diff options
Diffstat (limited to 'metadata/swamid-testing')
7 files changed, 885 insertions, 62 deletions
diff --git a/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml b/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml index 9686ce7f..0c32cabe 100644 --- a/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml +++ b/metadata/swamid-testing/hbidp-test.test.hb.se-idp-shibboleth.xml @@ -18,6 +18,10 @@ <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue> <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> </mdattr:EntityAttributes> </md:Extensions> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX&entityid=https://hbidp-test.test.hb.se/idp/shibboleth"> @@ -164,6 +168,98 @@ O1aA7Vc=</ds:X509Certificate> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hbidp-test.test.hb.se/idp/profile/SAML2/POST-SimpleSign/SSO"/> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hbidp-test.test.hb.se/idp/profile/SAML2/Redirect/SSO"/> </md:IDPSSODescriptor> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0"> + <md:Extensions> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="sv">Högskolan i Borås - Test</mdui:DisplayName> + <mdui:DisplayName xml:lang="en">University of Borås - Test</mdui:DisplayName> + <mdui:Description xml:lang="sv">Test Identity Provider för anställda och studenter vid Högskolan i Borås.</mdui:Description> + <mdui:Description xml:lang="en">Test Identity Provider for employees and students at Borås University.</mdui:Description> + <mdui:InformationURL xml:lang="sv">http://www.hb.se/Om-hogskolan/</mdui:InformationURL> + <mdui:InformationURL xml:lang="en">https://www.hb.se/en/About-UB/</mdui:InformationURL> + <mdui:Logo xml:lang="sv" height="71" width="350">https://logga.hb.se/HB_logo_sv_350px.png</mdui:Logo> + <mdui:Logo xml:lang="en" height="67" width="350">https://logga.hb.se/HB_logo_en_350px.png</mdui:Logo> + <mdui:Keywords xml:lang="sv">hb högskolan+i+borås hogskolan+i+boras textilhogskolan textilhögskolan bibliotekshogskolan bibliotekshögskolan university+of+borås textile+university+of+borås university+of+boras textile+university+of+boras boras+university+of+library+scieence borås+university+of+library+science</mdui:Keywords> + <mdui:Keywords xml:lang="en">hb högskolan+i+borås hogskolan+i+boras textilhogskolan textilhögskolan bibliotekshogskolan bibliotekshögskolan university+of+borås textile+university+of+borås university+of+boras textile+university+of+boras boras+university+of+library+scieence borås+university+of+library+science</mdui:Keywords> + <mdui:PrivacyStatementURL xml:lang="sv">https://www.hb.se/genvagar/om-webbplatsen/integritetspolicy/</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">https://www.hb.se/en/shortcuts/about-the-site/privacy-policy/</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIFETCCAvmgAwIBAgIUXnD1F3XbyCf+Jqb8RkTasy3fWQ8wDQYJKoZIhvcNAQEL +BQAwIDEeMBwGA1UEAwwVaGJpZHAtdGVzdC50ZXN0LmhiLnNlMB4XDTIyMTIwMjE0 +MDAyMloXDTMyMTIwMjE0MDAyMlowIDEeMBwGA1UEAwwVaGJpZHAtdGVzdC50ZXN0 +LmhiLnNlMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAiqVju+aruwfk +qsgmTXDtp+zHvyOrb61SjByOcNuJUqtjJq5VpFEFZiu0L9iNNzYPDP1tKHoU9OoC +KGXjzAIAx4oliGPUroW52wD5NSd1aYB+HR58Bw74V/JDvrgWwLIIPhmot/qFnm0o +x+7Vum6cQ4iba9oK5vvBK14uGlUZgkicR4JO3KDg9l7vK4G5vi5R5s3Nv7rt6Ik8 +KfYfxHws+ZyebD0rYCV45gVcHYghxMFlErYZapTE4CFY27sPq02MoK/zoIzskHnZ +v3w0zEnmdYWTYdmrpP6J10kD8WO5JfnZO9Vt11XdbXGX8GBW161o/7eNO5xC84Xc +RowPXuE3xV0GZnQyETA0zjomiRrewfZJio6seGaj9DAYZlFte1NwGTKv8rSDHIR2 +tz40LnJZPg1ReuQ8+pxifsV4DM9sz4WrubEYnkoQe6YPxFwVZ0Bf6z/dm5iHOG/H +h0d3CdAurUbrOWvG7Xzoa9Wps4xharlRr1tov2jr7QuFFQPvKx7qQ0Sg0N9lQaZK +d0KbMKnV8o04/tJ5fNTdLCpnhq+3rLESKkLkQO5+jKybw7c4Dg37rPW4icpILtWS +mt8+Dlt8H4unqPa3qukzy33+T8F91vRhP7CifQ8RhuqzVgqcnpMbeC22uKd9i7s3 +TBrpnzx768LmLmFBIPhNtwuNLGN75W8CAwEAAaNDMEEwHQYDVR0OBBYEFIiR8OIT +0yr6gxIrdg+FiRbEa2tyMCAGA1UdEQQZMBeCFWhiaWRwLXRlc3QudGVzdC5oYi5z +ZTANBgkqhkiG9w0BAQsFAAOCAgEASzUZZs/gH0HqWFVJ9/xlHK4J1G1IhjJS9blp +qj2JL23s5raYqXdttpYcipv2/Nf/E3SGh6JFvUPljpmjMhc2ljIEV7h8TaVQvAEP +BHEyKDYw8yXncmWMCYAqfpQPdpHeFJSP/bWRzyZymZ0r0ccqfLoY9A0ak8a7vIvz +4iyYROvmBLbeOQLEf5OSpLVV1Z7Eirv95SOSvPB+8DaSDjtUERtvNe3yaG2PovPX +XuTQVM2cKFqnh8oSGFBp9VQwx3ryUoOqt1hDQMgO/xgJiMf36VXlZ6Sqotb0J+YN +BKHmryWJ3ZJEFJhQsntuIzAi/W8KxG5FTZlTefs1ty4Ha27N6+QxuO8OjjCGlK7R +/mjKoGflsQL+F27KwJJpH2gC7SdqOzArCJLJwfzr5K7kK5rQsMryZbsAFD+xCjjC +Zt2PwRSlQVuMEuSOTRyxI6C2MzWX5D1A6COYNGA4Jg9ICNqGTs89f7VxwgLHL6jZ +LzZNdlQUaWQbBcVQ0HvXCJbJIi3n+oaBSK4lShyOJrGM1Mrz+/sy+dY1yD6aS3Ua +ejE2DQTAMezc+Czocba4tGXVuGfQOBK9sc+gn79Cu/gDWbYnvF17+5Z+nVS8uzbS +CUs7vulw9YpY4I5tw1rnkL+3tJwBQe2l+P3eRMh+ndiVtyibIfCHEPkgI6mBn0ws +qBxK89s=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIFETCCAvmgAwIBAgIUAWBT8/bGYBTu+BX/TRYpyvIC4nUwDQYJKoZIhvcNAQEL +BQAwIDEeMBwGA1UEAwwVaGJpZHAtdGVzdC50ZXN0LmhiLnNlMB4XDTIyMTIwMjE0 +MDAxMloXDTMyMTIwMjE0MDAxMlowIDEeMBwGA1UEAwwVaGJpZHAtdGVzdC50ZXN0 +LmhiLnNlMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEArgcjOrGbCASG +KmkV++eMYPPEfnfgPXzeymWR5QKlpNR8xS9xxNrleLJa24YOwg5oPb2ouPh6yCyc +L5jRizeHYUYiSa4zwDrwqTMpleubeJzh5yC1KIrqdhhCsux4CT0OBYO0I/JpBbG8 +rJ1ukjidlnmDn7yRIR18ImLn+T4ySI71otLqLKlXMPjrThOBOv7FHt7JT2FLLnKM +cIqjij9O+Ui/iDdec6jDUlxf6BXclKOKhnoXGyVQkavDDYfGPCxLfX8m0t3YsTE/ +5rwkBxz9WIavaWgpmRJKY2gznQO11uENH30oO57YRInEydznp28K/JkZ3sQLsniy +3jjMbRFG4UPzZiECrlTKOSwEV+t4mNiywtT35StO30TZpJUq05sFaHJlKY2fqDzv +i1QYXI1UH/pv785O5nssQdV94gpWUCzu/BWhpncqhfzk/n3NytFDNr1XXR7rHvCQ +RVngNV4hjEZzhbcdlxrC1e7NcdaVvGB8W1/vYz70dGI36xmMjytBa5VCHSsaTPfw +xHJ6MIZxAvcwho2irrNliBdfBTV1WqMaa8hH2G9w/zLmtU1T1brd6Ua+gj55ZWgg +pc/NuwBFfaOlXrfpEyKdVVn9NKecjNh46f7qz2w0n/Xl/AZxQn1cfUecBALnZ/8N +TQ0pkkynpNRGC+6TmND9SUR9FlSYSjcCAwEAAaNDMEEwHQYDVR0OBBYEFFycTwzS +tP7VaasPdHsEKdkzO8bbMCAGA1UdEQQZMBeCFWhiaWRwLXRlc3QudGVzdC5oYi5z +ZTANBgkqhkiG9w0BAQsFAAOCAgEAIM4Zh54FzW3lmuWL6mP4yB3BZ6vzaaAWo1bo +V+RPsetKjwI47TKhkT4SCW0X4reT1qb60PmlcjcbKe3abF6LfAOrX0Ot8W2culuH +nFZExAvHThXHAX3ltucAia6ZAAVW+mW/g6Fm8XRXtYQSg41804n6RyBUEmribdmL +ACWrScOREc6TW5SyrEn7kL1WOubZfzZ39NR/9i+6tRSSYqM1Md0/fD9sDjsNcupo +WpNMi01OdRB2vx7AiPiFcZIqdCRNuQntUyrJHNwLU1AtHHEpo2x5NMTxwT095UWs +/6Sm8nZnJEe2MgUR59hsWgV5ZziCvGsgahi6xeT4kuEoxSrAFLpMO/R2pvICdUEh +a4t0PWJcZzFwrGtkZa/6YeowQ09HV+0KARXftUCWJoKy9Wso0nUgxjXUzLhl/rMc +ue/ONXENQAdool45L+WUdEPrnSywl6NFLaF8qxE2jLg2xvJecbfoOqwnjVk8EjR0 +m3v4LMOi6jL8dXOHuFS3Lhm1wcwn/C8kHe+645mgWihwUQvobGYacWYuWsimxZ7Z +rTbOTr2x72k9FYUsuQi0kY3KMGZm3vB/39aUMiqTIFUcVXaQIVm46qDsyS6r8xj3 +WhGVbT9yaKeTxzJpImxbeP1A0VJ9WoOxMibOrEObz/RP62WErobTm1EtD3Nyspx3 +O1aA7Vc=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibmfa.test.swamid.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">University of Borås - Test</md:ServiceName> + <md:ServiceName xml:lang="sv">Högskolan i Borås - Test</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> <md:Extensions> <shibmd:Scope regexp="false">hb.se</shibmd:Scope> diff --git a/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml b/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml index 125b0dd1..c1cb1683 100644 --- a/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml +++ b/metadata/swamid-testing/idp-shibtest.slu.se-idp.xml @@ -17,6 +17,10 @@ <samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue> <samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue> </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> </mdattr:EntityAttributes> </md:Extensions> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX&entityid=https://idp-shibtest.slu.se/idp"> @@ -35,12 +39,10 @@ <mdui:Logo xml:lang="en" height="102" width="102">https://idp-shibtest.slu.se/images/logo.png</mdui:Logo> </mdui:UIInfo> </md:Extensions> - <!-- First signing certificate is BackChannel, the Second is FrontChannel --> <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 NzU3WhcNNDAwOTA3MDg1NzU3WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALv1eV6CikXVLXZb @@ -62,16 +64,14 @@ CdYsBNVA9CGxNQmvO7sgdC+rOjj4r05as/XczXHwKAwjnuQnOgTGoimNYAqvIM5q qX2ghl3ZLngKmPK+CZSBiLRYPqmzaBglFHEP+zTDWAkauajY3YFsVBUKmRdXOuEq 6bBj5Cvi6v3GqEosbFsdoUqOZphdbyUuo78Irg+TijAXat+VM5YA/YWjoi9buexe rbmBK2bCILRtcGsMPk3uMUsq0Jn6LYrHLzCl1ZRgG6HHwGXrbBqdanHGHoJGACtC -lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g== - </ds:X509Certificate> +lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 NzU0WhcNNDAwOTA3MDg1NzU0WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALKMy258/b8UEUfM @@ -93,16 +93,14 @@ O5AvgTSPdY8UzssqmE5add93yeMlkbDbLgDuLmOf/MT0Q0DQGOpVy18Fs9nD9iwz BtgLIW+NSUEKwSIbAquFIxcNJLwDlvdLkmreRxrcr1Q3TnUsT0dqyk0Be9wMukQm zwC6BS/r7dT3EKRlywxxmVr0V6TzeXbX2Ibspjndp7zQz3hb0not/IWUEMvZojgO 50NDCxzWH5CWdUuN1hvAVcruGwJ2UKbgQMAf+3K6kgUeWwbSo+ENo52Mr4jsOdcj -fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA== - </ds:X509Certificate> +fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 NzU2WhcNNDAwOTA3MDg1NzU2WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIoI0cm30Fp2N4Bv @@ -124,8 +122,7 @@ QRRt/b1drYL93EeD+pvGx3nUI/oyS4n9PLiIKtUx6Bm4hlc0ByW7y/hZp6dmPsk+ hmdVa6a6eRuKkGnzGpr3FzbH723+BPfLqEz6Wy51X8ER7ngvjIvbJykRJHWS/E1A 6ipNj79/PyC9nSwTuf49Djs1bY1Gky5Dj5n+aG/gPcPGbxmrf5CKUPxLnwTbx+tg jc1JNTh2kaMuVtUXytuU6+dTEHSi6u4BqT6Utn103E+nWQlAXsJSA6kWegWT16z8 -osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg== - </ds:X509Certificate> +osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> @@ -138,16 +135,96 @@ osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg== <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" ns1:supportsRequestedAttributes="true" Location="https://idp-shibtest.slu.se/idp/profile/SAML2/POST/SSO"/> <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp-shibtest.slu.se/idp/profile/Shibboleth/SSO"/> </md:IDPSSODescriptor> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0"> + <md:Extensions> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="sv">SLU Shibboleth Idp Test</mdui:DisplayName> + <mdui:DisplayName xml:lang="en">SLU Shibboleth Idp Test</mdui:DisplayName> + <mdui:Description xml:lang="sv">Test Shibboleth Service Provider för SLU.</mdui:Description> + <mdui:Description xml:lang="en">Test Shibboleth Service Provider for SLU.</mdui:Description> + <mdui:InformationURL xml:lang="sv">https://idp-shibtest.slu.se/info/om.html</mdui:InformationURL> + <mdui:InformationURL xml:lang="en">https://idp-shibtest.slu.se/info/about.html</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://idp-shibtest.slu.se/info/integritet.html</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">https://idp-shibtest.slu.se/info/privacy.html</mdui:PrivacyStatementURL> + <mdui:Logo xml:lang="sv" height="102" width="102">https://idp-shibtest.slu.se/images/logo.png</mdui:Logo> + <mdui:Logo xml:lang="en" height="102" width="102">https://idp-shibtest.slu.se/images/logo.png</mdui:Logo> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL +BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 +NzU0WhcNNDAwOTA3MDg1NzU0WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs +dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALKMy258/b8UEUfM +HxDnWqQnH6hsnVOS2G53+fjiyasQicAYdc4ov0UzhoNPSpIb/pWLFZ07p+NjoILf +Ksq+6/lzcYgLrBbpuqAdLl90slWZb3avSJZ1tkCo0JiC6zaNJw87idR8nTzgWOcQ +RIlCeaXMvV+je1i8k3+LLUn0P63QLDT1wW5N6ZErtnSQEsenjnrH/a3lBtX0DSmU +j/UO533iIvBxniPbNDIgVDWC8waQrDjk1hV9Omj6/xJwkKUNIVLR9XT+33232Fgn +BGm8TbOFbEEv15GvaNLZdfXSTiOErGFYSKU58h9Nzdmr8oZURY4Cu6CENhOhZEYV +O77RwkiuXB5vb+pgO6FFn8SFsF5JPtztGxVKMfI4y3DcaOhcmk3/UHakzzU2pmBW +ac73M2q/JWwkMtvmoi8B65+Px7lMvBbkBVELyozBhBlu+QD6ArgIoH9AAbpaweR6 +LhDD5P1Q3FvUdtM+5QoYEgMRrpSfKa+8bp4EM5vtM4Yr5zOWhwIDAQABo28wbTAd +BgNVHQ4EFgQUr4Sd2lM7XCQTyxNh9CFlfucGngYwTAYDVR0RBEUwQ4IUaWRwLXNo +aWJidGVzdC5zbHUuc2WGK2h0dHBzOi8vaWRwLXNoaWJidGVzdC5zbHUuc2UvaWRw +L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBAEgDZ/DH8eavLtPIJLTsOiZK +VXpJenizgbSHagPKeP/dQRv1MDpcVAB3hN8YmOO2tbzGyc5wcBPfC7qvMIUozlBR +iiHTro+l/KZlE5S0nDxTsunVo3y3L1+C+KRhcFmMHNRwI5KArVVl+SiT2YEPE+oO +lNVbqs1y3baFvZdCihDdgC9toS1idF8WxopxNhoFwzrly0d19NMlaOhsPUvjo2Qr +O5AvgTSPdY8UzssqmE5add93yeMlkbDbLgDuLmOf/MT0Q0DQGOpVy18Fs9nD9iwz +BtgLIW+NSUEKwSIbAquFIxcNJLwDlvdLkmreRxrcr1Q3TnUsT0dqyk0Be9wMukQm +zwC6BS/r7dT3EKRlywxxmVr0V6TzeXbX2Ibspjndp7zQz3hb0not/IWUEMvZojgO +50NDCxzWH5CWdUuN1hvAVcruGwJ2UKbgQMAf+3K6kgUeWwbSo+ENo52Mr4jsOdcj +fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA==</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL +BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 +NzU2WhcNNDAwOTA3MDg1NzU2WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs +dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIoI0cm30Fp2N4Bv +sieqDs69dulkqXkl5L7PlIyCAfZtCiO7Ozc24UgfqEbzEnc2C0Ld7lVdKiFOhbh3 +ot2vjyR6Di0qhlV16WNWol/nqCksNkwVjPmGym8oRAKo/CwrCXVF6t6JBRk5IzN7 +FdydSSBmgiw8YIpYQsPIqpghirVXfn8cCvxAnFX4Sax3hZdB667KLPN6gD5srBQI +uapz/Y7Nr9P7hAdDWPRsGyY9TBGjtMmlWjzwEZQ1sBaUatOzgyEl5Y4C9Q3P8N36 +yTdTkHNy59EHma46dLSCRTe+qZsiIZ2uyRaPU9GdNHGUlKv8etiyUZD1AKOq3/Oh +kLTELnv38910VtSp715nvcFFlwhcvo8fMh2cnp24HSn/YfBgE7edTpSfVQLdGd9g +PMTB9JG9WgOnU98BVdisTJiZsDPbHkjiNEEkzhO2AgrhG+ZVrhKlcqrozjhI1sKE +fBtJVrkceQ9KuDAc4iR5lZ5m6gQBqLvPLtbAIH+adCGaO8JBqQIDAQABo28wbTAd +BgNVHQ4EFgQU0lRyUnJd8CMyaNpRiCgm+NY8p8AwTAYDVR0RBEUwQ4IUaWRwLXNo +aWJidGVzdC5zbHUuc2WGK2h0dHBzOi8vaWRwLXNoaWJidGVzdC5zbHUuc2UvaWRw +L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBAG+9FCHtrtXrMLJCNVr3O1TH +JbxNoEIt72PbN1pgnRgVm+ZWklKLM/1npnh3S4ZYuEUz/EjPlmved2GCPMNXq8o7 +Bc6Durlcvb1R0Zek8iQ6tZxKpHAOnEtbP+QC18m94wpgvD3HkPzRpvRYENLj5pK5 +ibTvQbf4ImFpV07qQ6Ur8DwPifYgy7gpoNNEfw92SmI0d4aDSJvWz7nwvb138nRm +QRRt/b1drYL93EeD+pvGx3nUI/oyS4n9PLiIKtUx6Bm4hlc0ByW7y/hZp6dmPsk+ +hmdVa6a6eRuKkGnzGpr3FzbH723+BPfLqEz6Wy51X8ER7ngvjIvbJykRJHWS/E1A +6ipNj79/PyC9nSwTuf49Djs1bY1Gky5Dj5n+aG/gPcPGbxmrf5CKUPxLnwTbx+tg +jc1JNTh2kaMuVtUXytuU6+dTEHSi6u4BqT6Utn103E+nWQlAXsJSA6kWegWT16z8 +osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-shibtest.slu.se:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-shibtest.slu.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-shibtest.slu.se:8443/idp/profile/Authn/SAML2/POST/SSO" index="0"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">SLU Shibboleth Idp Test</md:ServiceName> + <md:ServiceName xml:lang="sv">SLU Shibboleth Idp Test</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> <md:Extensions> <shibmd:Scope regexp="false">slu.se</shibmd:Scope> </md:Extensions> - <!-- First signing certificate is BackChannel, the Second is FrontChannel --> <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUMhPoEf2KNEEQzETZhaUha/CQmD8wDQYJKoZIhvcNAQEL BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 NzU3WhcNNDAwOTA3MDg1NzU3WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALv1eV6CikXVLXZb @@ -169,16 +246,14 @@ CdYsBNVA9CGxNQmvO7sgdC+rOjj4r05as/XczXHwKAwjnuQnOgTGoimNYAqvIM5q qX2ghl3ZLngKmPK+CZSBiLRYPqmzaBglFHEP+zTDWAkauajY3YFsVBUKmRdXOuEq 6bBj5Cvi6v3GqEosbFsdoUqOZphdbyUuo78Irg+TijAXat+VM5YA/YWjoi9buexe rbmBK2bCILRtcGsMPk3uMUsq0Jn6LYrHLzCl1ZRgG6HHwGXrbBqdanHGHoJGACtC -lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g== - </ds:X509Certificate> +lPXa9r98Vs7bLrP/b11343DbP3bvznNhmpqeaXtU8g==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUHBOJiF5eItVmpwaAbONnSJwedN0wDQYJKoZIhvcNAQEL BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 NzU0WhcNNDAwOTA3MDg1NzU0WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALKMy258/b8UEUfM @@ -200,16 +275,14 @@ O5AvgTSPdY8UzssqmE5add93yeMlkbDbLgDuLmOf/MT0Q0DQGOpVy18Fs9nD9iwz BtgLIW+NSUEKwSIbAquFIxcNJLwDlvdLkmreRxrcr1Q3TnUsT0dqyk0Be9wMukQm zwC6BS/r7dT3EKRlywxxmVr0V6TzeXbX2Ibspjndp7zQz3hb0not/IWUEMvZojgO 50NDCxzWH5CWdUuN1hvAVcruGwJ2UKbgQMAf+3K6kgUeWwbSo+ENo52Mr4jsOdcj -fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA== - </ds:X509Certificate> +fMB48s6r6Avb5RBLRXFVossgJmxgi5Kp35LVkrkFGA==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL + <ds:X509Certificate>MIIEOzCCAqOgAwIBAgIUVCdXGKcOA0mTcBW9/9WpMX8CNWQwDQYJKoZIhvcNAQEL BQAwHzEdMBsGA1UEAwwUaWRwLXNoaWJidGVzdC5zbHUuc2UwHhcNMjAwOTA3MDg1 NzU2WhcNNDAwOTA3MDg1NzU2WjAfMR0wGwYDVQQDDBRpZHAtc2hpYmJ0ZXN0LnNs dS5zZTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIoI0cm30Fp2N4Bv @@ -231,8 +304,7 @@ QRRt/b1drYL93EeD+pvGx3nUI/oyS4n9PLiIKtUx6Bm4hlc0ByW7y/hZp6dmPsk+ hmdVa6a6eRuKkGnzGpr3FzbH723+BPfLqEz6Wy51X8ER7ngvjIvbJykRJHWS/E1A 6ipNj79/PyC9nSwTuf49Djs1bY1Gky5Dj5n+aG/gPcPGbxmrf5CKUPxLnwTbx+tg jc1JNTh2kaMuVtUXytuU6+dTEHSi6u4BqT6Utn103E+nWQlAXsJSA6kWegWT16z8 -osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg== - </ds:X509Certificate> +osqdhUK7LIXVz1hA0bgvU3Y+WlOlsIFD++67OzYPRg==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> diff --git a/metadata/swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml b/metadata/swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml new file mode 100644 index 00000000..faaa00e1 --- /dev/null +++ b/metadata/swamid-testing/kitstlogin03.user.ki.se-idp-shibboleth.xml @@ -0,0 +1,241 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://kitstlogin03.user.ki.se/idp/shibboleth"> + <md:Extensions> + <mdattr:EntityAttributes> + <samla:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue> + <samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/sirtfi</samla:AttributeValue> + </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + <samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue> + </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2023-05-23T13:35:14Z"> + <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + </md:Extensions> + <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX&entityid=https://login.tst.ki.se/idp/shibboleth"> + <md:Extensions> + <shibmd:Scope regexp="false">ki.se</shibmd:Scope> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">Karolinska Institutet test IdP</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">Karolinska Institutet test IdP</mdui:DisplayName> + <mdui:Description xml:lang="en">Karolinska Institutet test IdP</mdui:Description> + <mdui:Description xml:lang="sv">Karolinska Institutet test IdP</mdui:Description> + <mdui:Logo xml:lang="en" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo> + <mdui:Logo xml:lang="sv" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo> + <mdui:InformationURL xml:lang="en">https://staff.ki.se/service-definition-saml2-websso-identity-provider</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en">https://staff.ki.se/rules-and-regulations-for-the-management-of-personal-information-within-the-identity-provider-idp</mdui:PrivacyStatementURL> + <mdui:InformationURL xml:lang="sv">https://medarbetare.ki.se/tjanstebeskrivning-saml2-websso-identitetsutgivare</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://medarbetare.ki.se/policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-identity-provider-idp</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVANn8y/AQRmrw3BXYraPBLAEE7gKtMA0GCSqGSIb3DQEB +CwUAMBoxGDAWBgNVBAMMD2xvZ2luLnRzdC5raS5zZTAeFw0yMTA0MDcxMjM1NDZa +Fw00MTA0MDcxMjM1NDZaMBoxGDAWBgNVBAMMD2xvZ2luLnRzdC5raS5zZTCCAaIw +DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAIZqYOQkXjaxf2agzCYPZnfoFoeh +D9Gc2VbpVlKmqRl1aod3hU61792VKyXF2wPa13zIgvp+1N7hdkaGl6Iu7eVoPuCl +WEARaDVSn/WCoQ74TZvSqH6ulDNXmdO+I2JoZaceK9rFX6qSUc4Fl7z5tv2erqhH +ymXlpBaQa6biuquB1ncqQkwOJbvPtAYgCrap2lWm7F49PdgKVAK2MF9yhTxlnYg5 +a0JH7JBClSi5oe/fkaq5G5gwzgZzRWoYDaQINjchrPSrb10VSwrwXMzEeavQI4OZ +pASSjOvWeR1z4/AQssW3PNhFaMD5mB++BXa3qJViT+v6YNqFd0JS/w5vAjrtNpvo +2PIYvGhsFfmw89BREuSu6ZnVhecR94rfLtlMSmN/G8VJVsAAChq2vGF99Mrbno4h +FWX7JNVeDZMN/aITgjEMJOIe7fBgP+tM6iTvfr+/wpbwKmrpYoTeWMUdGTA18rus +lcxhzetaYRFnib8hzEvusIybfI4GdQr2CdOPVwIDAQABo2UwYzAdBgNVHQ4EFgQU +Wvpp8QoJuyPJXkLMoF2thvp40bEwQgYDVR0RBDswOYIPbG9naW4udHN0LmtpLnNl +hiZodHRwczovL2xvZ2luLnRzdC5raS5zZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG +9w0BAQsFAAOCAYEAI0jIM6tX4x+lz785emipwSGrDHhWCiJzc6cP/cRb0Sl/qcCD +uO0d2NGQE8R4mM8BXY3/Qr6wQPYfgHRfQirXQf+jQ0/zRCfEbwzm2uiVMOYa9WZT +OWwhTtTo2jhFpsm8c7llWD+ZvNb6s7euAh7+XhpU0jhUqBx2hcLj8M4gydse6Fsd ++uFH5qmU4zVQA7lOLqYXinG/8mNewkymuVs18femzQZ1q429p8HCXJnx8upiBXwM +jkGk9ygt7sD7b9rPoK3y6CxjmtdJ7KMy1dOBPJjNiE2MmSud58KPSsDs0KnvYJ1W +Dtjd/fN+TWMNaDMgKAehbhclVJA8aRz3twzIzkMcTwDGRTGQzwG9tGNOKh9YWjKx +mQF18J861OIE48aX8MMVwhIt8SKJLzXNvNEWcM0vTdXlD46jaBGn+jV0wKNXAm1k +0UpWsWFWKUDDkYclMPOX1EtVKRUKJF/FyUiC/Wif/ZAlEoe4Z4ImjITXhsoVyr4+ +KhlryzUR6MkzKeg4</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUZavdR7VBjCyadcYTYGSw0IyoH58wDQYJKoZIhvcNAQEL +BQAwGjEYMBYGA1UEAwwPbG9naW4udHN0LmtpLnNlMB4XDTIxMDQwNzEyMzUzNFoX +DTQxMDQwNzEyMzUzNFowGjEYMBYGA1UEAwwPbG9naW4udHN0LmtpLnNlMIIBojAN +BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAh30nX0vLYubmg2cEUOvzBZg9qxGn +rR6w4JUt5UfsQQoKmPgUjDxuQgidYyBiuHAq3XwRkKa0qx96ON778vXyvgjcF4Vz +0utBh/AUO4Uo38hTVnNwr6vE5YBlB/5T0yTa/eX3pa96BZFWIBJ5n0OaBEZEx6/k +Qmsx2k6BbHzhxYiG24wxu04Iot4XtiD2iyLz8/6idGTAZu0dFv0w/j7im5SqlKy3 +pPrLPwXIuet71NxAwP4bGMZL0i4I1OyagH8bZUdcBiEGUu3TKecx20n7Siidqif1 +UjrwnvhX2HTpfedZ/4xa2RoQFMV3NrLAzZ2W5sxCDGH0InFzRW3uqCb7b4HUBIoY +/OkdECqmzoQl1CGIgBCv7IkFhTjmRfGp1JrX1qnQfKZkOCMJ8Qz0DEMzJuM3E5r0 +mxsd4CbxjyzYU4XLlOR5uubVmqUmb8CEcW829urwnh5dAq548S207pXJqKre8dxM +AfvYnkZHgR48nRhy9p3r0RRu0qp4KX44VVM/AgMBAAGjZTBjMB0GA1UdDgQWBBT7 +0/YE78UeD0KBvVb2/pyJMgEPaDBCBgNVHREEOzA5gg9sb2dpbi50c3Qua2kuc2WG +Jmh0dHBzOi8vbG9naW4udHN0LmtpLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3 +DQEBCwUAA4IBgQAKrPzc0tDSpNaqgP6Jgs94RZSoHXafFsrsdNa2yYTHv2vrYpQr +qRsu5phFBigGSCSjEsmCacpPVhIzFhsOFlubvB8aJTjgN5bavMGsWE9j1tK3QOFt +XmlJA1Ey8nX6MZa1kyAHBW+iIrH5Ort6KUe1cHscUfs8XjX5ojTl/R92xUjeGnum +LJi8ZeaoIPejpa/jkEtuZK87nU/J2Iy0fX7SrJjcma3hHq7aqdrc1wSIHElo/JMb +Y2myx7OUJEvVijLWTB6ZDVzd/AHEk7N+no0u1bsT4ux5n/TP3zmx2+xBlMmvFLHN +5TNvF5HnkPH5/e5Y2bHuIT+A0oJCSZwx7LNYLFU7BBRwrMsDrfK6Ut55IQYlq2Qd +MlS2rRXvQ7AWk7HnfcT8NdWSnpTKt8MDqaR9vHocZkNxyKmCNyRDlj/yBK3k9cY8 ++TEPOkimAgXUXbJBna5pH6PD3tpYmbYk3K45C/B/QYGDpCggi8G5OzTIBwDMASaI +OE3J+Gw3YG29EFc=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVALBgBInBAVhcW99wf5MMCoY/Ess9MA0GCSqGSIb3DQEB +CwUAMBoxGDAWBgNVBAMMD2xvZ2luLnRzdC5raS5zZTAeFw0yMTA0MDcxMjM1MzVa +Fw00MTA0MDcxMjM1MzVaMBoxGDAWBgNVBAMMD2xvZ2luLnRzdC5raS5zZTCCAaIw +DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKPyVppvm2Fc80i3lq5kKjXfnR9c +IyjRkH/Y4O5SDsfZRtXTDORy62fKoMzlfXdTwFkv/Aj99Zmf98O9meNdOTrF1MiH +SAN+cEIysXHocN2GMPnohJttmSOlim5DY2b16H/vGFiBHRBSPUfyeUMTmItz8rby +nEvJX0GG8rCFdadk8uvecOyistxc+AnB0w4kEYypazlR2/CVEAcr9altplqsSXJu +y/EPeGKM3W40V+BC7pBGvqOrogMGStfGU8+aiIe8JaxIOne6RopR42Dq2l3W71ux +3r6ws1DR9Ftmgxl4UIKc0mqYQ4CMEAAB8nfLAL8lBU8QYl5Dl+dqr3g6VOUNAo9E +Z0tD8ZflHbmZ2UO8keHa1sKILdfm5VhVIcZ0m2KF/WH3mkwobCjd8izTtKmA7yBA +i990Ir9jYcPg5WFTyX9FWwe+JDv7FftKXioirofGU9MK7RhGJdMEuvoal/3/nip7 +vKEImq/EckbWv+q0MYF73hWOyQmTL8cmpNYNvQIDAQABo2UwYzAdBgNVHQ4EFgQU +vflM3/4hOTUnzSpL9ezMQQrFQhEwQgYDVR0RBDswOYIPbG9naW4udHN0LmtpLnNl +hiZodHRwczovL2xvZ2luLnRzdC5raS5zZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG +9w0BAQsFAAOCAYEARf6R9SB+yNDcydn2a5rL/WVKgIz3DkmDlnH3cdmBInVHEfcR +qOukP9HgN28vmt3RWzxkc4KjwDCBJF3abwEAO56N2NjAts1xIDBOXpjOcODmsSa+ +oAElTY6B80qtbUC0g9BIC0ta1BVCsHff8hUYrd9+wBbfOIPbOB439fSPKoSTcCYy +Z9hoWeKXl6U3wS7p/BtmY35vuEsYe3FSWDx/J8YIElqm9mdIgTWKnmMBgpJ14aEs +KoKtZCUlnVRPg5y7EN8wKNdORO9Y56XXc+0V91cGJFsXnZXXbNZzmqSJYl0R26Um +OT1TDHs3xGFFAMCmKzWnTM9VXZ8KitIGJaqZiBBC+xGX/9R5Z0OMAnjvAWWvU4EI +pQz4t4mifPSO/0I2cZ7iyIe7VFPbKLyGpXitmDXiQactWndU3FiqjDxGHMSIXEz1 +PwuJvX7it1A9Hed/1ui+iuKIU5An0lBDnCHVuet+nXNF6cg+zCJsVKV2PRrBmRP3 +7hgZYsIT5SPmyDil</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://kitstlogin03.user.ki.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" ns1:supportsRequestedAttributes="true" Location="https://kitstlogin03.user.ki.se/idp/profile/SAML2/Redirect/SSO"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" ns1:supportsRequestedAttributes="true" Location="https://kitstlogin03.user.ki.se/idp/profile/SAML2/POST-SimpleSign/SSO"/> + <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" ns1:supportsRequestedAttributes="true" Location="https://kitstlogin03.user.ki.se/idp/profile/SAML2/POST/SSO"/> + </md:IDPSSODescriptor> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">Karolinska Institutet test IdP SP</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">Karolinska Institutet test IdP SP</mdui:DisplayName> + <mdui:Description xml:lang="en">Karolinska Institutet test IdP SP</mdui:Description> + <mdui:Description xml:lang="sv">Karolinska Institutet test IdP SP</mdui:Description> + <mdui:Logo xml:lang="en" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo> + <mdui:Logo xml:lang="sv" height="100" width="200">https://login.ki.se/images/KI_digital_logotyp_positiv_RGB.svg</mdui:Logo> + <mdui:InformationURL xml:lang="en">https://staff.ki.se/service-definition-saml2-websso-identity-provider</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en">https://staff.ki.se/rules-and-regulations-for-the-management-of-personal-information-within-the-identity-provider-idp</mdui:PrivacyStatementURL> + <mdui:InformationURL xml:lang="sv">https://medarbetare.ki.se/tjanstebeskrivning-saml2-websso-identitetsutgivare</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://medarbetare.ki.se/policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-identity-provider-idp</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEJzCCAo+gAwIBAgIUZavdR7VBjCyadcYTYGSw0IyoH58wDQYJKoZIhvcNAQEL +BQAwGjEYMBYGA1UEAwwPbG9naW4udHN0LmtpLnNlMB4XDTIxMDQwNzEyMzUzNFoX +DTQxMDQwNzEyMzUzNFowGjEYMBYGA1UEAwwPbG9naW4udHN0LmtpLnNlMIIBojAN +BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAh30nX0vLYubmg2cEUOvzBZg9qxGn +rR6w4JUt5UfsQQoKmPgUjDxuQgidYyBiuHAq3XwRkKa0qx96ON778vXyvgjcF4Vz +0utBh/AUO4Uo38hTVnNwr6vE5YBlB/5T0yTa/eX3pa96BZFWIBJ5n0OaBEZEx6/k +Qmsx2k6BbHzhxYiG24wxu04Iot4XtiD2iyLz8/6idGTAZu0dFv0w/j7im5SqlKy3 +pPrLPwXIuet71NxAwP4bGMZL0i4I1OyagH8bZUdcBiEGUu3TKecx20n7Siidqif1 +UjrwnvhX2HTpfedZ/4xa2RoQFMV3NrLAzZ2W5sxCDGH0InFzRW3uqCb7b4HUBIoY +/OkdECqmzoQl1CGIgBCv7IkFhTjmRfGp1JrX1qnQfKZkOCMJ8Qz0DEMzJuM3E5r0 +mxsd4CbxjyzYU4XLlOR5uubVmqUmb8CEcW829urwnh5dAq548S207pXJqKre8dxM +AfvYnkZHgR48nRhy9p3r0RRu0qp4KX44VVM/AgMBAAGjZTBjMB0GA1UdDgQWBBT7 +0/YE78UeD0KBvVb2/pyJMgEPaDBCBgNVHREEOzA5gg9sb2dpbi50c3Qua2kuc2WG +Jmh0dHBzOi8vbG9naW4udHN0LmtpLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3 +DQEBCwUAA4IBgQAKrPzc0tDSpNaqgP6Jgs94RZSoHXafFsrsdNa2yYTHv2vrYpQr +qRsu5phFBigGSCSjEsmCacpPVhIzFhsOFlubvB8aJTjgN5bavMGsWE9j1tK3QOFt +XmlJA1Ey8nX6MZa1kyAHBW+iIrH5Ort6KUe1cHscUfs8XjX5ojTl/R92xUjeGnum +LJi8ZeaoIPejpa/jkEtuZK87nU/J2Iy0fX7SrJjcma3hHq7aqdrc1wSIHElo/JMb +Y2myx7OUJEvVijLWTB6ZDVzd/AHEk7N+no0u1bsT4ux5n/TP3zmx2+xBlMmvFLHN +5TNvF5HnkPH5/e5Y2bHuIT+A0oJCSZwx7LNYLFU7BBRwrMsDrfK6Ut55IQYlq2Qd +MlS2rRXvQ7AWk7HnfcT8NdWSnpTKt8MDqaR9vHocZkNxyKmCNyRDlj/yBK3k9cY8 ++TEPOkimAgXUXbJBna5pH6PD3tpYmbYk3K45C/B/QYGDpCggi8G5OzTIBwDMASaI +OE3J+Gw3YG29EFc=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEKDCCApCgAwIBAgIVALBgBInBAVhcW99wf5MMCoY/Ess9MA0GCSqGSIb3DQEB +CwUAMBoxGDAWBgNVBAMMD2xvZ2luLnRzdC5raS5zZTAeFw0yMTA0MDcxMjM1MzVa +Fw00MTA0MDcxMjM1MzVaMBoxGDAWBgNVBAMMD2xvZ2luLnRzdC5raS5zZTCCAaIw +DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKPyVppvm2Fc80i3lq5kKjXfnR9c +IyjRkH/Y4O5SDsfZRtXTDORy62fKoMzlfXdTwFkv/Aj99Zmf98O9meNdOTrF1MiH +SAN+cEIysXHocN2GMPnohJttmSOlim5DY2b16H/vGFiBHRBSPUfyeUMTmItz8rby +nEvJX0GG8rCFdadk8uvecOyistxc+AnB0w4kEYypazlR2/CVEAcr9altplqsSXJu +y/EPeGKM3W40V+BC7pBGvqOrogMGStfGU8+aiIe8JaxIOne6RopR42Dq2l3W71ux +3r6ws1DR9Ftmgxl4UIKc0mqYQ4CMEAAB8nfLAL8lBU8QYl5Dl+dqr3g6VOUNAo9E +Z0tD8ZflHbmZ2UO8keHa1sKILdfm5VhVIcZ0m2KF/WH3mkwobCjd8izTtKmA7yBA +i990Ir9jYcPg5WFTyX9FWwe+JDv7FftKXioirofGU9MK7RhGJdMEuvoal/3/nip7 +vKEImq/EckbWv+q0MYF73hWOyQmTL8cmpNYNvQIDAQABo2UwYzAdBgNVHQ4EFgQU +vflM3/4hOTUnzSpL9ezMQQrFQhEwQgYDVR0RBDswOYIPbG9naW4udHN0LmtpLnNl +hiZodHRwczovL2xvZ2luLnRzdC5raS5zZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG +9w0BAQsFAAOCAYEARf6R9SB+yNDcydn2a5rL/WVKgIz3DkmDlnH3cdmBInVHEfcR +qOukP9HgN28vmt3RWzxkc4KjwDCBJF3abwEAO56N2NjAts1xIDBOXpjOcODmsSa+ +oAElTY6B80qtbUC0g9BIC0ta1BVCsHff8hUYrd9+wBbfOIPbOB439fSPKoSTcCYy +Z9hoWeKXl6U3wS7p/BtmY35vuEsYe3FSWDx/J8YIElqm9mdIgTWKnmMBgpJ14aEs +KoKtZCUlnVRPg5y7EN8wKNdORO9Y56XXc+0V91cGJFsXnZXXbNZzmqSJYl0R26Um +OT1TDHs3xGFFAMCmKzWnTM9VXZ8KitIGJaqZiBBC+xGX/9R5Z0OMAnjvAWWvU4EI +pQz4t4mifPSO/0I2cZ7iyIe7VFPbKLyGpXitmDXiQactWndU3FiqjDxGHMSIXEz1 +PwuJvX7it1A9Hed/1ui+iuKIU5An0lBDnCHVuet+nXNF6cg+zCJsVKV2PRrBmRP3 +7hgZYsIT5SPmyDil</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kitstlogin03.user.ki.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">Karolinska Institutet test IdP SP</md:ServiceName> + <md:ServiceName xml:lang="sv">Karolinska Institutet test IdP SP</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> + <md:Organization> + <md:OrganizationName xml:lang="en">Karolinska Institutet</md:OrganizationName> + <md:OrganizationName xml:lang="sv">Karolinska Institutet</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="sv">Karolinska Institutet</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="en">Karolinska Institutet</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">https://ki.se</md:OrganizationURL> + <md:OrganizationURL xml:lang="sv">https://ki.se</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="administrative"> + <md:Company>Karolinska Institutet</md:Company> + <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="technical"> + <md:Company>Karolinska Institutet</md:Company> + <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="support"> + <md:Company>Karolinska Institutet</md:Company> + <md:EmailAddress>mailto:selfservice@ki.se</md:EmailAddress> + <md:TelephoneNumber>+46 8 524 82222</md:TelephoneNumber> + </md:ContactPerson> + <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <md:GivenName>Security Response Team</md:GivenName> + <md:EmailAddress>mailto:abuse@ki.se</md:EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> diff --git a/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml b/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml index a5895c5e..ae0018ee 100644 --- a/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml +++ b/metadata/swamid-testing/login-dev.du.se-idp-shibboleth.xml @@ -5,45 +5,70 @@ <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> </mdrpi:RegistrationInfo> <mdattr:EntityAttributes> - <samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category-support"> - <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue> - <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue> - <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue> - <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> - <samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue> - <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> - </samla:Attribute> <samla:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> <samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue> <samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue> </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/anonymous</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/pseudonymous</samla:AttributeValue> + </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> </mdattr:EntityAttributes> </md:Extensions> - <md:IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX&entityid=https://login-dev.du.se/idp/shibboleth"> + <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX&entityid=https://login-dev.du.se/idp/shibboleth"> <md:Extensions> <shibmd:Scope regexp="false">du.se</shibmd:Scope> <mdui:UIInfo> - <mdui:DisplayName xml:lang="en">Dalarna University (TEST)</mdui:DisplayName> - <mdui:DisplayName xml:lang="sv">Högskolan Dalarna (TEST)</mdui:DisplayName> - <mdui:Description xml:lang="sv">Högskolan Dalarna (ENDAST TEST)</mdui:Description> <mdui:Description xml:lang="en">Dalarna University (ONLY FOR TESTING)</mdui:Description> - <mdui:Keywords xml:lang="en">hda du</mdui:Keywords> - <mdui:Keywords xml:lang="sv">hda du</mdui:Keywords> - <mdui:Logo xml:lang="sv" height="16" width="16">https://login.du.se/duse-logo-16x16.png</mdui:Logo> - <mdui:Logo xml:lang="en" height="16" width="16">https://login.du.se/duse-logo-16x16.png</mdui:Logo> - <mdui:Logo xml:lang="sv" height="146" width="350">https://login.du.se/duse-logo-sv.png</mdui:Logo> - <mdui:Logo xml:lang="en" height="146" width="350">https://login.du.se/duse-logo-en.png</mdui:Logo> + <mdui:DisplayName xml:lang="en">Dalarna University (TEST)</mdui:DisplayName> <mdui:InformationURL xml:lang="en">https://www.du.se/en</mdui:InformationURL> + <mdui:Keywords xml:lang="en">hda du</mdui:Keywords> + <mdui:Logo xml:lang="en" height="146" width="350">https://login-dev.du.se/duse-logo-en.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="en">https://www.du.se/personal-data-protection</mdui:PrivacyStatementURL> + <mdui:Description xml:lang="sv">Högskolan Dalarna (ENDAST TEST)</mdui:Description> + <mdui:DisplayName xml:lang="sv">Högskolan Dalarna (TEST)</mdui:DisplayName> <mdui:InformationURL xml:lang="sv">https://www.du.se</mdui:InformationURL> + <mdui:Keywords xml:lang="sv">hda du</mdui:Keywords> + <mdui:Logo xml:lang="sv" height="146" width="350">https://login-dev.du.se/duse-logo-sv.png</mdui:Logo> <mdui:PrivacyStatementURL xml:lang="sv">https://www.du.se/sv/hjalp/personuppgifter/</mdui:PrivacyStatementURL> - <mdui:PrivacyStatementURL xml:lang="en">https://www.du.se/personal-data-protection</mdui:PrivacyStatementURL> + <mdui:Logo xml:lang="en" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo> + <mdui:Logo xml:lang="sv" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo> </mdui:UIInfo> </md:Extensions> - <md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB +BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa +Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw +DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J +Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG +vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC +5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N +v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC +TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA +AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu +LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND +QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN +2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi +zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS +x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF +C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J @@ -59,9 +84,30 @@ QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a -xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY= - - </ds:X509Certificate> +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB +BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa +Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw +DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J +Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG +vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC +5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N +v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC +TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA +AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu +LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND +QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN +2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi +zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS +x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF +C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> @@ -78,11 +124,10 @@ xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY= <md:Extensions> <shibmd:Scope regexp="false">du.se</shibmd:Scope> </md:Extensions> - <md:KeyDescriptor> + <md:KeyDescriptor use="signing"> <ds:KeyInfo> <ds:X509Data> - <ds:X509Certificate> -MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J @@ -98,24 +143,161 @@ QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a -xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY= - - </ds:X509Certificate> +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB +BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa +Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw +DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J +Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG +vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC +5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N +v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC +TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA +AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu +LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND +QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN +2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi +zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS +x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF +C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB +BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa +Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw +DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J +Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG +vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC +5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N +v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC +TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA +AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu +LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND +QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN +2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi +zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS +x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF +C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login-dev.du.se:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-dev.du.se:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> - <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> - <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> </md:AttributeAuthorityDescriptor> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <mdui:UIInfo> + <mdui:Description xml:lang="en">Dalarna University (ONLY FOR TESTING)</mdui:Description> + <mdui:DisplayName xml:lang="en">Dalarna University (TEST)</mdui:DisplayName> + <mdui:Keywords xml:lang="en">hda du</mdui:Keywords> + <mdui:InformationURL xml:lang="en">https://www.du.se/en</mdui:InformationURL> + <mdui:Logo xml:lang="en" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo> + <mdui:Logo xml:lang="en" height="146" width="350">https://login-dev.du.se/duse-logo-en.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="en">https://www.du.se/personal-data-protection</mdui:PrivacyStatementURL> + <mdui:DisplayName xml:lang="sv">Högskolan Dalarna (TEST)</mdui:DisplayName> + <mdui:Description xml:lang="sv">Högskolan Dalarna (ENDAST FÖR TEST)</mdui:Description> + <mdui:Keywords xml:lang="sv">hda du</mdui:Keywords> + <mdui:InformationURL xml:lang="sv">https://www.du.se/en</mdui:InformationURL> + <mdui:Logo xml:lang="sv" height="16" width="16">https://login-dev.du.se/duse-logo-16x16.png</mdui:Logo> + <mdui:Logo xml:lang="sv" height="146" width="350">https://login-dev.du.se/duse-logo-sv.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="sv">https://www.du.se/sv/hjalp/personuppgifter/</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB +BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa +Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw +DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J +Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG +vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC +5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N +v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC +TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA +AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu +LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND +QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN +2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi +zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS +x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF +C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB +BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa +Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw +DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J +Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG +vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC +5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N +v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC +TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA +AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu +LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND +QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN +2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi +zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS +x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF +C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDKDCCAhCgAwIBAgIVANjkER+E+5lzcBMyqbx/pUrv4StpMA0GCSqGSIb3DQEB +BQUAMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTAeFw0xMDExMTcxNTI4MTNa +Fw0zMDExMTcxNTI4MTNaMBoxGDAWBgNVBAMTD2xvZ2luLWRldi5kdS5zZTCCASIw +DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJTsLw/2NNOLUjRLB3/aizD3lP5J +Hv9A8kb+luJYFvc8xHsrNX8vs68b34v0hSFkr4/C6qFIAnqG1phnZ+RvRfL9J4wG +vxav6jtLU5WYnrZeFWG8e4PHvelHQ7GnR0ieDUoT5UMz/lQFFkigkuTMDDVVvLhC +5QbsnodeTdALmnQQAKMqaIbxLmlM+wQ0VTqbDYzlyx6gemGHHGDtrd3YaoCteG5N +v5M1eeGLtAwtTzazUh9OQMQXWnbFrFTZsXNOJLDFV4fHtilaHRG4i0GsmkWyzAOC +TFVmsfG7NHcNbsDeArhE/Mdn3lxRTJO/05DJmY7XS7TNT4StPm64I8EdjbUCAwEA +AaNlMGMwQgYDVR0RBDswOYIPbG9naW4tZGV2LmR1LnNlhiZodHRwczovL2xvZ2lu +LWRldi5kdS5zZS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU40tq2fktCvaBJtND +QafNhwXdSMcwDQYJKoZIhvcNAQEFBQADggEBAA4jM2gU64Cmws8pIcNnpm3XPRJN +2kiCB1++cRt3DyAljWVf8GrVP3+xwtHcL54Y3paxEpqH8/QyMZCPOqrJIix3h3Qi +zFPtwTPGP8CO3QKJqPyDSai5IK7GmdVuC0tVWykRCVDXpDBaz02G7+d9Z93b9WQS +x+zPW68bKgavPcBYrN18gqMUEQlZmxs/mogmyx6GBnKiMoZYgUbqYA9Ytp/UI2UF +C2AXPL0+DO5vY7Ah58tSWzVMRkSLZtQEyADQ7sBCa56IAAjIgQY1XXWF/PhjuQ8a +xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-dev.du.se:8443/idp/profile/Authn/SAML2/POST/SSO" index="0"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">Dalarna University (TEST)</md:ServiceName> + <md:ServiceName xml:lang="sv">Högskolan Dalarna (TEST)</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> <md:Organization> <md:OrganizationName xml:lang="en">Dalarna University (TEST)</md:OrganizationName> <md:OrganizationName xml:lang="sv">Högskolan Dalarna (TEST)</md:OrganizationName> <md:OrganizationDisplayName xml:lang="en">du.se (TEST)</md:OrganizationDisplayName> <md:OrganizationDisplayName xml:lang="sv">du.se (TEST)</md:OrganizationDisplayName> - <md:OrganizationURL xml:lang="sv">https://www.du.se</md:OrganizationURL> <md:OrganizationURL xml:lang="en">https://www.du.se/en</md:OrganizationURL> + <md:OrganizationURL xml:lang="sv">https://www.du.se</md:OrganizationURL> </md:Organization> <md:ContactPerson contactType="technical"> <md:Company>Dalarna University</md:Company> @@ -123,13 +305,13 @@ xZo/5fNrNmxFOTkpA3No03UwcJ2LDbzPUPQQbQ9s4GSwwSQMVmlstBI/IIY= <md:EmailAddress>mailto:shib-admin@du.se</md:EmailAddress> <md:TelephoneNumber>+46 23 778000</md:TelephoneNumber> </md:ContactPerson> - <md:ContactPerson contactType="administrative"> + <md:ContactPerson contactType="support"> <md:Company>Dalarna University</md:Company> <md:GivenName>Office of IT and Digital Infrastructure</md:GivenName> <md:EmailAddress>mailto:shib-admin@du.se</md:EmailAddress> <md:TelephoneNumber>+46 23 778000</md:TelephoneNumber> </md:ContactPerson> - <md:ContactPerson contactType="support"> + <md:ContactPerson contactType="administrative"> <md:Company>Dalarna University</md:Company> <md:GivenName>Office of IT and Digital Infrastructure</md:GivenName> <md:EmailAddress>mailto:shib-admin@du.se</md:EmailAddress> diff --git a/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml b/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml index 0d802fee..dc0a20b6 100644 --- a/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml +++ b/metadata/swamid-testing/miunidptest.miun.se-idp-shibboleth.xml @@ -124,6 +124,78 @@ YAe2eCFJhzuNutfMyzzH4ZE1da+vfxQX0yLQpKiK4XRIH4Jr1THM/12L+YNmlRPF <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miunidptest.miun.se/idp/profile/SAML2/POST/SSO"/> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://miunidptest.miun.se/idp/profile/SAML2/Redirect/SSO"/> </md:IDPSSODescriptor> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0"> + <md:Extensions> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="sv">Mittuniversitetet (test)</mdui:DisplayName> + <mdui:Description xml:lang="sv">IDP för test på Mittuniversitetet</mdui:Description> + <mdui:DisplayName xml:lang="en">Mid Sweden University (test)</mdui:DisplayName> + <mdui:Description xml:lang="en">IDP for testing at Mid Sweden University</mdui:Description> + <mdui:InformationURL xml:lang="en">http://www.miun.se/en/</mdui:InformationURL> + <mdui:InformationURL xml:lang="sv">http://www.miun.se</mdui:InformationURL> + <mdui:Keywords xml:lang="en">miun miu mittuniversitetet mid+sweden+university miunpunktse</mdui:Keywords> + <mdui:Keywords xml:lang="sv">miun miu mittuniversitetet mid+sweden+university miunpunktse</mdui:Keywords> + <mdui:PrivacyStatementURL xml:lang="sv">https://miun.se/personuppgifterIdP</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">https://miun.se/en/personuppgifterIdP</mdui:PrivacyStatementURL> + <mdui:Logo xml:lang="en" height="146" width="260">https://miunidptest.miun.se/idp/images/miun-logo.png</mdui:Logo> + <mdui:Logo xml:lang="sv" height="146" width="260">https://miunidptest.miun.se/idp/images/miun-logo.png</mdui:Logo> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDODCCAiCgAwIBAgIVAPRwsS0jawwgnaLnIOydT5jeXjVhMA0GCSqGSIb3DQEB + CwUAMB4xHDAaBgNVBAMME21pdW5pZHB0ZXN0Lm1pdW4uc2UwHhcNMTYwMzE0MTA0 + ODMyWhcNMzYwMzE0MTA0ODMyWjAeMRwwGgYDVQQDDBNtaXVuaWRwdGVzdC5taXVu + LnNlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4EPO2E98M79WKFHy + APjeQALlMgPuAkrVa9aiC84V7q3hgfdbD0wbNJTGA9uj7an2Fz5uNfUWS1Rg/7DT + uEjrGpsWXn3mlBuH2wOZe9wHqFwVf5NUos/00gLxs6WIjaNv6gxnbnVss0pKURTL + +bl4mn7XSPpbNosWlHkn4IbnXBi8zTwQ7Us2+klu15YfAPnlkMYgzOl1YkxqB3cM + zxnejzBjzpG1VJWkLUOEFxlFYUwEsn5aOMpT4DXEq1PSSZfDmtz6tN+WQiV8W1rt + QYyThOUwvF+L6Z9N960IFfiirCVk30doFfu5P/KmzciFWKcRHH2Jce3R/pC0SVNs + 56Z63QIDAQABo20wazAdBgNVHQ4EFgQUhtV3ZMcE4JWqlNJJVYkqB5inKUEwSgYD + VR0RBEMwQYITbWl1bmlkcHRlc3QubWl1bi5zZYYqaHR0cHM6Ly9taXVuaWRwdGVz + dC5taXVuLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCKf/Z8 + m1RMKsiP56XEBD/KlZToM23WF+i3xw7IPlo6a+bMT2emxKBCVv3CU6oMe55TMUeu + RHzNHB3g0oa/xH+APxLbP64FMvDrJAPFDsltRX97C9UyO47rBL983Jcjo20fjCt1 + 03xMipYa9aYc6miUSXKSP0zLu8XoyRo8Vlx0+4y1hI1B/vfgw2I850thSfM/TepO + eHLpC5j1cjhz+omgj8KtOu4iwRShXmOTb3/MPKYQ0BezIuI99QfavE3jkdVg4+bb + sEjpTEgCNeNotsnug8EzSf3jMac7QVsKk/ZUjpMUiH1QWeXQSzpkT+BfEjcXUm23 + p8Zy6HNa1RvGgW8P</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDNzCCAh+gAwIBAgIUPMQjIIrMt+goB+uHSwi2oO14KAgwDQYJKoZIhvcNAQEL +BQAwHjEcMBoGA1UEAwwTbWl1bmlkcHRlc3QubWl1bi5zZTAeFw0xNjAzMTQxMDQ4 +MzRaFw0zNjAzMTQxMDQ4MzRaMB4xHDAaBgNVBAMME21pdW5pZHB0ZXN0Lm1pdW4u +c2UwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCgqMKF+EDtjw74HWSy +t2SU4fV4734PyV9gsPBJph8VQ32cAB7tqkqhIQbkHJKhJ4XeladH+ifk+BOdje9n +EwIKIehxdujW832NAlMkEXfo3M2wt8UCBATCoWsxexkFUtNhZQnvtUm7dW0GuDYE +NaZd0W6JMz0vBl83+JatCHu30kHu6CDgo/D6S9RL4pj3KiN08oR5Rjn5jHdNgMTf +dNuYn2jsvKiR9EtcXC2KgvtYwqzGpjmcFxthBPBF3lzAza8ES16UVCPxVuH9DSJ5 +gB20wTMzP9xKSWQ/NKjh4AqEZ0hLH4dXGDzA3G3h/IkSgfaB+XalZDC6vzfuXXnv +dE2HAgMBAAGjbTBrMB0GA1UdDgQWBBREfhKvA2DRE1mKkZfCgjAyiwegWzBKBgNV +HREEQzBBghNtaXVuaWRwdGVzdC5taXVuLnNlhipodHRwczovL21pdW5pZHB0ZXN0 +Lm1pdW4uc2UvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAGl9GoKC +gm7ywKn8I5eAF+MEUkDPPPt5KMSfIe7SZmI975vceeCDaPOZ8gvKuAHHC3yG6fgf +FLqNffN26y4k6EYg4XVGq5u8SmEwDktTn4wRJyj4NN9cqg3EZbw7wa10jTVTGEWm +13Hf0TEi2qAkU3Xb8K7hHDy//BnKHo1FZLcIPMUGrIpaCl32klb5fAwvE+E6QgCB +aFup4A/f+gTnofyIo1gi8TmMs/7v+A5Ty39VdmU15eXvA2TBhGEDFmVAQWnZvSQ2 +YAe2eCFJhzuNutfMyzzH4ZE1da+vfxQX0yLQpKiK4XRIH4Jr1THM/12L+YNmlRPF +7RI4YGkyabhUuiM=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miunidptest.miun.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">Mid Sweden University (test)</md:ServiceName> + <md:ServiceName xml:lang="sv">Mittuniversitetet (test)</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> <md:Extensions> <shibmd:Scope regexp="false">miun.se</shibmd:Scope> diff --git a/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml b/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml index c70d30bd..1bea1bf3 100644 --- a/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml +++ b/metadata/swamid-testing/shibbo3test.ltu.se-idp-shibboleth.xml @@ -14,8 +14,84 @@ <samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue> <samla:AttributeValue>http://refeds.org/category/research-and-scholarship</samla:AttributeValue> </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> </mdattr:EntityAttributes> </md:Extensions> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0"> + <md:Extensions> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">Lulea University of Technology - TEST SP</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">Luleå tekniska universitet - TEST SP</mdui:DisplayName> + <mdui:Description xml:lang="sv">Service Provider för Luleå tekniska universitet - TEST SP</mdui:Description> + <mdui:Description xml:lang="en">Service Provider for Lulea University of Technology - TEST SP</mdui:Description> + <mdui:InformationURL xml:lang="sv">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Generell-beskrivning-av-SAML2-WebSSO-1.218206</mdui:InformationURL> + <mdui:InformationURL xml:lang="en">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Generell-beskrivning-av-SAML2-WebSSO-1.218206</mdui:InformationURL> + <mdui:Logo xml:lang="sv" height="130" width="250">https://www.ltu.se/image/LTU_logo-sve-smal.png</mdui:Logo> + <mdui:Logo xml:lang="en" height="130" width="250">https://www.ltu.se/image/LTU_logo-eng-smal.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="sv">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Din-anvandare/Policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-Identity-Provider-IdP-1.218207</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">https://www.ltu.se/ltu/it-support/IT-support-personal/Anvandarnamn-och-losenord/Din-anvandare/Policy-for-hantering-av-personuppgifter-inom-ramen-for-identitetsutgivaren-Identity-Provider-IdP-1.218207?l=en</mdui:PrivacyStatementURL> + <mdui:Keywords xml:lang="sv">LTU lulea+tekniska+universitet lulea+university+of+technology</mdui:Keywords> + <mdui:Keywords xml:lang="en">LTU lulea+tekniska+universitet lulea+university+of+technology</mdui:Keywords> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDNDCCAhygAwIBAgIVANzbaWTqiitWHi/FZY/Cf0XjTG2tMA0GCSqGSIb3DQEB +CwUAMB0xGzAZBgNVBAMMEnNoaWJibzN0ZXN0Lmx0dS5zZTAeFw0xNjAzMTQwOTIz +MzVaFw0zNjAzMTQwOTIzMzVaMB0xGzAZBgNVBAMMEnNoaWJibzN0ZXN0Lmx0dS5z +ZTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIM1kTvLw1tGy0YpTe80 +KxGj8w4oZiMHbErUhWUVNG09C6hMOfGkVdLBTZhqZcNhqGHLKGeE6ET9l4/YGEY1 +xdPCy4aHPyBH0AZZ5hVhRgOthEFdKTH5smb4J+lMk8a51BoRMStRmsm93IeYMMzU +7HlCbsZ0H6bGRksEMWvbAiH5w5psT6He5oI+05g3RV1WrDexFImX/x7fZTI8YOTD +qi64CDoLtGmGfE6dp1HPONfdLyFBr3/ENC6n9b9OOE2w7PDK63bHKrc4WfGCPWMG +rWGLFnRwSfUKijJtvUdLAaE2SRvfzqxyZ5gUv0jcZH7VMkW1SWhgEajeiez+Z3J5 +MesCAwEAAaNrMGkwHQYDVR0OBBYEFI/PN6vDb385cLrqCL3JU+gGX4lGMEgGA1Ud +EQRBMD+CEnNoaWJibzN0ZXN0Lmx0dS5zZYYpaHR0cHM6Ly9zaGliYm8zdGVzdC5s +dHUuc2UvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAFKVyzGKVJty +QYqseA7FjSfrOXw9Kljuggvn7M1fCs3esr3Ic4Gm3cDhjyFNakysZQm7kXC364sC +N1JBGj4pSRLOmjaZVCCQkat4gQztumH+W47M7aFFIw+IUveS6HzhL3xMQFjxFnfL +JU/FmWASnTeBzLGtts7eUcOtSobz6N4grPlR75KuOSDPovWyFgcmaAS17OFOt6AH +3KIHNZOHO0rqx5g9EHzOF/+CsiAwRhg+2ydhLtf51A3ju8g/A4WMFdfmGESvM7MO +zqNlArfwLcg+x0Au2u+aTWbCjwIq0cvdEC8CmJorZA6nH0tz8WMQXImhvrEWbtAi +DUfmSji9lFM=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIDNDCCAhygAwIBAgIVALc7cXmNp5/uQQWtVri12AzDbYe/MA0GCSqGSIb3DQEB +CwUAMB0xGzAZBgNVBAMMEnNoaWJibzN0ZXN0Lmx0dS5zZTAeFw0xNjAzMTQwOTIz +MzZaFw0zNjAzMTQwOTIzMzZaMB0xGzAZBgNVBAMMEnNoaWJibzN0ZXN0Lmx0dS5z +ZTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMry0LiGt0F7Kkk/xqpo ++evp9nQtztlkRNdN7DDDUejwLAOBB4xwotTdwmAs2F611QLhZSWI+FLM3jr+YxD1 +fUzef54BLPlPFRPmQUFzy9Uf6NJ9RUnArPWjyWEgwSQwpyu9TeKz5rpCCe39woL9 +sLOfFVRw/Lh2y6j1hPBipbP0OP3nsRE1WLZ36Q7LKQPJ6+FF0eyrEqnVfNEgHmFa +bOR9aNjEL14gsW6KbfOsRuM+XWOj+0cNboBddVYwMmaML1sC8N5mZI0pmchz80VW +OoY77wTxp4s4cLiOHvEfX2JqERy9h89tJQC5HnzLhjaDT9W9gKBlxe5GTvY22JhB +g0kCAwEAAaNrMGkwHQYDVR0OBBYEFG7iRdtb6OAhSOnHYnNCvvNuZ9IEMEgGA1Ud +EQRBMD+CEnNoaWJibzN0ZXN0Lmx0dS5zZYYpaHR0cHM6Ly9zaGliYm8zdGVzdC5s +dHUuc2UvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBADiDD72lxvE6 +K0/DIp6S4DOkqzJkyV+rzDDEJ4/TBvlr22jBFoCTjI/G2n/GjvOXYfIw2nMV86iC +Ug5HMXsV9vgsIR4ChH+Y8YkNebCDgKckZK7opC1Jbq/7e7KNc+Dr++aOPKnuHQjQ +N7xSqaBpIRIavAWONsxbvyLKSGWQsckYtwVug9rDwkjYm6JPd0Uae+ALgCIcIOgQ +NDdQFzh/nDsIV9lfCwSIgBVFDAvO5HODbMrlIyAyCw4cdDxRLP0Q/dI3uLcs6Hxb +ls1YqceuIJ1xea3cFj/VxrqP2sizmG/OGusxJ1JfWY/OHbeyiBtVAYz1u3WAy0xh +ynzkb00+6b8=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibmfa.test.swamid.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">Lulea University of Technology - TEST SP</md:ServiceName> + <md:ServiceName xml:lang="sv">Luleå tekniska universitet - TEST SP</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0" errorURL="https://error.swamid.se/?errorurl_code=ERRORURL_CODE&errorurl_ts=ERRORURL_TS&errorurl_rp=ERRORURL_RP&errorurl_tid=ERRORURL_TID&errorurl_ctx=ERRORURL_CTX&entityid=https://shibbo3test.ltu.se/idp/shibboleth"> <md:Extensions> <shibmd:Scope regexp="false">ltu.se</shibmd:Scope> diff --git a/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml b/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml index 5d380e11..030b54b5 100644 --- a/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml +++ b/metadata/swamid-testing/shibmfa.test.swamid.se-idp-shibboleth.xml @@ -7,6 +7,10 @@ <samla:AttributeValue>http://www.swamid.se/policy/assurance/al1</samla:AttributeValue> <samla:AttributeValue>http://www.swamid.se/policy/assurance/al2</samla:AttributeValue> </samla:Attribute> + <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> </mdattr:EntityAttributes> <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2023-05-17T10:21:08Z"> <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> @@ -120,6 +124,86 @@ Qr+e2bDPXd3Jvpz7Nk+ARrxWbtk756UyT4TTuL6YZ9kWg81+y6jCzDKa7/syKT0N <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" ns1:supportsRequestedAttributes="true" Location="https://shibmfa.test.swamid.se/idp/profile/SAML2/Redirect/SSO"/> <md:SingleSignOnService xmlns:ns1="urn:oasis:names:tc:SAML:protocol:ext:req-attr" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" ns1:supportsRequestedAttributes="true" Location="https://shibmfa.test.swamid.se/idp/profile/SAML2/POST-SimpleSign/SSO"/> </md:IDPSSODescriptor> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <mdui:UIInfo> + <mdui:Description xml:lang="en">SWAMID TestSP MFA for Test</mdui:Description> + <mdui:Description xml:lang="sv">SWAMID TestSP MFA for Test</mdui:Description> + <mdui:DisplayName xml:lang="en">SWAMID TestSP MFA for Test</mdui:DisplayName> + <mdui:DisplayName xml:lang="sv">SWAMID TestSP MFA for Test</mdui:DisplayName> + <mdui:Logo xml:lang="sv" height="100" width="115">https://release-check.swamid.se/swamid-logo-2-100x115.png</mdui:Logo> + <mdui:Logo xml:lang="en" height="100" width="115">https://release-check.swamid.se/swamid-logo-2-100x115.png</mdui:Logo> + <mdui:PrivacyStatementURL xml:lang="en">https://testidp.qa.swamid.se/</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://testidp.qa.swamid.se/</mdui:PrivacyStatementURL> + <mdui:InformationURL xml:lang="sv">https://testidp.qa.swamid.se/</mdui:InformationURL> + <mdui:InformationURL xml:lang="en">https://testidp.qa.swamid.se/</mdui:InformationURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUR3bWVVQpP7HaXqgz/kW+RRovJ+4wDQYJKoZIhvcNAQEL +BQAwITEfMB0GA1UEAwwWc2hpYm1mYS50ZXN0LnN3YW1pZC5zZTAeFw0yMzA1MTcw +OTU5NThaFw00MzA1MTcwOTU5NThaMCExHzAdBgNVBAMMFnNoaWJtZmEudGVzdC5z +d2FtaWQuc2UwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCM/g7dvKVu +OpFrHHsNEftlneF+uBFSZ83uGDatOd6O8xHjQFmWxM04378Bpyez7H9Z4BuCRid1 ++jWnJo85khk2C+prnNGva0YTsVezRYzwAt34PZxnHZ9GewnFZRAAuSuqIjdO9r39 +bnSAS/Z5yoTDJnatI2MyCzwjTRI2b7SVgAW4y4IJGgo6l8gEa5jkHApvywv5LEzX +EkSsvTiNGizdQ1oReOduqxUIa4RyrriJuxpiHHvc+rAEvUvwwHIWkZmWdsGiI0BW +rmc8rXriMzsnKGYuxLh9BlCKl3e2ZgEp9R6m5THj38OIWQ6My6TO9uUJUj2Dza/s +a4GkiobPEUyKMKcgPu+dos3FQdLloDSgT7BC7a1z4SgyiQYxLtVreXyE19t/Ewjj +XoKU3x855/J2IiF9DO+Sn8iile3Efq+7qxG6Wz//bEXBqn9+fsxWr1cvaTFO18Z/ +VlqxrMxB8B/1TlO4fWuWpAAJS7SXKKnFVI2jIAo0pgLTZypQi41TzbkCAwEAAaNz +MHEwHQYDVR0OBBYEFElqSjU0N2y5Ohsn8SWEJiKN42vaMFAGA1UdEQRJMEeCFnNo +aWJtZmEudGVzdC5zd2FtaWQuc2WGLWh0dHBzOi8vc2hpYm1mYS50ZXN0LnN3YW1p +ZC5zZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEAis38il8YoA0j +Hpu0k8+GXyiCzEjHOzSZziRfgZ2KPmppGeEV+oP3FESBBeu5OzrQcfb1pVu+wSdj +coP4iOIYq9aVBbmF0vRY969uL6ep6bKFgaK6DxZ6UfXuK26ePdmOP1qr694m2gVm +kmTtUxZMXI9VCtkeDTp7PsLA4kSSLc1IJdP73yzFrpi8d6l1zKYalkbqPRbjANkR +HEcRh869bMWP89uXqcGxJ4Z1dyf+tmFylrrpVYq9mr8ccGBxyevpuWXpgYW+94G5 ++Fc+EtdS1g1Iz1gVUAWXzsBaWOdtuYOHsYLYUBL8u8B7GdXMipDjOm4CwJ94G6Pl +uzYFs/B48SMug/vBDAVjp3cQe//oiGYQmq2ag8cWEMupJs2x3XQ6EvanfSOwkgQz +NeenJih1P9YsBgSjEgbmfcYkdg2KbgSZhk28XBW6DLPVq1na639h87Et4BxpJc3i +iCzzAtCjyrnAB8mBpehGhqtb5iA/PuQuqxRUuKt10Xg2xI8t+6ko</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIEQzCCAqugAwIBAgIUVmb7Ln6BabLbl9CUiQsXW/sRV04wDQYJKoZIhvcNAQEL +BQAwITEfMB0GA1UEAwwWc2hpYm1mYS50ZXN0LnN3YW1pZC5zZTAeFw0yMzA1MTcw +OTU5NThaFw00MzA1MTcwOTU5NThaMCExHzAdBgNVBAMMFnNoaWJtZmEudGVzdC5z +d2FtaWQuc2UwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCyVJcKDAql +ipOsg16jsXeVYAW759K1sdgj57pnzoVrzyi7LnrX0CHsUlwmSGGzJSe9CgMEYSgj +F2EPtnwGOTltyfhvQpHNs0peXBWuM3WPm3bPBMPNOEBhucZeRxXQ72ObrMMALMUN +I91WtmBdEkElHbm1lyqOhXRRIQfSthWq4rzNLKL87Pmty0IerC5XS3np8dswoe89 +AIylsBGyTLMqmuacRYFJvXld4WVRyMVJ3NjOv0NmUnEOarfRqITQKG8DdVNzNnLy +4t4IAA8pL2clqye5+pFYwuPi/kbqLbtJF66Nlxm4EMoIjgaAHNh6j0uRlukDXwrw +88hyqD58GhPw45Dp45GYSbqRd65XmoVYy6xlrJPZpLL/RtzMzJRyfRZ3cDSLKSkx +mQrY/vtgrbwbPuxEWl0Sb/Ynr5Ct0J64f9/JuDkxaFQoJdU/Y9wO6mKG/E+MqPoB +J4j3imvT4nvlvJUDyZQn/oaVTVzzSRSW/mpTYtfNUh9DtD0Wky07u9ECAwEAAaNz +MHEwHQYDVR0OBBYEFK+1ANgcvkowlbEmsAcf2M8FeBnhMFAGA1UdEQRJMEeCFnNo +aWJtZmEudGVzdC5zd2FtaWQuc2WGLWh0dHBzOi8vc2hpYm1mYS50ZXN0LnN3YW1p +ZC5zZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAYEALvsMSPXXG/ud +ER/kXMckNeKAc165EX4S9qIWW62iBSWvlKHRTaz+uvpW+fYgFnd0ZtZPy5nsGAQF +BSLpkXaqm7K1WLIxy8VMLFlD7UBMgdXB65+IUKAhuEIvQj+pxVHm5eUJckb4AatA +Wbpmb1gBtKOWFd13Z/jx6e5002Ch+4U3OlO9YsM49vjTPmBY0H8zBpCPneZlHgg5 +8dUTsRxdKNGJ+mt1r4i1GqHDoIkeWW15aGeEDvNbKd0hw1sDNZF/LxQniF/iSwvp +FfpXGbAdFmEo8gv9m95OEsBK0gpCY42YrxfB6+kKsP+tm6Th+0jmr+2sqqNWM1c4 +ab3k2QndDp2nFgPkMC3or8JZ1XDwD7Y7fuiKOR1UkeUil7+Q6GnEIkpbzETq45ak +Qr+e2bDPXd3Jvpz7Nk+ARrxWbtk756UyT4TTuL6YZ9kWg81+y6jCzDKa7/syKT0N +5e/V//IgnlUeSzSe3JqmtWgcw3TXRrozdFrA7jstAzNyvSWg5WqR</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibmfa.test.swamid.se/idp/profile/Authn/SAML2/POST/SSO" index="0"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">SWAMID TestSP MFA for Test</md:ServiceName> + <md:ServiceName xml:lang="sv">SWAMID TestSP MFA for Test</md:ServiceName> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> <md:Organization> <md:OrganizationName xml:lang="en">The Swedish Research Council</md:OrganizationName> <md:OrganizationName xml:lang="sv">Vetenskapsrådet</md:OrganizationName> |