diff options
Diffstat (limited to 'metadata')
-rw-r--r-- | metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml | 164 |
1 files changed, 164 insertions, 0 deletions
diff --git a/metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml b/metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml new file mode 100644 index 00000000..a6fc0c23 --- /dev/null +++ b/metadata/swamid-2.0/devpassport.lu.se-SAML2-Shibboleth.xml @@ -0,0 +1,164 @@ +<?xml version="1.0" encoding="UTF-8"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://devpassport.lu.se/SAML2/Shibboleth"> + <md:Extensions> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdattr:EntityAttributes> + <samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> + <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue> + </samla:Attribute> + </mdattr:EntityAttributes> + <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2024-01-11T14:33:42Z"> + <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + </md:Extensions> + <md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nyadevpassport.lu.se/Shibboleth.sso/Login"/> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="sv">Lund universitets kontoaktivering och lösenordsåterställning</mdui:DisplayName> + <mdui:DisplayName xml:lang="en">Lund University user account activation and password reset</mdui:DisplayName> + <mdui:Description xml:lang="sv">Denna tjänst används för att du som ny vid universitetet ska kunna aktivera ditt användarkonto vid universitetet.</mdui:Description> + <mdui:Description xml:lang="en">As a new user you use this service to activate your university user account.</mdui:Description> + <mdui:InformationURL xml:lang="sv">https://devpassport.lu.se</mdui:InformationURL> + <mdui:InformationURL xml:lang="en">https://devpassport.lu.se</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="sv">https://devpassport.lu.se/privacy/</mdui:PrivacyStatementURL> + <mdui:PrivacyStatementURL xml:lang="en">https://devpassport.lu.se/privacy/</mdui:PrivacyStatementURL> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:KeyName>devpassport.lu.se</ds:KeyName> + <ds:KeyName>https://testidpv4.lu.se/idp/shibboleth</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=devpassport.lu.se</ds:X509SubjectName> + <ds:X509Certificate>MIIFLTCCAxWgAwIBAgIURAOOH4oM0FnAl8I0Du/H2FaycTwwDQYJKoZIhvcNAQEL +BQAwHDEaMBgGA1UEAxMRZGV2cGFzc3BvcnQubHUuc2UwHhcNMjQwMTEwMTQxNTUy +WhcNMzQwMTA3MTQxNTUyWjAcMRowGAYDVQQDExFkZXZwYXNzcG9ydC5sdS5zZTCC +AiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAPTLjNtwsAttvEzfLSuyndYs +I7A//OsdzOSD5JXwS1qDCBD8iVvDU9D3TG2UTPjqDiPCBMHye3DjHZ0JIIIFAJ57 +7JyW2K/UyANt6Q1Hs6ZMPL9QR3vlLNDra/Y9jtujIwNQcaXLy7gcpANaAQcqXfPg +O3TDhz+NuLZVsVd15AG1BapQ400btBPUbxmJVm1dH6qOB/45m0lzPeqH/QN+vUQI +hpl8FI666Buf5SgFpmfb5TJtJmJHUWVaqV4NCocFhgKozDk69vOSdGTFIBET3ij9 +3D8Rd+cf8TaDtR0eW0m9E6kBMM40gZUF5NB4tkstdulRixKeicyLDhCbKOcNhofT +Fp1OI34YkjO/GZ/OXgowJ2CQyYrvuE4owZ/ODLVulEM8IANqx/rJfJIKj/1uPpoU +tiCZ3yfAsl4qX2TUd/KXV410caWTrMl3G/jYXI/Ff6Xl5EwFlpGF3llHxHTqMwkp +kXC/ZCfPpUtLTfxqKVVanEmjFLrJd/z+NQzY1n3FjYHhYS+xDDAddX/nLovKeuf+ +Lp4mVAQitH25ODNNxwJ79W/iKHM3oL8nWRebmxMa+q434OXEBdbw5piXdQfKmMdT +6KM5vY+Rfnn/PRFGr9Q78le/uS1xFeBRoo4evQug6TH+dSo9SDThYM1GRTHBFIiy +cCQHz9OHtX66UHYjH0AxAgMBAAGjZzBlMEQGA1UdEQQ9MDuCEWRldnBhc3Nwb3J0 +Lmx1LnNlhiZodHRwczovL3Rlc3RpZHB2NC5sdS5zZS9pZHAvc2hpYmJvbGV0aDAd +BgNVHQ4EFgQUuI3oHLrOixGUFQQd9TTvCUB4wmowDQYJKoZIhvcNAQELBQADggIB +AMfKZI+PCZ9nYjsPycAfNhUIXICvJHZB1FIu//GGBPZdypHxaCrdtQE7/6uad7YP +Fq8WmaYP+cP/NMvU+Q18izE6a2bZAzPkD5Bk1lVX9kau4bUYVrkRGKLZk0Xaw7HU +AilWjgU275Bmo2dtGpqh9xlRX2sCEihtaDSVDC8O8LuJMamiJfydxxc19hwDT4h5 +aBq4pR5stnmZB3ezJl+EIz/AR1lT8+wEE7mNOj0Y6dIO6yRqyv+PFl65jSLYwi5E +ztXsWiC+3/VeZ3Pqn8qfyccwUAeay1wr9W0cuV53h5KIUXVvEePNNOeQnecJf14I +XZI/UBrTNQF2T4l8KEiImKxoOzZnCAK7HQ4sbh72HKzB/qaRIK7JZ3Rv7Hqe7mho +44zNXQ1h5TVyGNt0pN3XCwdziz24ciq55bXMsU2PFL/GkO6Am1u7ag0aJTtKv196 +cXqR/mylf4tbIsamGnb9hyOpLqsmts3VSV3I40k3aDOGQZ1dyRvMb+n96TQaghWZ +M2b8VQJPeszavSkKW5TQk6efhsDKdzY2l2rC17NACLQ3zkAEr9euTefr94h5dsGS +0sQTD2A7aRlgcSC0G1jxL2yK3zXw5KVQ2S67ubnEtPqcvDysFc8tzRulsNSSRvCx +7Z3PXIKMnDEMeCMuM7Li3bQaQp37YbeVwbe09RL1Gqof</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:KeyName>devpassport.lu.se</ds:KeyName> + <ds:KeyName>https://testidpv4.lu.se/idp/shibboleth</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=devpassport.lu.se</ds:X509SubjectName> + <ds:X509Certificate>MIIFLTCCAxWgAwIBAgIUCgjapWs7pevWpys82wAYi0RH7hwwDQYJKoZIhvcNAQEL +BQAwHDEaMBgGA1UEAxMRZGV2cGFzc3BvcnQubHUuc2UwHhcNMjQwMTEwMTQxNjA0 +WhcNMzQwMTA3MTQxNjA0WjAcMRowGAYDVQQDExFkZXZwYXNzcG9ydC5sdS5zZTCC +AiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAKQukP7LnYdswt3tSP/EF1lI +Hz7gPG+FWlXXAU0asveEGQHN2SMH2l/95+oI2CkYfxQzSRgBqOZmaWevLvmsW3xo +RjjKfjZ0V5WQq3t78j0hGzMVcgjlFqbFYxHJ4H4TrFWsDCbEWivxox8tMvdavmni +0jbDNje9gNZ6NzShGkdz2o9STbsi/FJlmSK15QR9XWOFwXbFEWiJOODuV3qYAmhe +qckmToZal254GIUyuRdufoVdsCDPX1Ep0KakyhSSujLydEpIvDX5FmGW9sLDcE4t +YYu0lpv1fRUoav8KySVEU9FHYXGjFuZSunx6Ypd+BIUXrH+mVTZGvsBqNHSbKX4a +EGqG5iib623bJV7b6ZUg+F2uBCj2/6ez3gUtqYUYx6tIQqidp5i1o4k22oYavIwc +3hveyvn9uI68MFu8xHOiDUgMzzTL+RFL3k0CFsAw1i83eBM9JORHDzgkwHd5UtGX +1CfBTwwFG3EQmMAsCoqbAglQU83xEfBIiix7VZ+JTEQtk/CU5vkP8abYoye/ymws +nITG3PiyFMzQd3o6B95BrDqJgoEt1+0/6mHx/LSHlPS/TdVj4aBXq4wUZdZrVHby +MwtEmHLw60/IAFNDdb3WMmcneK5/jCgIMcVO+Ypo/PlK5lqoks/ngUGr9XV/4Wg7 +nB1u2vSvindTc+G/NpTRAgMBAAGjZzBlMEQGA1UdEQQ9MDuCEWRldnBhc3Nwb3J0 +Lmx1LnNlhiZodHRwczovL3Rlc3RpZHB2NC5sdS5zZS9pZHAvc2hpYmJvbGV0aDAd +BgNVHQ4EFgQU/XLO9ECrWhAdIvOtUB+cbNOaUOgwDQYJKoZIhvcNAQELBQADggIB +AC2HLGABIYd94ayv+KTprh+xYSfelIicIEBc/UizfJlkb3C85poUYvckRvKOpH1j +TOYBAXqXtD0awNYWyQVZjy3HH7ztgQnNYDYe7+3WY31EERgDIDMTXQ8ivyINQ1/p +Lcbe6U771jkIkBisZiuFrQA30Qgs1ynDCVt2eLtRELSxHO++PRumCwSCObJ9pwPb +uCI7w/Qrl163YlVkYqUIkq7aIUN934ZBMhpmY5KCA2zc/vR92NfXsZiLBUJOJIFA +F9hdJZPoyqzb273HaZpfwblInLpc9g2aLef0D+centgM4gOb3l5sCnhn0JDm3o6i +l/os4omsIv/+PHO/uFdXFqqQvdz2ai1k1WZ1YwVJl9CdusugNaZc7gmFH4c/ew/u +iXzqhTtAHpw4Zii9xF+6lrG0v5B6xn+BexUfFWu0X1hMNOug6syL9z2GVAmmv+6+ +EocjGvYNfOll430X0jy8RpiuBau2Dii2j4VpnEJuZx2ZEYADrboUxctBXP2QhXeH +CKR9NEHJtp2xphijiOtNME5ghxouE8Xg1FsqhZZzDnoCZ6sbkFMUWkvKxPty9GKd +3/SnxsW0x/B63nt+wUhrRKOazv/taAzT7T/esDMPHxKKw5I8ihCOBR3IlgJOitfr +xJzdda9Ua6FK0k0huckyD9Jcf8pMlBagW5iHUv6avcCX</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nyadevpassport.lu.se/Shibboleth.sso/Artifact/SOAP" index="1"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/SOAP"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/Redirect"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/POST"/> + <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SLO/Artifact"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/POST" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/Artifact" index="3"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nyadevpassport.lu.se/Shibboleth.sso/SAML2/ECP" index="4"/> + <md:AttributeConsumingService index="1"> + <md:ServiceName xml:lang="en">Lund University user account management portal</md:ServiceName> + <md:ServiceName xml:lang="sv">Lunds universitets kontohanteringsportal</md:ServiceName> + <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> + </md:AttributeConsumingService> + </md:SPSSODescriptor> + <md:Organization> + <md:OrganizationName xml:lang="sv">Lunds universitet</md:OrganizationName> + <md:OrganizationName xml:lang="en">Lund University</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="sv">Lunds universitet</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="en">Lund University</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="sv">https://www.lu.se/</md:OrganizationURL> + <md:OrganizationURL xml:lang="en">https://www.lunduniversity.lu.se/</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="technical"> + <md:EmailAddress>mailto:passportadmin@epic.lu.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="administrative"> + <md:EmailAddress>mailto:servicedesk@lu.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="support"> + <md:EmailAddress>mailto:passportadmin@epic.lu.se</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <md:GivenName>LU IRT</md:GivenName> + <md:EmailAddress>mailto:abuse@lu.se</md:EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> |