diff options
-rw-r--r-- | swamid-2.0/crowd-test.sunet.se-shibboleth.xml | 7 | ||||
-rw-r--r-- | swamid-2.0/konto.kau.se.xml | 62 |
2 files changed, 21 insertions, 48 deletions
diff --git a/swamid-2.0/crowd-test.sunet.se-shibboleth.xml b/swamid-2.0/crowd-test.sunet.se-shibboleth.xml index c9fc925f..2fef01e7 100644 --- a/swamid-2.0/crowd-test.sunet.se-shibboleth.xml +++ b/swamid-2.0/crowd-test.sunet.se-shibboleth.xml @@ -1,10 +1,9 @@ - +<?xml version="1.0" encoding="UTF-8"?> <!-- This is example metadata only. Do *NOT* supply it as is without review, and do *NOT* provide it in real time to your partners. --> -<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_97d48940511d769267fc4b1b4f618378c4f677ea" entityID="https://crowd-test.sunet.se/shibboleth"> - +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://crowd-test.sunet.se/shibboleth"> <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> @@ -29,7 +28,6 @@ and do *NOT* provide it in real time to your partners. </samla:Attribute> </mdattr:EntityAttributes> </md:Extensions> - <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:Extensions> <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://crowd-test.sunet.se/Shibboleth.sso/DS/nordu.net"/> @@ -107,5 +105,4 @@ ZrXY5oHBd8OApNTk1ef9iGdfMQ== <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://crowd-test.sunet.se/Shibboleth.sso/SLO/Artifact"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://crowd-test.sunet.se/Shibboleth.sso/SAML2/POST" index="1"/> </md:SPSSODescriptor> - </md:EntityDescriptor> diff --git a/swamid-2.0/konto.kau.se.xml b/swamid-2.0/konto.kau.se.xml index f503a013..ed34a316 100644 --- a/swamid-2.0/konto.kau.se.xml +++ b/swamid-2.0/konto.kau.se.xml @@ -1,22 +1,6 @@ <?xml version="1.0" encoding="UTF-8"?> -<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://konto.kau.se"> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://konto.kau.se"> <md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc: SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> <samla:AttributeValue>http://www.swamid.se/category/hei-service</samla:AttributeValue> @@ -25,9 +9,9 @@ </samla:Attribute> </mdattr:EntityAttributes> </md:Extensions> - <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol"> <md:Extensions> - <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/WAYF/antagning.se"/> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/Login/antagning.se"/> <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/Login/eduID-AL2"/> <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/Login/kau.se"/> <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto-test.kau.se/Shibboleth.sso/Login/antagning.se"/> @@ -41,11 +25,10 @@ </mdui:UIInfo> </md:Extensions> <md:KeyDescriptor> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:KeyName>konto.kau.se</ds:KeyName> + <ds:KeyInfo> <ds:X509Data> - <ds:X509SubjectName>CN=konto.kau.se</ds:X509SubjectName> - <ds:X509Certificate>MIID6zCCAlOgAwIBAgIJALDo9OBjmOopMA0GCSqGSIb3DQEBCwUAMBcxFTATBgNV + <ds:X509Certificate> +MIID6zCCAlOgAwIBAgIJALDo9OBjmOopMA0GCSqGSIb3DQEBCwUAMBcxFTATBgNV BAMTDGtvbnRvLmthdS5zZTAeFw0xNzAzMzAxMzExNDJaFw0yNzAzMjgxMzExNDJa MBcxFTATBgNVBAMTDGtvbnRvLmthdS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGP ADCCAYoCggGBAMxdc/WIabA+8DvdEUmgjcOLpD6SO5zXbgZstvNQQiLjd1cLixE5 @@ -66,34 +49,27 @@ pkSFQ/v2KfgXStYAabQmq0/sPT1/NlHWk3b8xQGiOgbR1z9CNUtyBBXk0q5+yR77 3g2s4d6D+jNQ4aQly2DmHbsIKDWXxm+ozsVmVgQbV7N6feGYJZSAsmivrEJNvTJd fEcoD/2UgFgS0GcZUDu6zDwXiOEoauG8FnudedYFuC+KKnJY5bTmcEO+1KwAAwDk SKJRa32Iq7xb1QIK+C+dIeHFEYkTxoDaS9p1cXELDcFihnfam/NCLN/E9tiJkos= -</ds:X509Certificate> + </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> - <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> - <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> </md:KeyDescriptor> - <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://konto.kau.se/Shibboleth.sso/Artifact/SOAP" index="1"/> - <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://konto-test.kau.se/Shibboleth.sso/Artifact/SOAP" index="2"/> - <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://konto.kau.se/Shibboleth.sso/SLO/SOAP"/> - <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://konto.kau.se/Shibboleth.sso/SLO/Redirect"/> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://konto.kau.se/Shibboleth.sso/SLO/POST"/> - <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://konto.kau.se/Shibboleth.sso/SLO/Artifact"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://konto-test.kau.se/Shibboleth.sso/SLO/POST"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://konto.kau.se/Shibboleth.sso/SAML2/POST" index="1"/> - <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://konto-test.kau.se/Shibboleth.sso/SAML2/POST" index="2"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://konto-test.kau.se/Shibboleth.sso/SAML2/POST" index="1"/> </md:SPSSODescriptor> - <md:ContactPerson contactType="support"> + <md:Organization> + <md:OrganizationName xml:lang="en">Karlstads universitet</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="en">Karlstads universitet</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">https://konto.kau.se</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="administrative"> + <md:GivenName>Webbteknik</md:GivenName> <md:SurName>IT-avdelningen</md:SurName> - <md:EmailAddress>mailto:2525@kau.se</md:EmailAddress> + <md:EmailAddress>mailto:webbteknik@kau.se</md:EmailAddress> </md:ContactPerson> - <md:ContactPerson contactType="technical"> + <md:ContactPerson contactType="support"> <md:SurName>IT-avdelningen</md:SurName> - <md:EmailAddress>mailto:webbteknik@kau.se</md:EmailAddress> + <md:EmailAddress>mailto:2525@kau.se</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor> |