diff options
Diffstat (limited to 'swamid-interfederations-2.0/cas.cuni.cz-idp-shibboleth.xml')
-rw-r--r-- | swamid-interfederations-2.0/cas.cuni.cz-idp-shibboleth.xml | 144 |
1 files changed, 98 insertions, 46 deletions
diff --git a/swamid-interfederations-2.0/cas.cuni.cz-idp-shibboleth.xml b/swamid-interfederations-2.0/cas.cuni.cz-idp-shibboleth.xml index 3b9699b7..e52f0511 100644 --- a/swamid-interfederations-2.0/cas.cuni.cz-idp-shibboleth.xml +++ b/swamid-interfederations-2.0/cas.cuni.cz-idp-shibboleth.xml @@ -1,6 +1,6 @@ <?xml version="1.0" encoding="UTF-8"?> -<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://cas.cuni.cz/idp/shibboleth"> - <md:Extensions xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata"> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas.cuni.cz/idp/shibboleth"> + <md:Extensions> <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://www.eduid.cz/" registrationInstant="2010-09-21T15:24:17Z"> <mdrpi:RegistrationPolicy xml:lang="en">http://www.eduid.cz/wiki/_media/en/eduid/policy/policy_eduid_en-1_1.pdf</mdrpi:RegistrationPolicy> <mdrpi:RegistrationPolicy xml:lang="cs">http://www.eduid.cz/wiki/_media/eduid/policy/policy_eduid_cz-1_1-3.pdf</mdrpi:RegistrationPolicy> @@ -11,9 +11,9 @@ </saml:Attribute> </mdattr:EntityAttributes> </md:Extensions> - <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol"> - <Extensions> - <shibmd:Scope regexp="false">cuni.cz</shibmd:Scope> + <md:IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">cuni.cz</shibmd:Scope> <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"> <mdui:DisplayName xml:lang="en">Charles University in Prague</mdui:DisplayName> <mdui:DisplayName xml:lang="cs">Univerzita Karlova v Praze</mdui:DisplayName> @@ -27,8 +27,8 @@ <eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0"> <eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget> </eduidmd:RepublishRequest> - </Extensions> - <KeyDescriptor> + </md:Extensions> + <md:KeyDescriptor> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> @@ -53,23 +53,49 @@ dXLpqi4= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> - </KeyDescriptor> - <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cuni.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> - <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> - <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat> - <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cas.cuni.cz/idp/profile/Shibboleth/SSO"/> - <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/idp/profile/SAML2/POST/SSO"/> - <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas.cuni.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/> - <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cuni.cz/idp/profile/SAML2/Redirect/SSO"/> - </IDPSSODescriptor> - <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol"> - <Extensions> - <shibmd:Scope regexp="false">cuni.cz</shibmd:Scope> - </Extensions> - <KeyDescriptor> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> +MIIDMTCCAhmgAwIBAgIJANqPbg8m3ZcAMA0GCSqGSIb3DQEBCwUAMEoxCzAJBgNV +BAYTAkNaMSUwIwYDVQQKExxDaGFybGVzIFVuaXZlcnNpdHkgaW4gUHJhZ3VlMRQw +EgYDVQQDEwtjYXMuY3VuaS5jejAeFw0xNTAxMjAwOTUwNDRaFw0yMDAxMTkwOTUw +NDRaMEoxCzAJBgNVBAYTAkNaMSUwIwYDVQQKExxDaGFybGVzIFVuaXZlcnNpdHkg +aW4gUHJhZ3VlMRQwEgYDVQQDEwtjYXMuY3VuaS5jejCCASIwDQYJKoZIhvcNAQEB +BQADggEPADCCAQoCggEBAN0feuG6+FLnbIh05Zmy487kOMkpOxMC2herMuXuVR+l +e/SlicUomEeJGImbTC/THTGvn0+Y9ROKkZHu16tQ8uyMDxNZX5g/JMZNIp+yOlnG +cTwtUPtpgABNAVTVwdG34E24hQVzO3B+bTJXtGtzDOmu/c7R8uVwlK6d2BNQBlu9 +SA6W4xvNOwSjBCpdZgG++uj+GwGKuPEaFh534MX2LoCOExGC6khoj2thMhUMBQPt +81Uio99xdbT3/e5bs89iRxmrsqGwOWUPdx1zBJG5NqI4b/m8wbJ1htH/6yLm8TCo +V/mZlCLUBzn45secmhN3OhAoq4IiHH2XqAwc8xWKyRMCAwEAAaMaMBgwFgYDVR0R +BA8wDYILY2FzLmN1bmkuY3owDQYJKoZIhvcNAQELBQADggEBALsTJzFgI0Nf+0l5 +FccXlhEbCxzHtHPmiETIus2hEKY0zuWsqm9mGOr/+30ng862mJ/kok4YZPGrJZue +AgJo/dveZGCWetZv65XFDBl+gE2G/+TJplM41XEHSWJ15EhpCECxXhlBw0vRon+h +6HBmGrLZzzy0F2+5dGqf6cZW8T6NToJRVWBxPTKs26bgER/Clj1EfkNubmU+u91F +oErcj4bh09j1zv6Dt6c6N4Zdzsq6bg9sYRVRB4d80zhfw61qz0+Ln2Rp/k95aaOe +czKNjg972Y385kSS8YEHXlVJbnuZHeqAnsq6v1L6b6FFQEkgFfoNPMLxpPzKFtRg +qzjW2e0= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cuni.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> + <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> + <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cas.cuni.cz/idp/profile/Shibboleth/SSO"/> + <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/idp/profile/SAML2/POST/SSO"/> + <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas.cuni.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/> + <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cuni.cz/idp/profile/SAML2/Redirect/SSO"/> + </md:IDPSSODescriptor> + <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">cuni.cz</shibmd:Scope> + </md:Extensions> + <md:KeyDescriptor> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate> @@ -94,25 +120,51 @@ dXLpqi4= </ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> - </KeyDescriptor> - <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cuni.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> - <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> - <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat> - </AttributeAuthorityDescriptor> - <Organization> - <OrganizationName xml:lang="cs">Univerzita Karlova v Praze</OrganizationName> - <OrganizationName xml:lang="en">Charles University in Prague</OrganizationName> - <OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</OrganizationDisplayName> - <OrganizationDisplayName xml:lang="en">Charles University in Prague</OrganizationDisplayName> - <OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</OrganizationURL> - <OrganizationURL xml:lang="cs">http://www.cuni.cz/</OrganizationURL> - </Organization> - <ContactPerson contactType="technical"> - <GivenName>Michal</GivenName> - <SurName>Vocu</SurName> - <EmailAddress>michal@cuni.cz</EmailAddress> - </ContactPerson> -</EntityDescriptor> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> +MIIDMTCCAhmgAwIBAgIJANqPbg8m3ZcAMA0GCSqGSIb3DQEBCwUAMEoxCzAJBgNV +BAYTAkNaMSUwIwYDVQQKExxDaGFybGVzIFVuaXZlcnNpdHkgaW4gUHJhZ3VlMRQw +EgYDVQQDEwtjYXMuY3VuaS5jejAeFw0xNTAxMjAwOTUwNDRaFw0yMDAxMTkwOTUw +NDRaMEoxCzAJBgNVBAYTAkNaMSUwIwYDVQQKExxDaGFybGVzIFVuaXZlcnNpdHkg +aW4gUHJhZ3VlMRQwEgYDVQQDEwtjYXMuY3VuaS5jejCCASIwDQYJKoZIhvcNAQEB +BQADggEPADCCAQoCggEBAN0feuG6+FLnbIh05Zmy487kOMkpOxMC2herMuXuVR+l +e/SlicUomEeJGImbTC/THTGvn0+Y9ROKkZHu16tQ8uyMDxNZX5g/JMZNIp+yOlnG +cTwtUPtpgABNAVTVwdG34E24hQVzO3B+bTJXtGtzDOmu/c7R8uVwlK6d2BNQBlu9 +SA6W4xvNOwSjBCpdZgG++uj+GwGKuPEaFh534MX2LoCOExGC6khoj2thMhUMBQPt +81Uio99xdbT3/e5bs89iRxmrsqGwOWUPdx1zBJG5NqI4b/m8wbJ1htH/6yLm8TCo +V/mZlCLUBzn45secmhN3OhAoq4IiHH2XqAwc8xWKyRMCAwEAAaMaMBgwFgYDVR0R +BA8wDYILY2FzLmN1bmkuY3owDQYJKoZIhvcNAQELBQADggEBALsTJzFgI0Nf+0l5 +FccXlhEbCxzHtHPmiETIus2hEKY0zuWsqm9mGOr/+30ng862mJ/kok4YZPGrJZue +AgJo/dveZGCWetZv65XFDBl+gE2G/+TJplM41XEHSWJ15EhpCECxXhlBw0vRon+h +6HBmGrLZzzy0F2+5dGqf6cZW8T6NToJRVWBxPTKs26bgER/Clj1EfkNubmU+u91F +oErcj4bh09j1zv6Dt6c6N4Zdzsq6bg9sYRVRB4d80zhfw61qz0+Ln2Rp/k95aaOe +czKNjg972Y385kSS8YEHXlVJbnuZHeqAnsq6v1L6b6FFQEkgFfoNPMLxpPzKFtRg +qzjW2e0= + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cuni.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> + <md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> + <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> + </md:AttributeAuthorityDescriptor> + <md:Organization> + <md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName> + <md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName> + <md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</md:OrganizationURL> + <md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="technical"> + <md:GivenName>Michal</md:GivenName> + <md:SurName>Vocu</md:SurName> + <md:EmailAddress>michal@cuni.cz</md:EmailAddress> + </md:ContactPerson> +</md:EntityDescriptor> |