summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--swamid-2.0/account-idac.ki.se-shibboleth.xml50
1 files changed, 36 insertions, 14 deletions
diff --git a/swamid-2.0/account-idac.ki.se-shibboleth.xml b/swamid-2.0/account-idac.ki.se-shibboleth.xml
index 781c1bfc..3bf5c37b 100644
--- a/swamid-2.0/account-idac.ki.se-shibboleth.xml
+++ b/swamid-2.0/account-idac.ki.se-shibboleth.xml
@@ -21,10 +21,9 @@
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
<mdattr:EntityAttributes>
- <samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
- <samla:AttributeValue>http://www.swamid.se/category/hei-service</samla:AttributeValue>
- <samla:AttributeValue>http://www.swamid.se/category/research-and-education</samla:AttributeValue>
- <samla:AttributeValue>http://www.swamid.se/category/sfs-1993-1153</samla:AttributeValue>
+ <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
</samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
@@ -36,6 +35,10 @@
<mdui:DisplayName xml:lang="en">KI Account</mdui:DisplayName>
<mdui:Description xml:lang="sv">Kontohantering/aktivering för anställda, studenter, m.fl. som har konto på KI</mdui:Description>
<mdui:Description xml:lang="en">Account management/activation for employees, students and others with accounts at KI</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://account.ki.se</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="sv">https://account.ki.se</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://account.ki.se/pp_en.html</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://account.ki.se/pp_sv.html</mdui:PrivacyStatementURL>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor use="signing">
@@ -63,8 +66,7 @@ rP0GpxGvsFepY90fBdDGdk86DKBnRxkFP2s5pxCbt+URbjPSezjF//Zc5w0bbZ9U
2vviw6D+KQbVtnfNVwoGz0qcXM6ypxGsuLnqz/E3u1XoFLSdK5IzS0nLb43iDm1A
McGZ1tGIchPQA+KJk8+VJw5hYTNGlkIq5JpatSYG1+1cwxYnkcOMJpSjNqkt8dE1
6vtXYxdzVOxgHXzAjgSXO0OlklfJxmfVQEdkDpYsWX5HtQ28rOyJf7wHQ748BG30
-OGefgfJt2JHjnQ4lSm+Q8kJRSIl3s4vAY2HvStfozsvyL/2+jcD5e45B0z4=
-</ds:X509Certificate>
+OGefgfJt2JHjnQ4lSm+Q8kJRSIl3s4vAY2HvStfozsvyL/2+jcD5e45B0z4=</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
@@ -93,8 +95,7 @@ P/CxvkqKYb49Jx4orTWUaB2EjcYiGt73NKV3FQUqgQKLbfouzIeBaca+xf7aGLVg
aQlCtc3bzGtqUm4uEQMaRz8VCkUtdGk1KevLk2gGVIN5RHrPpMPst5vDXoKsk26o
kSL+CA/rbpXwRm3nHNg1rnjc3bw7VZn6mPa66U0FisLPsrkcuYS+AZAdA0fO02bL
9FqeL0yDDJIfJ/pXM//wVuThe/hof6Xt9Ay8eBgD3SIwmiaKr6l03xtpiHuz6FXG
-4HBEyf/zMpyyD/X8MxZwc+oCOVZ1pdsdEnk+kXeZ4oiYLVUWDkj10wh3D3Y=
-</ds:X509Certificate>
+4HBEyf/zMpyyD/X8MxZwc+oCOVZ1pdsdEnk+kXeZ4oiYLVUWDkj10wh3D3Y=</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
@@ -115,15 +116,36 @@ kSL+CA/rbpXwRm3nHNg1rnjc3bw7VZn6mPa66U0FisLPsrkcuYS+AZAdA0fO02bL
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.ki.se/Shibboleth.sso/SAML2/POST" index="1"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://account.ki.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://account.ki.se/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">KI Account</md:ServiceName>
+ <md:ServiceName xml:lang="sv">KI Account</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
</md:SPSSODescriptor>
+ <md:Organization>
+ <md:OrganizationName xml:lang="en">Karolinska Institutet</md:OrganizationName>
+ <md:OrganizationName xml:lang="sv">Karolinska Institutet</md:OrganizationName>
+ <md:OrganizationDisplayName xml:lang="sv">Karolinska Institutet</md:OrganizationDisplayName>
+ <md:OrganizationDisplayName xml:lang="en">Karolinska Institutet</md:OrganizationDisplayName>
+ <md:OrganizationURL xml:lang="en">https://ki.se</md:OrganizationURL>
+ <md:OrganizationURL xml:lang="sv">https://ki.se</md:OrganizationURL>
+ </md:Organization>
<md:ContactPerson contactType="technical">
- <md:GivenName>Eric</md:GivenName>
- <md:SurName>Johansson</md:SurName>
- <md:EmailAddress>mailto:eric.johansson@ki.se</md:EmailAddress>
+ <md:Company>Karolinska Institutet</md:Company>
+ <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson contactType="support">
- <md:GivenName>IT-support</md:GivenName>
- <md:EmailAddress>mailto:it-support@ki.se</md:EmailAddress>
- <md:TelephoneNumber>+46852482222</md:TelephoneNumber>
+ <md:Company>Karolinska Institutet</md:Company>
+ <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress>
+ <md:TelephoneNumber>+46 8 524 82222</md:TelephoneNumber>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="administrative">
+ <md:Company>Karolinska Institutet</md:Company>
+ <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <md:Company>Karolinska Institutet</md:Company>
+ <md:GivenName>Security Response Team</md:GivenName>
+ <md:EmailAddress>mailto:abuse@ki.se</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>