diff options
Diffstat (limited to 'swamid-2.0')
-rw-r--r-- | swamid-2.0/idp2.kkh.se-idp-shibboleth.xml | 232 |
1 files changed, 232 insertions, 0 deletions
diff --git a/swamid-2.0/idp2.kkh.se-idp-shibboleth.xml b/swamid-2.0/idp2.kkh.se-idp-shibboleth.xml new file mode 100644 index 00000000..a953ce68 --- /dev/null +++ b/swamid-2.0/idp2.kkh.se-idp-shibboleth.xml @@ -0,0 +1,232 @@ +<?xml version="1.0" encoding="UTF-8"?> +<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idp2.kkh.se/idp/shibboleth"> + <Extensions> + <attr:EntityAttributes xmlns:attr="urn:oasis:names:tc:SAML:metadata:attribute"> + <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>http://www.swamid.se/policy/assurance/al1</saml:AttributeValue> + </saml:Attribute> + </attr:EntityAttributes> + <attr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:attr="urn:oasis:names:tc:SAML:metadata:attribute"> + <saml:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category"> + <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue> + </saml:Attribute> + </attr:EntityAttributes> + </Extensions> + <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0"> + <Extensions> + <shibmd:Scope regexp="false">kkh.se</shibmd:Scope> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="sv">Kungl. Konsthögskolan - New</mdui:DisplayName> + <mdui:DisplayName xml:lang="en">Royal Institute of Art - New</mdui:DisplayName> + <mdui:Description xml:lang="sv">Identity Provider för Kungl. Konsthögskolan (KKH)</mdui:Description> + <mdui:Description xml:lang="en">Identity Provider for the Royal Institute of Art (KKH)</mdui:Description> + <mdui:Logo height="110" width="404">https://idp2.kkh.se/idp/images/kkh.png</mdui:Logo> + <mdui:Keywords xml:lang="sv">KKH Kungl.+Konsthögskolan Kungliga+Konsthögskolan Royal+Institute+of+Art</mdui:Keywords> + <mdui:Keywords xml:lang="en">KKH Kungl.+Konsthögskolan Kungliga+Konsthögskolan Royal+Institute+of+Art</mdui:Keywords> + <mdui:InformationURL xml:lang="sv">http://www.kkh.se/contact/</mdui:InformationURL> + <mdui:InformationURL xml:lang="en">http://www.kkh.se/en/contact/</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="sv">http://kkh.se/images/stories/helens/Personuppgifter_KKH_infotext.pdf</mdui:PrivacyStatementURL> + </mdui:UIInfo> + <mdui:DiscoHints> + <mdui:DomainHint>kkh.se</mdui:DomainHint> + <mdui:IPHint>130.242.7.0/24</mdui:IPHint> + <mdui:IPHint>130.242.8.0/24</mdui:IPHint> + <mdui:GeolocationHint>geo:59.324458,18.082998</mdui:GeolocationHint> + </mdui:DiscoHints> + </Extensions> + <KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDEzCCAfugAwIBAgIUKSlBy0/PK+dLgfzr4YQyQUTWSmswDQYJKoZIhvcNAQEL +BQAwFTETMBEGA1UEAwwKaWRwLmtraC5zZTAeFw0xNzEyMjgyMjIzMjRaFw0zNzEy +MjgyMjIzMjRaMBUxEzARBgNVBAMMCmlkcC5ra2guc2UwggEiMA0GCSqGSIb3DQEB +AQUAA4IBDwAwggEKAoIBAQCkcQ4heWoeLnCVuWcbyIyJuiGKTQUn3G4AgFPzPrzu +kmHOB1TYZaoHSf29nwaxIlwWBP8I1Ht/ZV0YEEcXdVzi6aqTaAyaG/EI+I4W9Mt6 +fahyfqbrMUobtsE8gGjKNPuENlwJaoE20QGKjKVgEAZD6rf6x67tAMOksD+mWlEO +C92hqo524ALCvyq6j/+ZBpy9N0mGco/UU09XJYN6ox85xi28yyGnUVPIU/dSqatA +D3UAVXogrXZL0tqcp56g5WZ0ea2Vt5GcKzAg4MyFjMrjWYtZl5aqE6FO2KhSiH+0 +g4PO59qaF29e1ELnkTLsnlqRkVcDpGmz7mG3DTyqBPLLAgMBAAGjWzBZMB0GA1Ud +DgQWBBSXhrPEfp0EsoC3wrOp+PNey4m5PTA4BgNVHREEMTAvggppZHAua2toLnNl +hiFodHRwczovL2lkcC5ra2guc2UvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL +BQADggEBADRwTzIescaIEtFHM1deQl5oTR9J49dZHBVwpnlEMZaPqj3lEG3UYWK3 +ydkSkVR/b3XJ6V9l22spA7GMeB7RylB5de7Wk8CTX8RIkO/hrM5GKUY9EknYk81Y +wasuEUslFH0CioXR8wNtBZlu8cX0TioTCxuv8Z6mF1n/LdQISWylmxFGb9RBjrbF +1DIr+i2Al4MHbhokAYwVgVhP3PiTDms25MT5uARGYoz/11GsiWYzxDgCqcFbw+oy +er0t5sfPQZ9gp2fu7eG27+cm3BryxcLUUoGN+9qN43pSnlXex3zIwSIr9SuBmOq7 +txB7BxAsEsxkzuE7M1p2N62744NyMWs= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDFDCCAfygAwIBAgIVANz+UgEHXLfMQL+quk51wR7pDqSvMA0GCSqGSIb3DQEB +CwUAMBUxEzARBgNVBAMMCmlkcC5ra2guc2UwHhcNMTcxMjI4MjIyMzIzWhcNMzcx +MjI4MjIyMzIzWjAVMRMwEQYDVQQDDAppZHAua2toLnNlMIIBIjANBgkqhkiG9w0B +AQEFAAOCAQ8AMIIBCgKCAQEAkhuu6h49llcV1GOSUwjfk+P7cROS5Qxa4XVqS8Uv +7vh8+bZMJu+MpozCE/PLR8T7ERB+isf8zU4GNrY0d5Lo0pkfSfJ8KxeWjegQ4bLy +SoKbGh2mvDy4DSYQU3GscVrl+eTOExSao4kyACc4J4Wog0lWEwN1K0Gxhiw9mRLb +43b16dSonrtrypoCEgYeSjxdnOGcCicivDCXm25/wYvMrMuB73pqhfkRgd0WFg2N +QbsZ5aWiqGVsRwYFydy/N3gs7+IDQ+iZ0aM3TWeL4wb551iMqERtzYO49oeMbmcW +FHGfoo5vmi7VgwK9eM9k0auORaYY2ePbSdTqGGYeZ1kqqwIDAQABo1swWTAdBgNV +HQ4EFgQUC+Cfy2cOPFRRRxvKxnI3i/NBznQwOAYDVR0RBDEwL4IKaWRwLmtraC5z +ZYYhaHR0cHM6Ly9pZHAua2toLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB +CwUAA4IBAQA9RzNZvlQuc8RYNExHbolJeTVQ6rk0ap3yqM16PKAcuR7WxUHoINQU +9xDZjTGvoXkt/57Lela5AwM2FV48BiS4CvG/1w1GEHRnWCRt4v+y4dnbKa11+GzA +AhwjTQySGNjWMfgkBrwEg304dhetj9dVsS8gKs69YdBFPJJn5psClgm34ozsmqtg +v5Dvj4Iva1cXj4GM43N3QERr615wdrkkabCNLTvb9x9PdqvZ0pF+v8IY5mOOzoMk +R+j6OtHbXjzDF0eehnoMWOiCbKguULWN5TfILfce+mwblQD2eVP70gyD5gL9Zpt4 +NlZX5y7b3GoY/Eio8u4N/p6Id9sfmbUb + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDFDCCAfygAwIBAgIVAMfqkTpxpjF9WdBM63DL5ybHrThKMA0GCSqGSIb3DQEB +CwUAMBUxEzARBgNVBAMMCmlkcC5ra2guc2UwHhcNMTcxMjI4MjIyMzI0WhcNMzcx +MjI4MjIyMzI0WjAVMRMwEQYDVQQDDAppZHAua2toLnNlMIIBIjANBgkqhkiG9w0B +AQEFAAOCAQ8AMIIBCgKCAQEAoqXgmOoiWpIsO5cK4dgmPH41dhh0Jau2WSNUsT4R +lMnEcW26NZL6/DAXPOODKFKIFRp6Oahg+74IU5FqhgsZe4RDcs+bFbbKLz6Y1+kd +ITl6gBOR0sjqsjqKcpMsTHM6PD/sGO7JqsEVS9ddJRnW2b6BubQ7nbHDUeJxO+rI +VzGIAJJxNcWkj0gbWyViluP4lFE94adATcTVBb1F0XPfbWEhoIhDxzbcQQBXW/qN +DsmJc75WRMas268qRRpKcf1hFFXXqYVEhCy83OY/QVADWLdxtw833z/VeFHB+PBz +GCSwZ71DNaW0iDl77CkOQnkh0e34HQHq4xretgaM0gDn7QIDAQABo1swWTAdBgNV +HQ4EFgQUjRz86bc3SzB/mkZC00+WjfXO25owOAYDVR0RBDEwL4IKaWRwLmtraC5z +ZYYhaHR0cHM6Ly9pZHAua2toLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB +CwUAA4IBAQBD1IRgMoPb/N7UuXoHMQ4C59FncMHxrjcHtZxRqMdEquvQg/rVF27L +UIwkkzBvmnPGK0bM5iJxi4NA26IVLVBDDg+HD2oMkZW/04uJV/ef6QKdzEyCkmCO +y/7WkQTjBX9KJeUrnFZNwGb4bRPYrFBElvEHD0hLax4efouwiCaFLsS1w3T+xKsJ +uoYU5bjUrWQrnHO+BRO1b0D6YAsFx7sTSJGT6v2FCsCNC7DC/1blmZIp7J73FBOr +R/BU8rcOeQ5KU1e3ooJqSzIKBhWce80g4TaX1u1rYibKqkSUwgp1Jh2MSnKN0B8c +/RKD8pPFLEQHT32tIHhoRw/Qv+Il4d6h + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp2.kkh.se:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.kkh.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> + <!-- + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp2.kkh.se/idp/profile/SAML2/Redirect/SLO"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp2.kkh.se/idp/profile/SAML2/POST/SLO"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.kkh.se:8443/idp/profile/SAML2/SOAP/SLO"/> + --> + <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat> + <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat> + <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp2.kkh.se/idp/profile/Shibboleth/SSO"/> + <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp2.kkh.se/idp/profile/SAML2/POST/SSO"/> + <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp2.kkh.se/idp/profile/SAML2/Redirect/SSO"/> + </IDPSSODescriptor> + <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> + <Extensions> + <shibmd:Scope regexp="false">kkh.se</shibmd:Scope> + </Extensions> + <KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDEzCCAfugAwIBAgIUKSlBy0/PK+dLgfzr4YQyQUTWSmswDQYJKoZIhvcNAQEL +BQAwFTETMBEGA1UEAwwKaWRwLmtraC5zZTAeFw0xNzEyMjgyMjIzMjRaFw0zNzEy +MjgyMjIzMjRaMBUxEzARBgNVBAMMCmlkcC5ra2guc2UwggEiMA0GCSqGSIb3DQEB +AQUAA4IBDwAwggEKAoIBAQCkcQ4heWoeLnCVuWcbyIyJuiGKTQUn3G4AgFPzPrzu +kmHOB1TYZaoHSf29nwaxIlwWBP8I1Ht/ZV0YEEcXdVzi6aqTaAyaG/EI+I4W9Mt6 +fahyfqbrMUobtsE8gGjKNPuENlwJaoE20QGKjKVgEAZD6rf6x67tAMOksD+mWlEO +C92hqo524ALCvyq6j/+ZBpy9N0mGco/UU09XJYN6ox85xi28yyGnUVPIU/dSqatA +D3UAVXogrXZL0tqcp56g5WZ0ea2Vt5GcKzAg4MyFjMrjWYtZl5aqE6FO2KhSiH+0 +g4PO59qaF29e1ELnkTLsnlqRkVcDpGmz7mG3DTyqBPLLAgMBAAGjWzBZMB0GA1Ud +DgQWBBSXhrPEfp0EsoC3wrOp+PNey4m5PTA4BgNVHREEMTAvggppZHAua2toLnNl +hiFodHRwczovL2lkcC5ra2guc2UvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL +BQADggEBADRwTzIescaIEtFHM1deQl5oTR9J49dZHBVwpnlEMZaPqj3lEG3UYWK3 +ydkSkVR/b3XJ6V9l22spA7GMeB7RylB5de7Wk8CTX8RIkO/hrM5GKUY9EknYk81Y +wasuEUslFH0CioXR8wNtBZlu8cX0TioTCxuv8Z6mF1n/LdQISWylmxFGb9RBjrbF +1DIr+i2Al4MHbhokAYwVgVhP3PiTDms25MT5uARGYoz/11GsiWYzxDgCqcFbw+oy +er0t5sfPQZ9gp2fu7eG27+cm3BryxcLUUoGN+9qN43pSnlXex3zIwSIr9SuBmOq7 +txB7BxAsEsxkzuE7M1p2N62744NyMWs= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDFDCCAfygAwIBAgIVANz+UgEHXLfMQL+quk51wR7pDqSvMA0GCSqGSIb3DQEB +CwUAMBUxEzARBgNVBAMMCmlkcC5ra2guc2UwHhcNMTcxMjI4MjIyMzIzWhcNMzcx +MjI4MjIyMzIzWjAVMRMwEQYDVQQDDAppZHAua2toLnNlMIIBIjANBgkqhkiG9w0B +AQEFAAOCAQ8AMIIBCgKCAQEAkhuu6h49llcV1GOSUwjfk+P7cROS5Qxa4XVqS8Uv +7vh8+bZMJu+MpozCE/PLR8T7ERB+isf8zU4GNrY0d5Lo0pkfSfJ8KxeWjegQ4bLy +SoKbGh2mvDy4DSYQU3GscVrl+eTOExSao4kyACc4J4Wog0lWEwN1K0Gxhiw9mRLb +43b16dSonrtrypoCEgYeSjxdnOGcCicivDCXm25/wYvMrMuB73pqhfkRgd0WFg2N +QbsZ5aWiqGVsRwYFydy/N3gs7+IDQ+iZ0aM3TWeL4wb551iMqERtzYO49oeMbmcW +FHGfoo5vmi7VgwK9eM9k0auORaYY2ePbSdTqGGYeZ1kqqwIDAQABo1swWTAdBgNV +HQ4EFgQUC+Cfy2cOPFRRRxvKxnI3i/NBznQwOAYDVR0RBDEwL4IKaWRwLmtraC5z +ZYYhaHR0cHM6Ly9pZHAua2toLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB +CwUAA4IBAQA9RzNZvlQuc8RYNExHbolJeTVQ6rk0ap3yqM16PKAcuR7WxUHoINQU +9xDZjTGvoXkt/57Lela5AwM2FV48BiS4CvG/1w1GEHRnWCRt4v+y4dnbKa11+GzA +AhwjTQySGNjWMfgkBrwEg304dhetj9dVsS8gKs69YdBFPJJn5psClgm34ozsmqtg +v5Dvj4Iva1cXj4GM43N3QERr615wdrkkabCNLTvb9x9PdqvZ0pF+v8IY5mOOzoMk +R+j6OtHbXjzDF0eehnoMWOiCbKguULWN5TfILfce+mwblQD2eVP70gyD5gL9Zpt4 +NlZX5y7b3GoY/Eio8u4N/p6Id9sfmbUb + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <KeyDescriptor use="encryption"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate> +MIIDFDCCAfygAwIBAgIVAMfqkTpxpjF9WdBM63DL5ybHrThKMA0GCSqGSIb3DQEB +CwUAMBUxEzARBgNVBAMMCmlkcC5ra2guc2UwHhcNMTcxMjI4MjIyMzI0WhcNMzcx +MjI4MjIyMzI0WjAVMRMwEQYDVQQDDAppZHAua2toLnNlMIIBIjANBgkqhkiG9w0B +AQEFAAOCAQ8AMIIBCgKCAQEAoqXgmOoiWpIsO5cK4dgmPH41dhh0Jau2WSNUsT4R +lMnEcW26NZL6/DAXPOODKFKIFRp6Oahg+74IU5FqhgsZe4RDcs+bFbbKLz6Y1+kd +ITl6gBOR0sjqsjqKcpMsTHM6PD/sGO7JqsEVS9ddJRnW2b6BubQ7nbHDUeJxO+rI +VzGIAJJxNcWkj0gbWyViluP4lFE94adATcTVBb1F0XPfbWEhoIhDxzbcQQBXW/qN +DsmJc75WRMas268qRRpKcf1hFFXXqYVEhCy83OY/QVADWLdxtw833z/VeFHB+PBz +GCSwZ71DNaW0iDl77CkOQnkh0e34HQHq4xretgaM0gDn7QIDAQABo1swWTAdBgNV +HQ4EFgQUjRz86bc3SzB/mkZC00+WjfXO25owOAYDVR0RBDEwL4IKaWRwLmtraC5z +ZYYhaHR0cHM6Ly9pZHAua2toLnNlL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB +CwUAA4IBAQBD1IRgMoPb/N7UuXoHMQ4C59FncMHxrjcHtZxRqMdEquvQg/rVF27L +UIwkkzBvmnPGK0bM5iJxi4NA26IVLVBDDg+HD2oMkZW/04uJV/ef6QKdzEyCkmCO +y/7WkQTjBX9KJeUrnFZNwGb4bRPYrFBElvEHD0hLax4efouwiCaFLsS1w3T+xKsJ +uoYU5bjUrWQrnHO+BRO1b0D6YAsFx7sTSJGT6v2FCsCNC7DC/1blmZIp7J73FBOr +R/BU8rcOeQ5KU1e3ooJqSzIKBhWce80g4TaX1u1rYibKqkSUwgp1Jh2MSnKN0B8c +/RKD8pPFLEQHT32tIHhoRw/Qv+Il4d6h + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp2.kkh.se:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> + <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp2.kkh.se:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> --> + <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above --> + </AttributeAuthorityDescriptor> + <Organization> + <OrganizationName xml:lang="en">KKH</OrganizationName> + <OrganizationDisplayName xml:lang="sv">Kungl. Konsthögskolan - New</OrganizationDisplayName> + <OrganizationDisplayName xml:lang="en">Royal Institute of Art - New</OrganizationDisplayName> + <OrganizationURL xml:lang="en">http://www.kkh.se</OrganizationURL> + </Organization> + <ContactPerson contactType="administrative"> + <Company>Kungl. Konsthögskolan</Company> + <SurName>Fredrik Reuterswärd</SurName> + <EmailAddress>mailto:fredrik.reutersward@kkh.se</EmailAddress> + <TelephoneNumber>+4686144064</TelephoneNumber> + </ContactPerson> + <ContactPerson contactType="technical"> + <Company>Kungl. Konsthögskolan</Company> + <SurName>Fredrik Reuterswärd</SurName> + <EmailAddress>mailto:fredrik.reutersward@kkh.se</EmailAddress> + <TelephoneNumber>+4686144064</TelephoneNumber> + </ContactPerson> + <ContactPerson contactType="support"> + <Company>Kungl. Konsthögskolan</Company> + <SurName>Fredrik Reuterswärd</SurName> + <EmailAddress>mailto:fredrik.reutersward@kkh.se</EmailAddress> + <TelephoneNumber>+4686144064</TelephoneNumber> + </ContactPerson> +</EntityDescriptor> |