diff options
-rw-r--r-- | swamid-2.0/weblogin-test-v4.kau.se-idp-shibboleth.xml | 94 |
1 files changed, 79 insertions, 15 deletions
diff --git a/swamid-2.0/weblogin-test-v4.kau.se-idp-shibboleth.xml b/swamid-2.0/weblogin-test-v4.kau.se-idp-shibboleth.xml index fc9a01c8..c5ee6891 100644 --- a/swamid-2.0/weblogin-test-v4.kau.se-idp-shibboleth.xml +++ b/swamid-2.0/weblogin-test-v4.kau.se-idp-shibboleth.xml @@ -4,17 +4,53 @@ <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2021-11-02T12:39:53Z"> <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> </mdrpi:RegistrationInfo> + <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> + <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/policy/assurance/al3</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/policy/authentication/swamid-al2-mfa</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/policy/authentication/swamid-al2-mfa-hi</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/sirtfi</samla:AttributeValue> + </samla:Attribute> + <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> </md:Extensions> - <IDPSSODescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> - <Extensions> + <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol" errorURL="https://weblogin-test.kau.se/error/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX"> + <md:Extensions> <shibmd:Scope regexp="false">kau.se</shibmd:Scope> <mdui:UIInfo> <mdui:DisplayName xml:lang="en">Karlstad University v4 test IdP</mdui:DisplayName> - <mdui:Description xml:lang="en">An IdP used to test new features of Shibboleth IdP 4.1.4</mdui:Description> + <mdui:Description xml:lang="en">Karlstad University v4 test IdP</mdui:Description> + <mdui:Description xml:lang="sv">Karlstads universitet v4 test IdP</mdui:Description> + <mdui:DisplayName xml:lang="sv">Karlstads universitet v4 test IdP</mdui:DisplayName> + <mdui:InformationURL xml:lang="en">http://www.kau.se/en</mdui:InformationURL> + <mdui:InformationURL xml:lang="sv">http://www.kau.se</mdui:InformationURL> + <mdui:Keywords xml:lang="en">kau karlstads+universitet karlstad+universitet karlstad+university</mdui:Keywords> + <mdui:Keywords xml:lang="sv">kau karlstads+universitet karlstad+universitet karlstad+university</mdui:Keywords> + <mdui:Logo xml:lang="en" height="112" width="112">https://www.kau.se/themes/custom/kau16/images/logotype.png</mdui:Logo> + <mdui:Logo xml:lang="sv" height="112" width="112">https://www.kau.se/themes/custom/kau16/images/logotype.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="en">https://weblogin-test.kau.se/information.html</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://weblogin-test.kau.se/information.html</mdui:PrivacyStatementURL> </mdui:UIInfo> - </Extensions> + <mdui:DiscoHints> + <mdui:DomainHint>kau.se</mdui:DomainHint> + <mdui:GeolocationHint>geo:59.4059,13.5816</mdui:GeolocationHint> + <mdui:IPHint>130.243.16.0/20</mdui:IPHint> + <mdui:IPHint>193.10.162.0/24</mdui:IPHint> + <mdui:IPHint>193.10.220.0/22</mdui:IPHint> + <mdui:IPHint>193.10.224.0/21</mdui:IPHint> + <mdui:IPHint>193.10.238.0/24</mdui:IPHint> + <mdui:IPHint>193.11.148.0/22</mdui:IPHint> + <mdui:IPHint>193.11.152.0/21</mdui:IPHint> + <mdui:IPHint>2001:6b0:34::0/48</mdui:IPHint> + </mdui:DiscoHints> + </md:Extensions> <!-- First signing certificate is BackChannel, the Second is FrontChannel--> - <KeyDescriptor use="signing"> + <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> <ds:X509Certificate> @@ -49,8 +85,8 @@ Loba+XA0H3FXa3Nf4WV1Z0iXIV6rQUneI4kCR9Md+m3IBnU= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> - </KeyDescriptor> - <KeyDescriptor use="signing"> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> <ds:X509Certificate> @@ -85,8 +121,8 @@ cFuMuDcHpDcsXywfDzqJLD1W2s2kIJ+hIrzg9ak52fkwW8Ub </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> - </KeyDescriptor> - <KeyDescriptor use="encryption"> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> <ds:KeyInfo> <ds:X509Data> <ds:X509Certificate> @@ -121,8 +157,8 @@ ED5srbCdIQqxL1+jkqd352rkjXRIkvVeezg8CUaNuCkHXNM= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> - </KeyDescriptor> - <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://weblogin-test-v4.kau.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://weblogin-test-v4.kau.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> <!--<ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://weblogin-test-v4.kau.se:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> --> <!-- @@ -131,12 +167,12 @@ ED5srbCdIQqxL1+jkqd352rkjXRIkvVeezg8CUaNuCkHXNM= <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://weblogin-test-v4.kau.se/idp/profile/SAML2/POST/SLO"/> <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://weblogin-test-v4.kau.se:8443/idp/profile/SAML2/SOAP/SLO"/> --> - <SingleSignOnService xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://weblogin-test-v4.kau.se/idp/profile/SAML2/POST-SimpleSign/SSO"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" ns1:supportsRequestedAttributes="true" Location="https://weblogin-test-v4.kau.se/idp/profile/SAML2/POST-SimpleSign/SSO"/> <!--<SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://weblogin-test-v4.kau.se/idp/profile/Shibboleth/SSO"/> --> - <SingleSignOnService xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://weblogin-test-v4.kau.se/idp/profile/SAML2/Redirect/SSO"/> - <SingleSignOnService xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://weblogin-test-v4.kau.se/idp/profile/SAML2/POST/SSO"/> - </IDPSSODescriptor> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" ns1:supportsRequestedAttributes="true" Location="https://weblogin-test-v4.kau.se/idp/profile/SAML2/Redirect/SSO"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" ns1:supportsRequestedAttributes="true" Location="https://weblogin-test-v4.kau.se/idp/profile/SAML2/POST/SSO"/> + </md:IDPSSODescriptor> <!-- <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> <Extensions> @@ -269,4 +305,32 @@ ED5srbCdIQqxL1+jkqd352rkjXRIkvVeezg8CUaNuCkHXNM= <!-- </AttributeAuthorityDescriptor>--> + <md:Organization> + <md:OrganizationName xml:lang="en">Karlstad University</md:OrganizationName> + <md:OrganizationName xml:lang="sv">Karlstads universitet</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="en">Karlstad University</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="sv">Karlstads universitet</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">http://www.kau.se/en</md:OrganizationURL> + <md:OrganizationURL xml:lang="sv">http://www.kau.se</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="administrative"> + <md:Company>Karlstad University</md:Company> + <md:SurName>IT-avdelningen</md:SurName> + <md:EmailAddress>mailto:webbteknik@kau.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="technical"> + <md:Company>Karlstad University</md:Company> + <md:SurName>IT-avdelningen</md:SurName> + <md:EmailAddress>mailto:webbteknik@kau.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="support"> + <md:Company>Karlstad University</md:Company> + <md:SurName>IT-avdelningen</md:SurName> + <md:EmailAddress>mailto:2525@kau.se</md:EmailAddress> + <md:TelephoneNumber>+46 54 700 2525</md:TelephoneNumber> + </md:ContactPerson> + <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <md:GivenName>Incident Response Team</md:GivenName> + <md:EmailAddress>mailto:irt@kau.se</md:EmailAddress> + </md:ContactPerson> </md:EntityDescriptor> |