summaryrefslogtreecommitdiff
path: root/swamid-interfederations-2.0/groupes-aa.renater.fr.xml
diff options
context:
space:
mode:
authorLeif Johansson <leifj@sunet.se>2016-06-08 14:54:24 +0200
committerLeif Johansson <leifj@sunet.se>2016-06-08 14:54:24 +0200
commit0c2531adc289f200ebb97926dc61b69ef7270971 (patch)
tree27d1dd4fc7c609e3bc76ad757278113ec2015a26 /swamid-interfederations-2.0/groupes-aa.renater.fr.xml
parentbcd90b64c1dfd36dd6a24363b257452b94bb6a1e (diff)
http://mds.edugain.org into swamid-interfederations-2.0
Diffstat (limited to 'swamid-interfederations-2.0/groupes-aa.renater.fr.xml')
-rw-r--r--swamid-interfederations-2.0/groupes-aa.renater.fr.xml109
1 files changed, 54 insertions, 55 deletions
diff --git a/swamid-interfederations-2.0/groupes-aa.renater.fr.xml b/swamid-interfederations-2.0/groupes-aa.renater.fr.xml
index bd16bb92..d2332dfd 100644
--- a/swamid-interfederations-2.0/groupes-aa.renater.fr.xml
+++ b/swamid-interfederations-2.0/groupes-aa.renater.fr.xml
@@ -1,34 +1,34 @@
-<?xml version="1.0"?>
+<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://groupes-aa.renater.fr">
+ <md:Extensions>
+ <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="https://federation.renater.fr/" registrationInstant="2014-09-25T15:11:29Z">
+ <mdrpi:RegistrationPolicy xml:lang="en">https://services.renater.fr/federation/en/metadata_registration_practice_statement</mdrpi:RegistrationPolicy>
+ </mdrpi:RegistrationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://federation.renater.fr/category/collaboratif</saml:AttributeValue>
+ <saml:AttributeValue>https://federation.renater.fr/scope/community</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </md:Extensions>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
- <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="https://federation.renater.fr/" registrationInstant="2014-09-25T15:11:29Z">
- <mdrpi:RegistrationPolicy xml:lang="en">https://services.renater.fr/federation/en/metadata_registration_practice_statement</mdrpi:RegistrationPolicy>
- </mdrpi:RegistrationInfo>
- <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
- <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
- <saml:AttributeValue>https://federation.renater.fr/category/collaboratif</saml:AttributeValue>
- <saml:AttributeValue>https://federation.renater.fr/scope/community</saml:AttributeValue>
- </saml:Attribute>
- </mdattr:EntityAttributes>
- </md:Extensions>
- <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol">
- <md:Extensions>
- <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
- <mdui:DisplayName xml:lang="en">RENATER - Validation of the Authorization Service</mdui:DisplayName>
- <mdui:InformationURL xml:lang="fr">https://groupes-aa.renater.fr</mdui:InformationURL>
- <mdui:Description xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities.
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RENATER - Validation of the Authorization Service</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="fr">https://groupes-aa.renater.fr</mdui:InformationURL>
+ <mdui:Description xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities.
It allows virtual organizations (e.g. research communities) composed by people belonging to different institutions (i.e. managed by different referentials) to access to common resources (if authorization was granted) after having been authenticated by their respective institutions.
This service will be in charge of authentication and provide accurate access control on a community's web resource (group defined in Sympa). This resource can therefore be hosted anywhere.</mdui:Description>
- <mdui:DisplayName xml:lang="fr">RENATER - Validation du Service d'autorisation</mdui:DisplayName>
- <mdui:Description xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML.
+ <mdui:DisplayName xml:lang="fr">RENATER - Validation du Service d'autorisation</mdui:DisplayName>
+ <mdui:Description xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML.
Il permet à des organisations virtuelles (VO, communautés de chercheurs) appartenant à des établissements différents (donc gérés dans des référentiels différents) d'accéder à des ressources communes (sur autorisation) après authentification auprès de leurs établissements respectifs.
Ce service se chargera de l'authentification et permettra un contrôle d'accès fin sur une ressource Web d'une communauté (groupe défini dans Sympa) qui peut donc être hébergée n'importe où.</mdui:Description>
- </mdui:UIInfo>
- </md:Extensions>
- <md:KeyDescriptor use="signing">
- <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
- <ds:X509Data>
- <ds:X509Certificate>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
+ <ds:X509Data>
+ <ds:X509Certificate>
MIIC+jCCAeKgAwIBAgIJALBSjVtKCuQcMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV
BAMTEWRhbW9uYS5yZW5hdGVyLmZyMB4XDTE0MDkyMjE0NDgxMVoXDTI0MDkxOTE0
NDgxMVowHDEaMBgGA1UEAxMRZGFtb25hLnJlbmF0ZXIuZnIwggEiMA0GCSqGSIb3
@@ -47,13 +47,13 @@ B2xZ41JS1unwqh1+azyjNCYMn9P8UYanAOTDdycZqCOFASXGSkd+aCHWrHz1lVGo
bGESZR7Tv0Rg476ex/x+VHEXmJZurlD9Sf7UAMbErhorRKPsfrReAuWpaqSJyw==
</ds:X509Certificate>
- </ds:X509Data>
- </ds:KeyInfo>
- </md:KeyDescriptor>
- <md:KeyDescriptor use="encryption">
- <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
- <ds:X509Data>
- <ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
+ <ds:X509Data>
+ <ds:X509Certificate>
MIIC+jCCAeKgAwIBAgIJALBSjVtKCuQcMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV
BAMTEWRhbW9uYS5yZW5hdGVyLmZyMB4XDTE0MDkyMjE0NDgxMVoXDTI0MDkxOTE0
NDgxMVowHDEaMBgGA1UEAxMRZGFtb25hLnJlbmF0ZXIuZnIwggEiMA0GCSqGSIb3
@@ -72,30 +72,29 @@ B2xZ41JS1unwqh1+azyjNCYMn9P8UYanAOTDdycZqCOFASXGSkd+aCHWrHz1lVGo
bGESZR7Tv0Rg476ex/x+VHEXmJZurlD9Sf7UAMbErhorRKPsfrReAuWpaqSJyw==
</ds:X509Certificate>
- </ds:X509Data>
- </ds:KeyInfo>
- </md:KeyDescriptor>
- <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML2/POST" index="1"/>
- <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML/POST" index="5"/>
- <md:AttributeConsumingService index="0">
- <md:ServiceName xml:lang="fr">RENATER - Validation du Service d'autorisation</md:ServiceName>
- <md:ServiceName xml:lang="en">RENATER - Validation of the Authorization Service</md:ServiceName>
- <md:ServiceDescription xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML.
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AttributeConsumingService index="0">
+ <md:ServiceName xml:lang="fr">RENATER - Validation du Service d'autorisation</md:ServiceName>
+ <md:ServiceName xml:lang="en">RENATER - Validation of the Authorization Service</md:ServiceName>
+ <md:ServiceDescription xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML.
Il permet à des organisations virtuelles (VO, communautés de chercheurs) appartenant à des établissements différents (donc gérés dans des référentiels différents) d'accéder à des ressources communes (sur autorisation) après authentification auprès de leurs établissements respectifs.
Ce service se chargera de l'authentification et permettra un contrôle d'accès fin sur une ressource Web d'une communauté (groupe défini dans Sympa) qui peut donc être hébergée n'importe où.</md:ServiceDescription>
- <md:ServiceDescription xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities.
+ <md:ServiceDescription xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities.
It allows virtual organizations (e.g. research communities) composed by people belonging to different institutions (i.e. managed by different referentials) to access to common resources (if authorization was granted) after having been authenticated by their respective institutions.
This service will be in charge of authentication and provide accurate access control on a community's web resource (group defined in Sympa). This resource can therefore be hosted anywhere.</md:ServiceDescription>
- <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true">
- </md:RequestedAttribute>
- </md:AttributeConsumingService>
- </md:SPSSODescriptor>
- <md:Organization>
- <md:OrganizationName xml:lang="en">GIP RENATER</md:OrganizationName>
- <md:OrganizationDisplayName xml:lang="en">GIP RENATER</md:OrganizationDisplayName>
- <md:OrganizationURL xml:lang="en">http://www.renater.fr</md:OrganizationURL>
- </md:Organization>
- <md:ContactPerson contactType="technical">
- <md:EmailAddress>support@renater.fr</md:EmailAddress>
- </md:ContactPerson>
- </md:EntityDescriptor>
+ <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
+ <md:Organization>
+ <md:OrganizationName xml:lang="en">GIP RENATER</md:OrganizationName>
+ <md:OrganizationDisplayName xml:lang="en">GIP RENATER</md:OrganizationDisplayName>
+ <md:OrganizationURL xml:lang="en">http://www.renater.fr</md:OrganizationURL>
+ </md:Organization>
+ <md:ContactPerson contactType="technical">
+ <md:EmailAddress>support@renater.fr</md:EmailAddress>
+ </md:ContactPerson>
+</md:EntityDescriptor>