From 16028397e1615ff71ad0e43b0cc67ab2dc537cee Mon Sep 17 00:00:00 2001 From: Paul Scott Date: Mon, 14 Mar 2016 11:38:34 +0100 Subject: Add scope to SH idp.suni.se... metadata SWAMIDOPS-8072 --- swamid-2.0/idp.suni.se-adfs-services-trust.xml | 435 ++++++++++++++++++++++--- 1 file changed, 385 insertions(+), 50 deletions(-) diff --git a/swamid-2.0/idp.suni.se-adfs-services-trust.xml b/swamid-2.0/idp.suni.se-adfs-services-trust.xml index e459e99e..f9321981 100644 --- a/swamid-2.0/idp.suni.se-adfs-services-trust.xml +++ b/swamid-2.0/idp.suni.se-adfs-services-trust.xml @@ -1,5 +1,5 @@ - + @@ -31,7 +31,7 @@ AD FS 1.x E-Mail Address - The e-mail address of the user when interoperating with AD FS 1.1 or ADFS 1.0 + The e-mail address of the user when interoperating with AD FS 1.1 or AD FS 1.0 Group @@ -39,7 +39,7 @@ AD FS 1.x UPN - The UPN of the user when interoperating with AD FS 1.1 or ADFS 1.0 + The UPN of the user when interoperating with AD FS 1.1 or AD FS 1.0 Role @@ -91,31 +91,179 @@ Windows account name - The domain account name of the user in the form of <domain>\<user> + The domain account name of the user in the form of domain\user - - eduPersonScopedAffiliation + + Is Registered User + User is registered to use this device - - cn + + Device Identifier + Identifier of the device - - eduPersonEntitlement + + Device Registration Identifier + Identifier for Device Registration - - Display Name + + Device Registration DisplayName + Display name of Device Registration - - Initials + + Device OS type + OS type of the device - - norEduPersonNIN + + Device OS Version + OS version of the device - - socialSecurityNumber + + Is Managed Device + Device is managed by a management service - - socialSecurityNumberNotOld + + Forwarded Client IP + IP address of the user + + + Client Application + Type of the Client Application + + + Client User Agent + Device type the client is using to access the application + + + Client IP + IP address of the client + + + Endpoint Path + Absolute Endpoint path which can be used to determine active versus passive clients + + + Proxy + DNS name of the federation server proxy that passed the request + + + Application Identifier + Identifier for the Relying Party + + + Application policies + Application policies of the certificate + + + Authority Key Identifier + The Authority Key Identifier extension of the certificate that signed an issued certificate + + + Basic Constraint + One of the basic constraints of the certificate + + + Enhanced Key Usage + Describes one of the enhanced key usages of the certificate + + + Issuer + The name of the certificate authority that issued the X.509 certificate + + + Issuer Name + The distinguished name of the certificate issuer + + + Key Usage + One of the key usages of the certificate + + + Not After + Date in local time after which a certificate is no longer valid + + + Not Before + The date in local time on which a certificate becomes valid + + + Certificate Policies + The policies under which the certificate has been issued + + + Public Key + Public Key of the certificate + + + Certificate Raw Data + The raw data of the certificate + + + Subject Alternative Name + One of the alternative names of the certificate + + + Serial Number + The serial number of a certificate + + + Signature Algorithm + The algorithm used to create the signature of a certificate + + + Subject + The subject from the certificate + + + Subject Key Identifier + Describes the subject key identifier of the certificate + + + Subject Name + The subject distinguished name from a certificate + + + V2 Template Name + The name of the version 2 certificate template used when issuing or renewing a certificate. The extension is Microsoft specific. + + + V1 Template Name + The name of the version 1 certificate template used when issuing or renewing a certificate. The extension is Microsoft specific. + + + Thumbprint + Thumbprint of the certificate + + + X.509 Version + The X.509 format version of a certificate + + + Inside Corporate Network + Used to indicate if a request originated inside corporate network + + + Password Expiration Time + Used to display the time when the password expires + + + Password Expiration Days + Used to display the number of days to password expiry + + + Update Password URL + Used to display the web address of update password service + + + Authentication Methods References + Used to indicate all authentication methods used to authenticate the user + + + Client Request ID + Identifier for a user session + + + Alternate Login ID + Alternate login ID of the user @@ -135,7 +283,7 @@
https://idp.suni.se/adfs/ls/
-
https://idp.suni.se/adfs/services/trust
+
http://idp.suni.se/adfs/services/trust
@@ -184,7 +332,7 @@
AD FS 1.x E-Mail Address - The e-mail address of the user when interoperating with AD FS 1.1 or ADFS 1.0 + The e-mail address of the user when interoperating with AD FS 1.1 or AD FS 1.0 Group @@ -192,7 +340,7 @@ AD FS 1.x UPN - The UPN of the user when interoperating with AD FS 1.1 or ADFS 1.0 + The UPN of the user when interoperating with AD FS 1.1 or AD FS 1.0 Role @@ -244,31 +392,179 @@ Windows account name - The domain account name of the user in the form of <domain>\<user> + The domain account name of the user in the form of domain\user + + + Is Registered User + User is registered to use this device + + + Device Identifier + Identifier of the device + + + Device Registration Identifier + Identifier for Device Registration + + + Device Registration DisplayName + Display name of Device Registration + + + Device OS type + OS type of the device + + + Device OS Version + OS version of the device + + + Is Managed Device + Device is managed by a management service + + + Forwarded Client IP + IP address of the user + + + Client Application + Type of the Client Application + + + Client User Agent + Device type the client is using to access the application + + + Client IP + IP address of the client + + + Endpoint Path + Absolute Endpoint path which can be used to determine active versus passive clients + + + Proxy + DNS name of the federation server proxy that passed the request + + + Application Identifier + Identifier for the Relying Party + + + Application policies + Application policies of the certificate + + + Authority Key Identifier + The Authority Key Identifier extension of the certificate that signed an issued certificate + + + Basic Constraint + One of the basic constraints of the certificate + + + Enhanced Key Usage + Describes one of the enhanced key usages of the certificate + + + Issuer + The name of the certificate authority that issued the X.509 certificate + + + Issuer Name + The distinguished name of the certificate issuer + + + Key Usage + One of the key usages of the certificate + + + Not After + Date in local time after which a certificate is no longer valid + + + Not Before + The date in local time on which a certificate becomes valid + + + Certificate Policies + The policies under which the certificate has been issued + + + Public Key + Public Key of the certificate + + + Certificate Raw Data + The raw data of the certificate + + + Subject Alternative Name + One of the alternative names of the certificate + + + Serial Number + The serial number of a certificate + + + Signature Algorithm + The algorithm used to create the signature of a certificate + + + Subject + The subject from the certificate + + + Subject Key Identifier + Describes the subject key identifier of the certificate + + + Subject Name + The subject distinguished name from a certificate + + + V2 Template Name + The name of the version 2 certificate template used when issuing or renewing a certificate. The extension is Microsoft specific. + + + V1 Template Name + The name of the version 1 certificate template used when issuing or renewing a certificate. The extension is Microsoft specific. + + + Thumbprint + Thumbprint of the certificate - - eduPersonScopedAffiliation + + X.509 Version + The X.509 format version of a certificate - - cn + + Inside Corporate Network + Used to indicate if a request originated inside corporate network - - eduPersonEntitlement + + Password Expiration Time + Used to display the time when the password expires - - Display Name + + Password Expiration Days + Used to display the number of days to password expiry - - Initials + + Update Password URL + Used to display the web address of update password service - - norEduPersonNIN + + Authentication Methods References + Used to indicate all authentication methods used to authenticate the user - - socialSecurityNumber + + Client Request ID + Identifier for a user session - - socialSecurityNumberNotOld + + Alternate Login ID + Alternate login ID of the user @@ -316,6 +612,9 @@ + + suni.se + @@ -330,6 +629,7 @@ + urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress @@ -358,14 +658,49 @@ - - - - - - - - + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + Södertörns högskola @@ -375,7 +710,7 @@ Tomas Legat - server@sh.se - +46(0)86084000 + mailto:tomas.legat@sh.se + 08-6084000
-- cgit v1.2.3