From 574838e30e5094824add1d013e6d941e931fcc41 Mon Sep 17 00:00:00 2001
From: Fredrik Aslund <fredrik.aslund@umu.se>
Date: Wed, 19 Aug 2015 15:59:45 +0200
Subject: new metadata for KB IdP SWAMIDOPS-7767

---
 swamid-2.0/idp.kb.se-idp-shibboleth.xml | 208 +++++++++++++++++++++++---------
 1 file changed, 154 insertions(+), 54 deletions(-)

diff --git a/swamid-2.0/idp.kb.se-idp-shibboleth.xml b/swamid-2.0/idp.kb.se-idp-shibboleth.xml
index b51f9132..0613535b 100644
--- a/swamid-2.0/idp.kb.se-idp-shibboleth.xml
+++ b/swamid-2.0/idp.kb.se-idp-shibboleth.xml
@@ -1,100 +1,200 @@
 <?xml version="1.0" encoding="UTF-8"?>
-<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" entityID="https://idp.kb.se/idp/shibboleth">
-  <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idp.kb.se/idp/shibboleth">
+  <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
     <Extensions>
       <shibmd:Scope regexp="false">kb.se</shibmd:Scope>
-      <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+      <mdui:UIInfo>
         <mdui:DisplayName xml:lang="sv">Kungliga biblioteket</mdui:DisplayName>
         <mdui:DisplayName xml:lang="en">National Library of Sweden</mdui:DisplayName>
         <mdui:Description xml:lang="sv">Identity Provider för Kungliga biblioteket.</mdui:Description>
-        <mdui:Description xml:lang="en">Identity Provider for National Library of Sweden.</mdui:Description>
+        <mdui:Description xml:lang="en">Identity Provider for the National Library of Sweden.</mdui:Description>
         <mdui:InformationURL xml:lang="sv">http://www.kb.se</mdui:InformationURL>
         <mdui:InformationURL xml:lang="en">http://www.kb.se</mdui:InformationURL>
-        <mdui:Logo height="100" width="86">https://idp.kb.se/idp/images/kb-logo.png</mdui:Logo>
+        <mdui:Logo height="488" width="516">https://idp.kb.se/idp/images/logga_FB.gif</mdui:Logo>
         <mdui:Keywords xml:lang="sv">Kungliga+biblioteket national+library+of+sweden </mdui:Keywords>
         <mdui:Keywords xml:lang="en">Kungliga+biblioteket national+library+of+sweden </mdui:Keywords>
       </mdui:UIInfo>
-      <mdui:DiscoHints xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+      <mdui:DiscoHints>
         <mdui:DomainHint>kb.se</mdui:DomainHint>
         <mdui:IPHint>193.10.249.131/32</mdui:IPHint>
         <mdui:GeolocationHint>geo:59.33822,18.0722617</mdui:GeolocationHint>
       </mdui:DiscoHints>
     </Extensions>
-    <KeyDescriptor>
+    <KeyDescriptor use="signing">
       <ds:KeyInfo>
         <ds:X509Data>
           <ds:X509Certificate>
-MIIDEDCCAfigAwIBAgIVANtF15ZO6H7sUe14fLarTWN68i+6MA0GCSqGSIb3DQEB
-BQUAMBQxEjAQBgNVBAMTCWlkcC5rYi5zZTAeFw0xMjA1MTUwODE2MTZaFw0xMzA1
-MTUwODE2MTZaMBQxEjAQBgNVBAMTCWlkcC5rYi5zZTCCASIwDQYJKoZIhvcNAQEB
-BQADggEPADCCAQoCggEBAI5hTWyo9FvDJLFCHChRYSL1wZ7AsiL+RkBl+ath46EZ
-X4tcmMLg9T5qkveFqR5HQF8BK2+i3XcBmnXYqqCyYCUXc7oiKm83xrssgcP4xlAd
-L2H6rNBOaIG5sUqaU1nNb9BmL0Z8fJaamyX9+rqQSGj5JCGdwwR2CMi14bbJvz2W
-fQsGI8HHqTrAp/1RwG3dHsDXjQUHlaOAF3WWX+P/fYJepJPtHPVaurSllD00GQXf
-fswG4IBz+sdv/rId6ydAHMWc8M+oBVkVLzeOjcNOxrm6xpMjXhlsgJkQVcEVgP99
-MLY4FZ0RNVfzrSNB7WUbOnANFOyYEFdaZOAP6Ff6NS8CAwEAAaNZMFcwNgYDVR0R
-BC8wLYIJaWRwLmtiLnNlhiBodHRwczovL2lkcC5rYi5zZS9pZHAvc2hpYmJvbGV0
-aDAdBgNVHQ4EFgQUXOR57Uvaf5MNiogvbh+Pr2X35FUwDQYJKoZIhvcNAQEFBQAD
-ggEBABf3IMAt91LKUJoNU2VoSaHa+JYfjUkJp29lO1+GacoPrsbMkt4f09ALaqUB
-D3uTAP8IYWyxboESqHNXmk+rFKIYS4j1n6nx+Nomqs4bcY5qUcXOjTEUSKj67D3A
-eqmzb8ICVXHuejQqf1qA0nxSmDqO4ci13W7pF8Sy15J6WY+gi/qvwQLuCE7zD3qM
-FgBz0aBdSFpgIPo6Y7PLEyfutclknp+AE4S/Mzkxyrl72hoyWoct6fPuRVfROFxN
-eXhXEiHIleIlDkOMy3mgyjg2l2azS/K4Um12iEbCxONc8UvQipy2nzJ6XT8qp483
-HoPbenzIMS3KvKqUl64+5qwAZhM=
-
-                    </ds:X509Certificate>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+                        </ds:X509Certificate>
         </ds:X509Data>
       </ds:KeyInfo>
     </KeyDescriptor>
-    <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.kb.se:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
-    <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kb.se:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+    <KeyDescriptor use="signing">
+      <ds:KeyInfo>
+        <ds:X509Data>
+          <ds:X509Certificate>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+                        </ds:X509Certificate>
+        </ds:X509Data>
+      </ds:KeyInfo>
+    </KeyDescriptor>
+    <KeyDescriptor use="encryption">
+      <ds:KeyInfo>
+        <ds:X509Data>
+          <ds:X509Certificate>
+MIIDEDCCAfigAwIBAgIVAI0FNsztKW2wPAG/Bo8IvsP2dpNeMA0GCSqGSIb3DQEB
+CwUAMBQxEjAQBgNVBAMMCWlkcC5rYi5zZTAeFw0xNTA4MTAxMjU3MzhaFw0zNTA4
+MTAxMjU3MzhaMBQxEjAQBgNVBAMMCWlkcC5rYi5zZTCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAMz0SqErrZekQ6g4Fwg8lNSqp++kITIJzr3HwN9ypTrs
+dlaK+PjcVv2D7xLC1V/PIk26yAzfXdYKWNgSKkPbMLG+ecbmtHDA6d3EC6jqrTWE
+a0u/JyUOVZxPIwwNu2uGmhROsFK3IdW1HSI0e8f4wkxZFuIIFHH37pD/wk2MaMxv
+V/vXnBwwiqXcWTOQrEhHnkVdjLaqSHDiExyTmXstt5BeIzd9rrakg0YlwFxwKtDJ
+P5iPhKS1ZemKRTxIU0vOckk4jvfXaADjbnhTGDuwjcYnfDv+JWP8xt7m4V9z+m8w
+AXt98Wa18VA4N+O62RiVFfm2lslsBRu6zWNpLdR+sckCAwEAAaNZMFcwHQYDVR0O
+BBYEFEZYvgd9ltT45J9pZZvI1H3Y9TcNMDYGA1UdEQQvMC2CCWlkcC5rYi5zZYYg
+aHR0cHM6Ly9pZHAua2Iuc2UvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD
+ggEBAD8tdkE/VTtTrOo3QI39qM/1SXWLavHxcAezHjPfz0Ny+TUQndJAdrDmx3Tm
+VhYehCFaogq13zv9EmYqOFSvb6XIQ9lvktS3CXu84HTOhUPrfhZhEPCr4dagr7eb
+txzcsI8ROybUkjQ1ZuBhix5ep9zIvvKN9hwX/Lynif1DnPVpHSWkqJUC539yzp/q
+o5Zg08dqglDKEaVM5kaAFrGmDl58sfMfuB+F/C+1U89MeiFSqa6+dXci8swOmOhd
+1YITw59DTTD5FxnbnScRfjOE3tU7Iet2KI85BLnkTxbycEH+6dbmXQJrho5tSfS8
+hJ2GrICmdWsVIb88lmoEw8Hn/ew=
+                        </ds:X509Certificate>
+        </ds:X509Data>
+      </ds:KeyInfo>
+    </KeyDescriptor>
+    <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.kb.se/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+    <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kb.se/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.kb.se/idp/profile/SAML2/Redirect/SLO"/>
+    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.kb.se/idp/profile/SAML2/POST/SLO"/>
+    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.kb.se/idp/profile/SAML2/POST-SimpleSign/SLO"/>
+    <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kb.se/idp/profile/SAML2/SOAP/SLO"/>
     <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
     <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+    <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
     <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.kb.se/idp/profile/Shibboleth/SSO"/>
     <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.kb.se/idp/profile/SAML2/POST/SSO"/>
     <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.kb.se/idp/profile/SAML2/POST-SimpleSign/SSO"/>
     <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.kb.se/idp/profile/SAML2/Redirect/SSO"/>
   </IDPSSODescriptor>
-  <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+  <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
     <Extensions>
       <shibmd:Scope regexp="false">kb.se</shibmd:Scope>
     </Extensions>
-    <KeyDescriptor>
+    <KeyDescriptor use="signing">
       <ds:KeyInfo>
         <ds:X509Data>
           <ds:X509Certificate>
-MIIDEDCCAfigAwIBAgIVANtF15ZO6H7sUe14fLarTWN68i+6MA0GCSqGSIb3DQEB
-BQUAMBQxEjAQBgNVBAMTCWlkcC5rYi5zZTAeFw0xMjA1MTUwODE2MTZaFw0xMzA1
-MTUwODE2MTZaMBQxEjAQBgNVBAMTCWlkcC5rYi5zZTCCASIwDQYJKoZIhvcNAQEB
-BQADggEPADCCAQoCggEBAI5hTWyo9FvDJLFCHChRYSL1wZ7AsiL+RkBl+ath46EZ
-X4tcmMLg9T5qkveFqR5HQF8BK2+i3XcBmnXYqqCyYCUXc7oiKm83xrssgcP4xlAd
-L2H6rNBOaIG5sUqaU1nNb9BmL0Z8fJaamyX9+rqQSGj5JCGdwwR2CMi14bbJvz2W
-fQsGI8HHqTrAp/1RwG3dHsDXjQUHlaOAF3WWX+P/fYJepJPtHPVaurSllD00GQXf
-fswG4IBz+sdv/rId6ydAHMWc8M+oBVkVLzeOjcNOxrm6xpMjXhlsgJkQVcEVgP99
-MLY4FZ0RNVfzrSNB7WUbOnANFOyYEFdaZOAP6Ff6NS8CAwEAAaNZMFcwNgYDVR0R
-BC8wLYIJaWRwLmtiLnNlhiBodHRwczovL2lkcC5rYi5zZS9pZHAvc2hpYmJvbGV0
-aDAdBgNVHQ4EFgQUXOR57Uvaf5MNiogvbh+Pr2X35FUwDQYJKoZIhvcNAQEFBQAD
-ggEBABf3IMAt91LKUJoNU2VoSaHa+JYfjUkJp29lO1+GacoPrsbMkt4f09ALaqUB
-D3uTAP8IYWyxboESqHNXmk+rFKIYS4j1n6nx+Nomqs4bcY5qUcXOjTEUSKj67D3A
-eqmzb8ICVXHuejQqf1qA0nxSmDqO4ci13W7pF8Sy15J6WY+gi/qvwQLuCE7zD3qM
-FgBz0aBdSFpgIPo6Y7PLEyfutclknp+AE4S/Mzkxyrl72hoyWoct6fPuRVfROFxN
-eXhXEiHIleIlDkOMy3mgyjg2l2azS/K4Um12iEbCxONc8UvQipy2nzJ6XT8qp483
-HoPbenzIMS3KvKqUl64+5qwAZhM=
-
-                    </ds:X509Certificate>
+MIIDDzCCAfegAwIBAgIUVlpEkwM6W7NogVNrIcnSovJJzLowDQYJKoZIhvcNAQEL
+BQAwFDESMBAGA1UEAwwJaWRwLmtiLnNlMB4XDTE1MDgxMDEyNTczOVoXDTM1MDgx
+MDEyNTczOVowFDESMBAGA1UEAwwJaWRwLmtiLnNlMIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEAniN/W+xmhOb6fRxlZzpuExUrXC3MOToI7n1LyH0G2Nhj
+N1yHX8t0HXrN/7yEpfnRfQyoPdFfykbk3m1FisbG9Hb2lKIQgHg/HCeUy8ZjPrv0
+Udm61gDLmAmM3XFlAuTai1VaWM2bZ5ryAj1d0g0D4mhYOX3oX5AkUIsI6paK65Fp
+qIMmjy68mdc4YU46zBMqUDh0XE8QMlTHWn7LGaN++Jzplkb0endf+IHnmHWUp/Sf
+WjZPZoE9QsFiCBwc8QvKq5FHfz46Vmyq15D9SVHB3fTFYf4w0TW55c8pjj85kkIY
+ueiez00hZyTVxSqZseuM9rHRCxB76yEMRgZUJHFKMQIDAQABo1kwVzAdBgNVHQ4E
+FgQUAsbWuxVaIA5eRCHaEyQTzc49AkEwNgYDVR0RBC8wLYIJaWRwLmtiLnNlhiBo
+dHRwczovL2lkcC5rYi5zZS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC
+AQEAWYpAjS5HZumHRA88Gn3l+NynYPYJ59NMte+zxhacisAzB1JCX+zkGXnkoZD6
+rocz8f+oNT/MZ03dpunXKja7dg4YCQD0u1ZN4EhL7CC/FF8MGnGx7jhWg2ZlmcmP
+U4crVcymICV4t5NhPK2/UPQK542Nb8fuOGFwzHKr69JRojgxsf4T/Z8Na0/nLdza
+IEE+xgp+RP9KZExoKSW1kFj73DtXdGIH3JR9kqnuoXB0SfodVn/VDwycz1Z/O0yN
+4A8qH0ICOY7dpFmIlqG3zQt22utADnEPw//MMGt+jPcOmt2oc93fANBuL4Wu3lxM
+6plirV23s6E7Nr/N8VPwy4+Miw==
+                        </ds:X509Certificate>
         </ds:X509Data>
       </ds:KeyInfo>
     </KeyDescriptor>
-    <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.kb.se:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
-    <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kb.se:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
-    <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
-    <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+    <KeyDescriptor use="signing">
+      <ds:KeyInfo>
+        <ds:X509Data>
+          <ds:X509Certificate>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+                        </ds:X509Certificate>
+        </ds:X509Data>
+      </ds:KeyInfo>
+    </KeyDescriptor>
+    <KeyDescriptor use="encryption">
+      <ds:KeyInfo>
+        <ds:X509Data>
+          <ds:X509Certificate>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+                        </ds:X509Certificate>
+        </ds:X509Data>
+      </ds:KeyInfo>
+    </KeyDescriptor>
+    <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.kb.se/idp/profile/SAML1/SOAP/AttributeQuery"/>
   </AttributeAuthorityDescriptor>
   <Organization>
     <OrganizationName xml:lang="en">KB</OrganizationName>
     <OrganizationDisplayName xml:lang="sv">Kungliga biblioteket</OrganizationDisplayName>
     <OrganizationDisplayName xml:lang="en">National Library of Sweden</OrganizationDisplayName>
-    <OrganizationURL xml:lang="en">http://kb.se</OrganizationURL>
+    <OrganizationURL xml:lang="en">http://www.kb.se</OrganizationURL>
   </Organization>
   <ContactPerson contactType="administrative">
     <Company>National Library of Sweden</Company>
-- 
cgit v1.2.3