-05-15-v04
-rw-r--r--metadata/swamid-prod-ng.fd76
-rw-r--r--metadata/swamid-prod.fd53
2 files changed, 50 insertions, 79 deletions
diff --git a/metadata/swamid-prod-ng.fd b/metadata/swamid-prod-ng.fd
deleted file mode 100644
index f09f9b54..00000000
--- a/metadata/swamid-prod-ng.fd
+++ /dev/null
@@ -1,76 +0,0 @@
-- when clean:
- - xslt:
- stylesheet: tidy.xsl
- - check_xml_namespaces
- - break
-- when update:
- - load:
- - /opt/metadata/swamid-edugain as swamid-edugain-dir cleanup clean
- - /opt/metadata/swamid-2.0 as swamid-2.0-dir cleanup clean
- - /opt/metadata/swamid-interfederations-2.0 as swamid-interfederations-dir cleanup clean
- - /opt/metadata/swamid-testing as swamid-testing-dir cleanup clean
-
- # Read dirs
- - fork:
- # swamid-2.0.xml
- - select as swamid-2.0:
- - swamid-edugain-dir
- - swamid-2.0-dir
- - swamid-interfederations-dir
- - fork:
- # swamid-edugain-1.0.xml
- - select as swamid-edugain-1.0:
- - swamid-edugain-dir
- - fork:
- # swamid-registered.xml swamid-discovery.xml
- - select as swamid-registered:
- - swamid-edugain-dir
- - swamid-2.0-dir
- # Read selectors
- - fork:
- # swamid-idp.xml
- - select as swamid-idp:
- - swamid-registered!//md:EntityDescriptor[md:IDPSSODescriptor]
- - fork:
- # swamid-idp-transitive.xml
- - select as swamid-idp-transitive:
- - swamid-2.0!//md:EntityDescriptor[md:IDPSSODescriptor]
- - fork:
- # swamid-sp.xml
- - select as swamid-sp:
- - swamid-registered!//md:EntityDescriptor[md:SPSSODescriptor]
- - fork:
- # swamid-sp-transitive.xml
- - select as swamid-sp-transitive:
- - swamid-2.0!//md:EntityDescriptor[md:SPSSODescriptor]
-
- # Testing
- - fork:
- # swamid-testing-1.0.xml
- - select as swamid-testing-1.0:
- - swamid-edugain-dir
- - swamid-2.0-dir
- - swamid-testing-dir
- - fork:
- # swamid-testing-idp-1.0.xml
- - select as swamid-testing-idp-1.0:
- - swamid-testning-1.0!//md:EntityDescriptor[md:IDPSSODescriptor]
- - break
-- when request:
- - select
- - pipe:
- - when accept application/samlmetadata+xml application/xml:
- - xslt:
- stylesheet: tidy.xsl
- - pubinfo:
- publisher: https://mds.swamid.se/
- - first
- - finalize:
- baseURL: https://mds.swamid.se/
- cacheDuration: PT5H
- validUntil: P10D
- - sign:
- key: http://pyff_luna_1:8000/swamidHA/swamid2
- cert: /etc/credentials/md-signer2.crt
- - emit application/xml
- - break
diff --git a/metadata/swamid-prod.fd b/metadata/swamid-prod.fd
index b37ce86a..f09f9b54 100644
--- a/metadata/swamid-prod.fd
+++ b/metadata/swamid-prod.fd
@@ -5,9 +5,56 @@
- break
- when update:
- load:
- - /opt/metadata/swamid-edugain cleanup clean
- - /opt/metadata/swamid-2.0 cleanup clean
- - /opt/metadata/swamid-interfederations-2.0 cleanup clean
+ - /opt/metadata/swamid-edugain as swamid-edugain-dir cleanup clean
+ - /opt/metadata/swamid-2.0 as swamid-2.0-dir cleanup clean
+ - /opt/metadata/swamid-interfederations-2.0 as swamid-interfederations-dir cleanup clean
+ - /opt/metadata/swamid-testing as swamid-testing-dir cleanup clean
+
+ # Read dirs
+ - fork:
+ # swamid-2.0.xml
+ - select as swamid-2.0:
+ - swamid-edugain-dir
+ - swamid-2.0-dir
+ - swamid-interfederations-dir
+ - fork:
+ # swamid-edugain-1.0.xml
+ - select as swamid-edugain-1.0:
+ - swamid-edugain-dir
+ - fork:
+ # swamid-registered.xml swamid-discovery.xml
+ - select as swamid-registered:
+ - swamid-edugain-dir
+ - swamid-2.0-dir
+ # Read selectors
+ - fork:
+ # swamid-idp.xml
+ - select as swamid-idp:
+ - swamid-registered!//md:EntityDescriptor[md:IDPSSODescriptor]
+ - fork:
+ # swamid-idp-transitive.xml
+ - select as swamid-idp-transitive:
+ - swamid-2.0!//md:EntityDescriptor[md:IDPSSODescriptor]
+ - fork:
+ # swamid-sp.xml
+ - select as swamid-sp:
+ - swamid-registered!//md:EntityDescriptor[md:SPSSODescriptor]
+ - fork:
+ # swamid-sp-transitive.xml
+ - select as swamid-sp-transitive:
+ - swamid-2.0!//md:EntityDescriptor[md:SPSSODescriptor]
+
+ # Testing
+ - fork:
+ # swamid-testing-1.0.xml
+ - select as swamid-testing-1.0:
+ - swamid-edugain-dir
+ - swamid-2.0-dir
+ - swamid-testing-dir
+ - fork:
+ # swamid-testing-idp-1.0.xml
+ - select as swamid-testing-idp-1.0:
+ - swamid-testning-1.0!//md:EntityDescriptor[md:IDPSSODescriptor]
- break
- when request:
- select