From b5d9224a2cdc779ce16b38e097071356f1b21df5 Mon Sep 17 00:00:00 2001
From: Björn Mattsson <Bjorn.Mattsson@bth.se>
Date: Fri, 3 Jul 2020 14:05:01 +0200
Subject: Resolves SWAMID-3135

---
 swamid-2.0/digkonto-test.ita.chalmers.se.xml | 115 +++++++++++++++++++++++++++
 swamid-sp-2.0.mxml                           |   1 +
 2 files changed, 116 insertions(+)
 create mode 100644 swamid-2.0/digkonto-test.ita.chalmers.se.xml

diff --git a/swamid-2.0/digkonto-test.ita.chalmers.se.xml b/swamid-2.0/digkonto-test.ita.chalmers.se.xml
new file mode 100644
index 00000000..970fae54
--- /dev/null
+++ b/swamid-2.0/digkonto-test.ita.chalmers.se.xml
@@ -0,0 +1,115 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://digkonto-test.ita.chalmers.se">
+  <md:Extensions>
+    <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/">
+      <mdrpi:RegistrationPolicy xml:lang="en">https://www.sunet.se/wp-content/uploads/2016/08/SWAMID-Metadata-Registration-Practice-Statement-v2.pdf</mdrpi:RegistrationPolicy>
+    </mdrpi:RegistrationInfo>
+    <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+      <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
+        <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
+        <samla:AttributeValue>http://www.swamid.se/category/sfs-1993-1153</samla:AttributeValue>
+      </samla:Attribute>
+    </mdattr:EntityAttributes>
+    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
+    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
+    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
+    <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
+    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
+  </md:Extensions>
+  <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+    <md:Extensions>
+      <mdui:UIInfo>
+        <mdui:DisplayName xml:lang="sv">Kontoaktivering Chalmers</mdui:DisplayName>
+        <mdui:DisplayName xml:lang="en">Account activation Chalmers</mdui:DisplayName>
+        <mdui:Description xml:lang="sv">Kontoaktiveringstjänst hos Chalmers</mdui:Description>
+        <mdui:Description xml:lang="en">Account activation service at Chalmers</mdui:Description>
+        <mdui:PrivacyStatementURL xml:lang="sv">https://student.portal.chalmers.se/sv/chalmersstudier/styrdokument/Sidor/behandling-personuppgifter.aspx</mdui:PrivacyStatementURL>
+        <mdui:PrivacyStatementURL xml:lang="en">https://student.portal.chalmers.se/en/chalmersstudies/policy-documents/Pages/processing-personal-data.aspx</mdui:PrivacyStatementURL>
+      </mdui:UIInfo>
+      <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/Login/Chalmers"/>
+      <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/Login/Chalmers-test"/>
+      <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/DS/Login"/>
+      <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/DS/Login" index="1"/>
+    </md:Extensions>
+    <md:KeyDescriptor>
+      <ds:KeyInfo>
+        <ds:KeyName>digkonto-test.net.chalmers.se</ds:KeyName>
+        <ds:X509Data>
+          <ds:X509SubjectName>CN=digkonto-test.net.chalmers.se</ds:X509SubjectName>
+          <ds:X509Certificate>MIIEKTCCApGgAwIBAgIUIHH09XVX4OEP/em0Stm7TE47BMMwDQYJKoZIhvcNAQEL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+</ds:X509Certificate>
+        </ds:X509Data>
+      </ds:KeyInfo>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
+      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
+    </md:KeyDescriptor>
+    <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
+    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/SLO/SOAP"/>
+    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/SLO/Redirect"/>
+    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/SLO/POST"/>
+    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/SLO/Artifact"/>
+    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://digkonto-test.ita.chalmers.se/Shibboleth.sso/SAML2/POST" index="1"/>
+    <md:AttributeConsumingService index="1">
+      <md:ServiceName xml:lang="en">Account activation</md:ServiceName>
+      <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+      <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+      <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+      <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+      <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+    </md:AttributeConsumingService>
+  </md:SPSSODescriptor>
+  <md:Organization>
+    <md:OrganizationName xml:lang="en">Chalmers</md:OrganizationName>
+    <md:OrganizationDisplayName xml:lang="en">Chalmers</md:OrganizationDisplayName>
+    <md:OrganizationURL xml:lang="en">https://www.chalmers.se</md:OrganizationURL>
+  </md:Organization>
+  <md:ContactPerson contactType="technical">
+    <md:GivenName>System</md:GivenName>
+    <md:SurName>IT-avdelningen</md:SurName>
+    <md:EmailAddress>mailto:support@chalmers.se</md:EmailAddress>
+  </md:ContactPerson>
+  <md:ContactPerson contactType="support">
+    <md:SurName>IT-avdelningen</md:SurName>
+    <md:EmailAddress>mailto:support@chalmers.se</md:EmailAddress>
+  </md:ContactPerson>
+</md:EntityDescriptor>
diff --git a/swamid-sp-2.0.mxml b/swamid-sp-2.0.mxml
index c472744e..42446ff4 100644
--- a/swamid-sp-2.0.mxml
+++ b/swamid-sp-2.0.mxml
@@ -632,4 +632,5 @@
   <xi:include href="swamid-2.0/lis.test.ladok.se-shibboleth.xml"/>
   <xi:include href="swamid-2.0/www.itslearning.com-integrations-samlmetadata-saml2v2-extensions-2.xml"/>
   <xi:include href="swamid-2.0/edusign.ju.se-shibboleth.xml"/>
+  <xi:include href="swamid-2.0/digkonto-test.ita.chalmers.se.xml"/>
 </md:EntitiesDescriptor>
-- 
cgit v1.2.3