diff options
Diffstat (limited to 'swamid-interfederations-2.0/groupes-aa.renater.fr.xml')
-rw-r--r-- | swamid-interfederations-2.0/groupes-aa.renater.fr.xml | 109 |
1 files changed, 55 insertions, 54 deletions
diff --git a/swamid-interfederations-2.0/groupes-aa.renater.fr.xml b/swamid-interfederations-2.0/groupes-aa.renater.fr.xml index d2332dfd..bd16bb92 100644 --- a/swamid-interfederations-2.0/groupes-aa.renater.fr.xml +++ b/swamid-interfederations-2.0/groupes-aa.renater.fr.xml @@ -1,34 +1,34 @@ -<?xml version="1.0" encoding="UTF-8"?> +<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://groupes-aa.renater.fr"> - <md:Extensions> - <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="https://federation.renater.fr/" registrationInstant="2014-09-25T15:11:29Z"> - <mdrpi:RegistrationPolicy xml:lang="en">https://services.renater.fr/federation/en/metadata_registration_practice_statement</mdrpi:RegistrationPolicy> - </mdrpi:RegistrationInfo> - <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> - <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> - <saml:AttributeValue>https://federation.renater.fr/category/collaboratif</saml:AttributeValue> - <saml:AttributeValue>https://federation.renater.fr/scope/community</saml:AttributeValue> - </saml:Attribute> - </mdattr:EntityAttributes> - </md:Extensions> - <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol"> <md:Extensions> - <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"> - <mdui:DisplayName xml:lang="en">RENATER - Validation of the Authorization Service</mdui:DisplayName> - <mdui:InformationURL xml:lang="fr">https://groupes-aa.renater.fr</mdui:InformationURL> - <mdui:Description xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities. + <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="https://federation.renater.fr/" registrationInstant="2014-09-25T15:11:29Z"> + <mdrpi:RegistrationPolicy xml:lang="en">https://services.renater.fr/federation/en/metadata_registration_practice_statement</mdrpi:RegistrationPolicy> + </mdrpi:RegistrationInfo> + <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"> + <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>https://federation.renater.fr/category/collaboratif</saml:AttributeValue> + <saml:AttributeValue>https://federation.renater.fr/scope/community</saml:AttributeValue> + </saml:Attribute> + </mdattr:EntityAttributes> + </md:Extensions> + <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"> + <mdui:DisplayName xml:lang="en">RENATER - Validation of the Authorization Service</mdui:DisplayName> + <mdui:InformationURL xml:lang="fr">https://groupes-aa.renater.fr</mdui:InformationURL> + <mdui:Description xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities. It allows virtual organizations (e.g. research communities) composed by people belonging to different institutions (i.e. managed by different referentials) to access to common resources (if authorization was granted) after having been authenticated by their respective institutions. This service will be in charge of authentication and provide accurate access control on a community's web resource (group defined in Sympa). This resource can therefore be hosted anywhere.</mdui:Description> - <mdui:DisplayName xml:lang="fr">RENATER - Validation du Service d'autorisation</mdui:DisplayName> - <mdui:Description xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML. + <mdui:DisplayName xml:lang="fr">RENATER - Validation du Service d'autorisation</mdui:DisplayName> + <mdui:Description xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML. Il permet à des organisations virtuelles (VO, communautés de chercheurs) appartenant à des établissements différents (donc gérés dans des référentiels différents) d'accéder à des ressources communes (sur autorisation) après authentification auprès de leurs établissements respectifs. Ce service se chargera de l'authentification et permettra un contrôle d'accès fin sur une ressource Web d'une communauté (groupe défini dans Sympa) qui peut donc être hébergée n'importe où.</mdui:Description> - </mdui:UIInfo> - </md:Extensions> - <md:KeyDescriptor use="signing"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> + </mdui:UIInfo> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIC+jCCAeKgAwIBAgIJALBSjVtKCuQcMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV BAMTEWRhbW9uYS5yZW5hdGVyLmZyMB4XDTE0MDkyMjE0NDgxMVoXDTI0MDkxOTE0 NDgxMVowHDEaMBgGA1UEAxMRZGFtb25hLnJlbmF0ZXIuZnIwggEiMA0GCSqGSIb3 @@ -47,13 +47,13 @@ B2xZ41JS1unwqh1+azyjNCYMn9P8UYanAOTDdycZqCOFASXGSkd+aCHWrHz1lVGo bGESZR7Tv0Rg476ex/x+VHEXmJZurlD9Sf7UAMbErhorRKPsfrReAuWpaqSJyw== </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </md:KeyDescriptor> - <md:KeyDescriptor use="encryption"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIC+jCCAeKgAwIBAgIJALBSjVtKCuQcMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV BAMTEWRhbW9uYS5yZW5hdGVyLmZyMB4XDTE0MDkyMjE0NDgxMVoXDTI0MDkxOTE0 NDgxMVowHDEaMBgGA1UEAxMRZGFtb25hLnJlbmF0ZXIuZnIwggEiMA0GCSqGSIb3 @@ -72,29 +72,30 @@ B2xZ41JS1unwqh1+azyjNCYMn9P8UYanAOTDdycZqCOFASXGSkd+aCHWrHz1lVGo bGESZR7Tv0Rg476ex/x+VHEXmJZurlD9Sf7UAMbErhorRKPsfrReAuWpaqSJyw== </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </md:KeyDescriptor> - <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML2/POST" index="1"/> - <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML/POST" index="5"/> - <md:AttributeConsumingService index="0"> - <md:ServiceName xml:lang="fr">RENATER - Validation du Service d'autorisation</md:ServiceName> - <md:ServiceName xml:lang="en">RENATER - Validation of the Authorization Service</md:ServiceName> - <md:ServiceDescription xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML. + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML2/POST" index="1"/> + <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://groupes-aa.renater.fr/Shibboleth.sso/SAML/POST" index="5"/> + <md:AttributeConsumingService index="0"> + <md:ServiceName xml:lang="fr">RENATER - Validation du Service d'autorisation</md:ServiceName> + <md:ServiceName xml:lang="en">RENATER - Validation of the Authorization Service</md:ServiceName> + <md:ServiceDescription xml:lang="fr">Service d'autorisation basé sur le gestionnaire de groupes Sympa (Universalistes) et les Attributes Authorities SAML. Il permet à des organisations virtuelles (VO, communautés de chercheurs) appartenant à des établissements différents (donc gérés dans des référentiels différents) d'accéder à des ressources communes (sur autorisation) après authentification auprès de leurs établissements respectifs. Ce service se chargera de l'authentification et permettra un contrôle d'accès fin sur une ressource Web d'une communauté (groupe défini dans Sympa) qui peut donc être hébergée n'importe où.</md:ServiceDescription> - <md:ServiceDescription xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities. + <md:ServiceDescription xml:lang="en">Authorization service based on Sympa group manager (Universalistes) and SAML Attributes Authorities. It allows virtual organizations (e.g. research communities) composed by people belonging to different institutions (i.e. managed by different referentials) to access to common resources (if authorization was granted) after having been authenticated by their respective institutions. This service will be in charge of authentication and provide accurate access control on a community's web resource (group defined in Sympa). This resource can therefore be hosted anywhere.</md:ServiceDescription> - <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/> - </md:AttributeConsumingService> - </md:SPSSODescriptor> - <md:Organization> - <md:OrganizationName xml:lang="en">GIP RENATER</md:OrganizationName> - <md:OrganizationDisplayName xml:lang="en">GIP RENATER</md:OrganizationDisplayName> - <md:OrganizationURL xml:lang="en">http://www.renater.fr</md:OrganizationURL> - </md:Organization> - <md:ContactPerson contactType="technical"> - <md:EmailAddress>support@renater.fr</md:EmailAddress> - </md:ContactPerson> -</md:EntityDescriptor> + <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"> + </md:RequestedAttribute> + </md:AttributeConsumingService> + </md:SPSSODescriptor> + <md:Organization> + <md:OrganizationName xml:lang="en">GIP RENATER</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="en">GIP RENATER</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">http://www.renater.fr</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="technical"> + <md:EmailAddress>support@renater.fr</md:EmailAddress> + </md:ContactPerson> + </md:EntityDescriptor> |