summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--metadata/swamid-2.0/shared-sso-proxy.cnaas.sunet.se-sp.xml89
-rw-r--r--metadata/swamid-sp-2.0.mxml1
2 files changed, 90 insertions, 0 deletions
diff --git a/metadata/swamid-2.0/shared-sso-proxy.cnaas.sunet.se-sp.xml b/metadata/swamid-2.0/shared-sso-proxy.cnaas.sunet.se-sp.xml
new file mode 100644
index 00000000..c448611c
--- /dev/null
+++ b/metadata/swamid-2.0/shared-sso-proxy.cnaas.sunet.se-sp.xml
@@ -0,0 +1,89 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://shared-sso-proxy.cnaas.sunet.se/sp">
+ <md:Extensions>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#md5"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#ripemd160"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-md5"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-ripemd160"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha224"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
+ <mdattr:EntityAttributes>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
+ </samla:Attribute>
+ </mdattr:EntityAttributes>
+ <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2023-08-16T08:06:54Z">
+ <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
+ </mdrpi:RegistrationInfo>
+ </md:Extensions>
+ <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol" AuthnRequestsSigned="false" WantAssertionsSigned="false">
+ <md:Extensions>
+ <idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shared-sso-proxy1.cnaas.sunet.se/Saml2SP/disco" index="1"/>
+ <mdui:UIInfo>
+ <mdui:Description xml:lang="en">CNaaS Shared SSO</mdui:Description>
+ <mdui:Description xml:lang="sv">CNaaS delad SSO</mdui:Description>
+ <mdui:DisplayName xml:lang="en">CnaaS Shared SSO</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="sv">CNaaS delad SSO</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.sunet.se/services/nat/campusnat-cnaas</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="sv">https://www.sunet.se/services/nat/campusnat-cnaas</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vr.se/om-webbplatsen/behandling-av-personuppgifter.html</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://www.vr.se/om-webbplatsen/behandling-av-personuppgifter.html</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shared-sso-proxy1.cnaas.sunet.se/Saml2SP/acs/post" index="1"/>
+ </md:SPSSODescriptor>
+ <md:Organization>
+ <md:OrganizationName xml:lang="en">The Swedish Research Council</md:OrganizationName>
+ <md:OrganizationName xml:lang="sv">Vetenskapsrådet</md:OrganizationName>
+ <md:OrganizationDisplayName xml:lang="en">Sunet</md:OrganizationDisplayName>
+ <md:OrganizationDisplayName xml:lang="sv">Sunet</md:OrganizationDisplayName>
+ <md:OrganizationURL xml:lang="en">https://www.sunet.se/en</md:OrganizationURL>
+ <md:OrganizationURL xml:lang="sv">https://www.sunet.se</md:OrganizationURL>
+ </md:Organization>
+ <md:ContactPerson contactType="technical">
+ <md:GivenName>Sunet NOC</md:GivenName>
+ <md:EmailAddress>mailto:noc@sunet.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="support">
+ <md:GivenName>Sunet NOC</md:GivenName>
+ <md:EmailAddress>mailto:noc@sunet.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <md:GivenName>Sunet NOC</md:GivenName>
+ <md:EmailAddress>mailto:noc@sunet.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="administrative">
+ <md:GivenName>Sunet NOC</md:GivenName>
+ <md:EmailAddress>mailto:noc@sunet.se</md:EmailAddress>
+ </md:ContactPerson>
+</md:EntityDescriptor>
diff --git a/metadata/swamid-sp-2.0.mxml b/metadata/swamid-sp-2.0.mxml
index 2f8858a1..a5886adc 100644
--- a/metadata/swamid-sp-2.0.mxml
+++ b/metadata/swamid-sp-2.0.mxml
@@ -378,6 +378,7 @@
<xi:include href="swamid-2.0/service4mobility.su.se-mobility_test.xml"/>
<xi:include href="swamid-2.0/sesam.uu.se-shibboleth.xml"/>
<xi:include href="swamid-2.0/sh-se.zoom.us.xml"/>
+ <xi:include href="swamid-2.0/shared-sso-proxy.cnaas.sunet.se-sp.xml"/>
<xi:include href="swamid-2.0/shibboleth.ebscohost.com.xml"/>
<xi:include href="swamid-2.0/shibboleth.turnitin.com-shibboleth.xml"/>
<xi:include href="swamid-2.0/shiny-stage.kib.ki.se-shibboleth.xml"/>