diff options
Diffstat (limited to 'swamid-interfederations-2.0/hefce-shib.hefce.ac.uk-idp-shibboleth.xml')
-rw-r--r-- | swamid-interfederations-2.0/hefce-shib.hefce.ac.uk-idp-shibboleth.xml | 171 |
1 files changed, 84 insertions, 87 deletions
diff --git a/swamid-interfederations-2.0/hefce-shib.hefce.ac.uk-idp-shibboleth.xml b/swamid-interfederations-2.0/hefce-shib.hefce.ac.uk-idp-shibboleth.xml index b4697cac..a168e88e 100644 --- a/swamid-interfederations-2.0/hefce-shib.hefce.ac.uk-idp-shibboleth.xml +++ b/swamid-interfederations-2.0/hefce-shib.hefce.ac.uk-idp-shibboleth.xml @@ -1,19 +1,16 @@ -<?xml version="1.0" encoding="UTF-8"?> -<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hefce-shib.hefce.ac.uk/idp/shibboleth"> - <!-- - This is a Shibboleth IdP for the Higher Education Funding Council for England. - --> - <Extensions> - <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://ukfederation.org.uk"/> - </Extensions> - <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol"> - <Extensions> - <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">hefce.ac.uk</shibmd:Scope> - </Extensions> - <KeyDescriptor use="signing"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> +<?xml version="1.0"?> +<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://hefce-shib.hefce.ac.uk/idp/shibboleth"> + <md:Extensions> + <mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://ukfederation.org.uk"/> + </md:Extensions> + <md:IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol"> + <md:Extensions> + <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">hefce.ac.uk</shibmd:Scope> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIDQzCCAiugAwIBAgIUd3eeqMwn7Gk2wcl0ANILseGZbTMwDQYJKoZIhvcNAQEL BQAwITEfMB0GA1UEAwwWaGVmY2Utc2hpYi5oZWZjZS5hYy51azAeFw0xNjAxMDcw ODUzMTlaFw0zNjAxMDcwODUzMTlaMCExHzAdBgNVBAMMFmhlZmNlLXNoaWIuaGVm @@ -33,13 +30,13 @@ L6XzHSDH7nJz+f8/6m7VLr6SEevybOPiuF31oMi9+nPcdevTK1jijAwbmV7YAvg5 tf7o9r1RncMSSHP6t48r1PTmuB+r02I= </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <KeyDescriptor use="signing"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIDRDCCAiygAwIBAgIVAKdUokAt0edGYQbZGpn+Z0fBlMChMA0GCSqGSIb3DQEB CwUAMCExHzAdBgNVBAMMFmhlZmNlLXNoaWIuaGVmY2UuYWMudWswHhcNMTYwMTA3 MDg1MzE2WhcNMzYwMTA3MDg1MzE2WjAhMR8wHQYDVQQDDBZoZWZjZS1zaGliLmhl @@ -59,13 +56,13 @@ Q4sCx2jJ0fwyL7PpqrrL1WzXwtU1Q7L7IFyJp638LgkKrQdI0WE1yAoDTSkh++8K FZtFNtmBVBWov5MSfrY7Jgim7u1VS2fq </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <KeyDescriptor use="encryption"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIDQzCCAiugAwIBAgIURtGpLnxwX0+8kXuklWDHCYd82wowDQYJKoZIhvcNAQEL BQAwITEfMB0GA1UEAwwWaGVmY2Utc2hpYi5oZWZjZS5hYy51azAeFw0xNjAxMDcw ODUzMTdaFw0zNjAxMDcwODUzMTdaMCExHzAdBgNVBAMMFmhlZmNlLXNoaWIuaGVm @@ -85,26 +82,26 @@ vWpIynhpAzqFl+TPKTr+WVVk6ckMTDIh3vDqM5jMwPwedMDF1x+Et3Vgq5OdcvNb ivVwIqHl7GlENvD8by7jEZVCZIPVuaY= </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://hefce-shib.hefce.ac.uk:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> - <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hefce-shib.hefce.ac.uk:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> - <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat> - <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://hefce-shib.hefce.ac.uk/idp/profile/Shibboleth/SSO"/> - <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hefce-shib.hefce.ac.uk/idp/profile/SAML2/POST/SSO"/> - <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hefce-shib.hefce.ac.uk/idp/profile/SAML2/POST-SimpleSign/SSO"/> - <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hefce-shib.hefce.ac.uk/idp/profile/SAML2/Redirect/SSO"/> - </IDPSSODescriptor> - <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> - <Extensions> - <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">hefce.ac.uk</shibmd:Scope> - </Extensions> - <KeyDescriptor use="signing"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://hefce-shib.hefce.ac.uk:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/> + <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hefce-shib.hefce.ac.uk:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/> + <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> + <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://hefce-shib.hefce.ac.uk/idp/profile/Shibboleth/SSO"/> + <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hefce-shib.hefce.ac.uk/idp/profile/SAML2/POST/SSO"/> + <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hefce-shib.hefce.ac.uk/idp/profile/SAML2/POST-SimpleSign/SSO"/> + <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hefce-shib.hefce.ac.uk/idp/profile/SAML2/Redirect/SSO"/> + </md:IDPSSODescriptor> + <md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol"> + <md:Extensions> + <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">hefce.ac.uk</shibmd:Scope> + </md:Extensions> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIDQzCCAiugAwIBAgIUd3eeqMwn7Gk2wcl0ANILseGZbTMwDQYJKoZIhvcNAQEL BQAwITEfMB0GA1UEAwwWaGVmY2Utc2hpYi5oZWZjZS5hYy51azAeFw0xNjAxMDcw ODUzMTlaFw0zNjAxMDcwODUzMTlaMCExHzAdBgNVBAMMFmhlZmNlLXNoaWIuaGVm @@ -124,13 +121,13 @@ L6XzHSDH7nJz+f8/6m7VLr6SEevybOPiuF31oMi9+nPcdevTK1jijAwbmV7YAvg5 tf7o9r1RncMSSHP6t48r1PTmuB+r02I= </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <KeyDescriptor use="signing"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIDRDCCAiygAwIBAgIVAKdUokAt0edGYQbZGpn+Z0fBlMChMA0GCSqGSIb3DQEB CwUAMCExHzAdBgNVBAMMFmhlZmNlLXNoaWIuaGVmY2UuYWMudWswHhcNMTYwMTA3 MDg1MzE2WhcNMzYwMTA3MDg1MzE2WjAhMR8wHQYDVQQDDBZoZWZjZS1zaGliLmhl @@ -150,13 +147,13 @@ Q4sCx2jJ0fwyL7PpqrrL1WzXwtU1Q7L7IFyJp638LgkKrQdI0WE1yAoDTSkh++8K FZtFNtmBVBWov5MSfrY7Jgim7u1VS2fq </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <KeyDescriptor use="encryption"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:X509Data> - <ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:KeyDescriptor use="encryption"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:X509Data> + <ds:X509Certificate> MIIDQzCCAiugAwIBAgIURtGpLnxwX0+8kXuklWDHCYd82wowDQYJKoZIhvcNAQEL BQAwITEfMB0GA1UEAwwWaGVmY2Utc2hpYi5oZWZjZS5hYy51azAeFw0xNjAxMDcw ODUzMTdaFw0zNjAxMDcwODUzMTdaMCExHzAdBgNVBAMMFmhlZmNlLXNoaWIuaGVm @@ -176,26 +173,26 @@ vWpIynhpAzqFl+TPKTr+WVVk6ckMTDIh3vDqM5jMwPwedMDF1x+Et3Vgq5OdcvNb ivVwIqHl7GlENvD8by7jEZVCZIPVuaY= </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://hefce-shib.hefce.ac.uk:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> - <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat> - <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat> - </AttributeAuthorityDescriptor> - <Organization> - <OrganizationName xml:lang="en">Higher Education Funding Council for England</OrganizationName> - <OrganizationDisplayName xml:lang="en">Higher Education Funding Council for England</OrganizationDisplayName> - <OrganizationURL xml:lang="en">http://www.hefce.ac.uk/</OrganizationURL> - </Organization> - <ContactPerson contactType="support"> - <GivenName>Gareth</GivenName> - <SurName>Edwards</SurName> - <EmailAddress>mailto:g.edwards@hefce.ac.uk</EmailAddress> - </ContactPerson> - <ContactPerson contactType="technical"> - <GivenName>Gareth</GivenName> - <SurName>Edwards</SurName> - <EmailAddress>mailto:g.edwards@hefce.ac.uk</EmailAddress> - </ContactPerson> -</EntityDescriptor> + </ds:X509Data> + </ds:KeyInfo> + </md:KeyDescriptor> + <md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://hefce-shib.hefce.ac.uk:8443/idp/profile/SAML1/SOAP/AttributeQuery"/> + <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> + <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> + </md:AttributeAuthorityDescriptor> + <md:Organization> + <md:OrganizationName xml:lang="en">Higher Education Funding Council for England</md:OrganizationName> + <md:OrganizationDisplayName xml:lang="en">Higher Education Funding Council for England</md:OrganizationDisplayName> + <md:OrganizationURL xml:lang="en">http://www.hefce.ac.uk/</md:OrganizationURL> + </md:Organization> + <md:ContactPerson contactType="support"> + <md:GivenName>Gareth</md:GivenName> + <md:SurName>Edwards</md:SurName> + <md:EmailAddress>mailto:g.edwards@hefce.ac.uk</md:EmailAddress> + </md:ContactPerson> + <md:ContactPerson contactType="technical"> + <md:GivenName>Gareth</md:GivenName> + <md:SurName>Edwards</md:SurName> + <md:EmailAddress>mailto:g.edwards@hefce.ac.uk</md:EmailAddress> + </md:ContactPerson> + </md:EntityDescriptor> |