summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml164
1 files changed, 164 insertions, 0 deletions
diff --git a/metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml b/metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml
new file mode 100644
index 00000000..a6fc0c23
--- /dev/null
+++ b/metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml
@@ -0,0 +1,164 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://devpassport.lu.se/SAML2/Shibboleth">
+ <md:Extensions>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
+ <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
+ <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
+ <mdattr:EntityAttributes>
+ <samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
+ <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
+ </samla:Attribute>
+ </mdattr:EntityAttributes>
+ <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2024-01-11T14:33:42Z">
+ <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
+ </mdrpi:RegistrationInfo>
+ </md:Extensions>
+ <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nyadevpassport.lu.se/Shibboleth.sso/Login"/>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="sv">Lund universitets kontoaktivering och lösenordsåterställning</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Lund University user account activation and password reset</mdui:DisplayName>
+ <mdui:Description xml:lang="sv">Denna tjänst används för att du som ny vid universitetet ska kunna aktivera ditt användarkonto vid universitetet.</mdui:Description>
+ <mdui:Description xml:lang="en">As a new user you use this service to activate your university user account.</mdui:Description>
+ <mdui:InformationURL xml:lang="sv">https://devpassport.lu.se</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://devpassport.lu.se</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="sv">https://devpassport.lu.se/privacy/</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://devpassport.lu.se/privacy/</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:KeyName>devpassport.lu.se</ds:KeyName>
+ <ds:KeyName>https://testidpv4.lu.se/idp/shibboleth</ds:KeyName>
+ <ds:X509Data>
+ <ds:X509SubjectName>CN=devpassport.lu.se</ds:X509SubjectName>
+ <ds:X509Certificate>MIIFLTCCAxWgAwIBAgIURAOOH4oM0FnAl8I0Du/H2FaycTwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="encryption">
+ <ds:KeyInfo>
+ <ds:KeyName>devpassport.lu.se</ds:KeyName>
+ <ds:KeyName>https://testidpv4.lu.se/idp/shibboleth</ds:KeyName>
+ <ds:X509Data>
+ <ds:X509SubjectName>CN=devpassport.lu.se</ds:X509SubjectName>
+ <ds:X509Certificate>MIIFLTCCAxWgAwIBAgIUCgjapWs7pevWpys82wAYi0RH7hwwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
+ <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
+ </md:KeyDescriptor>
+ <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nyadevpassport.lu.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/SOAP"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/Redirect"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/POST"/>
+ <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/Artifact"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AttributeConsumingService index="1">
+ <md:ServiceName xml:lang="en">Lund University user account management portal</md:ServiceName>
+ <md:ServiceName xml:lang="sv">Lunds universitets kontohanteringsportal</md:ServiceName>
+ <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </md:AttributeConsumingService>
+ </md:SPSSODescriptor>
+ <md:Organization>
+ <md:OrganizationName xml:lang="sv">Lunds universitet</md:OrganizationName>
+ <md:OrganizationName xml:lang="en">Lund University</md:OrganizationName>
+ <md:OrganizationDisplayName xml:lang="sv">Lunds universitet</md:OrganizationDisplayName>
+ <md:OrganizationDisplayName xml:lang="en">Lund University</md:OrganizationDisplayName>
+ <md:OrganizationURL xml:lang="sv">https://www.lu.se/</md:OrganizationURL>
+ <md:OrganizationURL xml:lang="en">https://www.lunduniversity.lu.se/</md:OrganizationURL>
+ </md:Organization>
+ <md:ContactPerson contactType="technical">
+ <md:EmailAddress>mailto:passportadmin@epic.lu.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="administrative">
+ <md:EmailAddress>mailto:servicedesk@lu.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="support">
+ <md:EmailAddress>mailto:passportadmin@epic.lu.se</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <md:GivenName>LU IRT</md:GivenName>
+ <md:EmailAddress>mailto:abuse@lu.se</md:EmailAddress>
+ </md:ContactPerson>
+</md:EntityDescriptor>