diff options
-rw-r--r-- | swamid-2.0/account-idac.ki.se-shibboleth.xml | 50 |
1 files changed, 36 insertions, 14 deletions
diff --git a/swamid-2.0/account-idac.ki.se-shibboleth.xml b/swamid-2.0/account-idac.ki.se-shibboleth.xml index 781c1bfc..3bf5c37b 100644 --- a/swamid-2.0/account-idac.ki.se-shibboleth.xml +++ b/swamid-2.0/account-idac.ki.se-shibboleth.xml @@ -21,10 +21,9 @@ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> <mdattr:EntityAttributes> - <samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> - <samla:AttributeValue>http://www.swamid.se/category/hei-service</samla:AttributeValue> - <samla:AttributeValue>http://www.swamid.se/category/research-and-education</samla:AttributeValue> - <samla:AttributeValue>http://www.swamid.se/category/sfs-1993-1153</samla:AttributeValue> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> </samla:Attribute> </mdattr:EntityAttributes> </md:Extensions> @@ -36,6 +35,10 @@ <mdui:DisplayName xml:lang="en">KI Account</mdui:DisplayName> <mdui:Description xml:lang="sv">Kontohantering/aktivering för anställda, studenter, m.fl. som har konto på KI</mdui:Description> <mdui:Description xml:lang="en">Account management/activation for employees, students and others with accounts at KI</mdui:Description> + <mdui:InformationURL xml:lang="en">https://account.ki.se</mdui:InformationURL> + <mdui:InformationURL xml:lang="sv">https://account.ki.se</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en">https://account.ki.se/pp_en.html</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://account.ki.se/pp_sv.html</mdui:PrivacyStatementURL> </mdui:UIInfo> </md:Extensions> <md:KeyDescriptor use="signing"> @@ -63,8 +66,7 @@ rP0GpxGvsFepY90fBdDGdk86DKBnRxkFP2s5pxCbt+URbjPSezjF//Zc5w0bbZ9U 2vviw6D+KQbVtnfNVwoGz0qcXM6ypxGsuLnqz/E3u1XoFLSdK5IzS0nLb43iDm1A McGZ1tGIchPQA+KJk8+VJw5hYTNGlkIq5JpatSYG1+1cwxYnkcOMJpSjNqkt8dE1 6vtXYxdzVOxgHXzAjgSXO0OlklfJxmfVQEdkDpYsWX5HtQ28rOyJf7wHQ748BG30 -OGefgfJt2JHjnQ4lSm+Q8kJRSIl3s4vAY2HvStfozsvyL/2+jcD5e45B0z4= -</ds:X509Certificate> +OGefgfJt2JHjnQ4lSm+Q8kJRSIl3s4vAY2HvStfozsvyL/2+jcD5e45B0z4=</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> @@ -93,8 +95,7 @@ P/CxvkqKYb49Jx4orTWUaB2EjcYiGt73NKV3FQUqgQKLbfouzIeBaca+xf7aGLVg aQlCtc3bzGtqUm4uEQMaRz8VCkUtdGk1KevLk2gGVIN5RHrPpMPst5vDXoKsk26o kSL+CA/rbpXwRm3nHNg1rnjc3bw7VZn6mPa66U0FisLPsrkcuYS+AZAdA0fO02bL 9FqeL0yDDJIfJ/pXM//wVuThe/hof6Xt9Ay8eBgD3SIwmiaKr6l03xtpiHuz6FXG -4HBEyf/zMpyyD/X8MxZwc+oCOVZ1pdsdEnk+kXeZ4oiYLVUWDkj10wh3D3Y= -</ds:X509Certificate> +4HBEyf/zMpyyD/X8MxZwc+oCOVZ1pdsdEnk+kXeZ4oiYLVUWDkj10wh3D3Y=</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> @@ -115,15 +116,36 @@ kSL+CA/rbpXwRm3nHNg1rnjc3bw7VZn6mPa66U0FisLPsrkcuYS+AZAdA0fO02bL <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.ki.se/Shibboleth.sso/SAML2/POST" index="1"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://account.ki.se/Shibboleth.sso/SAML2/Artifact" index="3"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://account.ki.se/Shibboleth.sso/SAML2/ECP" index="4"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">KI Account</md:ServiceName> + <md:ServiceName xml:lang="sv">KI Account</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> </md:SPSSODescriptor> + <md:Organization> + <md:OrganizationName xml:lang="en">Karolinska Institutet</md:OrganizationName> + <md:OrganizationName xml:lang="sv">Karolinska Institutet</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="sv">Karolinska Institutet</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="en">Karolinska Institutet</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">https://ki.se</md:OrganizationURL> + <md:OrganizationURL xml:lang="sv">https://ki.se</md:OrganizationURL> + </md:Organization> <md:ContactPerson contactType="technical"> - <md:GivenName>Eric</md:GivenName> - <md:SurName>Johansson</md:SurName> - <md:EmailAddress>mailto:eric.johansson@ki.se</md:EmailAddress> + <md:Company>Karolinska Institutet</md:Company> + <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress> </md:ContactPerson> <md:ContactPerson contactType="support"> - <md:GivenName>IT-support</md:GivenName> - <md:EmailAddress>mailto:it-support@ki.se</md:EmailAddress> - <md:TelephoneNumber>+46852482222</md:TelephoneNumber> + <md:Company>Karolinska Institutet</md:Company> + <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress> + <md:TelephoneNumber>+46 8 524 82222</md:TelephoneNumber> + </md:ContactPerson> + <md:ContactPerson contactType="administrative"> + <md:Company>Karolinska Institutet</md:Company> + <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <md:Company>Karolinska Institutet</md:Company> + <md:GivenName>Security Response Team</md:GivenName> + <md:EmailAddress>mailto:abuse@ki.se</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor> |