1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://client200-151.its.umu.se/shibboleth">
<md:Extensions>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
<mdattr:EntityAttributes>
<samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
<samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
<samla:AttributeValue>https://myacademicid.org/entity-categories/esi</samla:AttributeValue>
<samla:AttributeValue>http://id.elegnamnden.se/ec/1.0/eidas-naturalperson</samla:AttributeValue>
<samla:AttributeValue>http://id.elegnamnden.se/ec/1.0/loa3-pnr</samla:AttributeValue>
<samla:AttributeValue>http://id.elegnamnden.se/st/1.0/public-sector-sp</samla:AttributeValue>
<samla:AttributeValue>http://id.swedenconnect.se/contract/sc/eid-choice-2017</samla:AttributeValue>
<samla:AttributeValue>http://id.swedenconnect.se/contract/Sunet/BankID-idp</samla:AttributeValue>
</samla:Attribute>
</mdattr:EntityAttributes>
<mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2024-05-29T13:14:35Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
</md:Extensions>
<md:SPSSODescriptor AuthnRequestsSigned="1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://client200-151.its.umu.se/Shibboleth.sso/Login"/>
<idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://client200-151.its.umu.se/Shibboleth.sso/Login" index="1"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://client200-151.its.umu.se/Shibboleth.sso/umu"/>
<mdui:UIInfo>
<mdui:DisplayName xml:lang="sv">Utvecklarmaskin på ITS, Umeå universitet</mdui:DisplayName>
<mdui:DisplayName xml:lang="en">Development workstation at ITS, Umea University</mdui:DisplayName>
<mdui:Description xml:lang="sv">Utveckling av främst Refeds MFA med ADFS</mdui:Description>
<mdui:Description xml:lang="en">Development of Refeds MFA with ADFS</mdui:Description>
<mdui:Logo xml:lang="sv" height="64" width="292">https://www.umu.se/Static/img/umu-logo-se.png</mdui:Logo>
<mdui:Logo xml:lang="en" height="64" width="270">https://www.umu.se/Static/img/umu-logo-en.png</mdui:Logo>
<mdui:PrivacyStatementURL xml:lang="en">https://administrationsverktyg.umu.se/privacy/?system=https://client200-151.its.umu.se/shibboleth&lang=en</mdui:PrivacyStatementURL>
<mdui:PrivacyStatementURL xml:lang="sv">https://administrationsverktyg.umu.se/privacy/?system=https://client200-151.its.umu.se/shibboleth&lang=sv</mdui:PrivacyStatementURL>
<mdui:InformationURL xml:lang="sv">https://administrationsverktyg.umu.se/privacy/Information?system=https://client200-151.its.umu.se/shibboleth&lang=sv</mdui:InformationURL>
<mdui:InformationURL xml:lang="en">https://administrationsverktyg.umu.se/privacy/Information?system=https://client200-151.its.umu.se/shibboleth&lang=en</mdui:InformationURL>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo>
<ds:KeyName>client200-151.its.umu.se</ds:KeyName>
<ds:X509Data>
<ds:X509SubjectName>emailAddress=tommy.larsson@umu.se,CN=client200-151.its.umu.se,OU=its,O=Umea universitet,L=umea,ST=Vasterbotten,C=SE</ds:X509SubjectName>
<ds:X509Certificate>MIIEKzCCAxOgAwIBAgIUZooFEX7gGGh1faTJqxCJSE6FHtMwDQYJKoZIhvcNAQEL
BQAwgaQxCzAJBgNVBAYTAlNFMRUwEwYDVQQIDAxWYXN0ZXJib3R0ZW4xDTALBgNV
BAcMBHVtZWExGTAXBgNVBAoMEFVtZWEgdW5pdmVyc2l0ZXQxDDAKBgNVBAsMA2l0
czEhMB8GA1UEAwwYY2xpZW50MjAwLTE1MS5pdHMudW11LnNlMSMwIQYJKoZIhvcN
AQkBFhR0b21teS5sYXJzc29uQHVtdS5zZTAeFw0yNDA0MTcxMDE3MDVaFw0zNDA0
MTUxMDE3MDVaMIGkMQswCQYDVQQGEwJTRTEVMBMGA1UECAwMVmFzdGVyYm90dGVu
MQ0wCwYDVQQHDAR1bWVhMRkwFwYDVQQKDBBVbWVhIHVuaXZlcnNpdGV0MQwwCgYD
VQQLDANpdHMxITAfBgNVBAMMGGNsaWVudDIwMC0xNTEuaXRzLnVtdS5zZTEjMCEG
CSqGSIb3DQEJARYUdG9tbXkubGFyc3NvbkB1bXUuc2UwggEiMA0GCSqGSIb3DQEB
AQUAA4IBDwAwggEKAoIBAQDDmDiO1vtLarPi2mRCClqs5PPlwjc+zqhf9X578mPI
RcQeysjChoa7jECAidsc2omvYVnE0KdPBWQ5Jnq/X/LSjq98nbvX3PSTZq/VCcGI
MNyVlvtE/rh/n1yRcTc4G+Cr+He8dQGgolStJNzb03jJFnC72NrtpwrMbmoYbrNj
0G2pEa2hHXUaTIG6Ez1nfxmVC2oHX/B9uYNtz5nJOSJQ4gW5UVykkOCHgFZc4nyf
d3aE1R9M4xMVGdhlqlh3k9hUy6HVCLeeoA2ZTAgnj9JK877hg3q6cge1HxZqR4Sx
1WDwuraRC9hWpT3gEin9YN3Ouw+JyytlvSr+7qIRiGczAgMBAAGjUzBRMB0GA1Ud
DgQWBBQH2fmNHGtou1fPj5wyoP6RjYh/cjAfBgNVHSMEGDAWgBQH2fmNHGtou1fP
j5wyoP6RjYh/cjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBn
tYFRDJN102lj6EfSfszWs803VMiwKFPG4Wt2gnBoZQKofBvKwAky7nl31Idy8KBL
vPzNbNx4W72LtkLGJpGXEvaK/HXn8gzMcM1qpmvJuqSVKPV3sz9z7DeaSG5896ua
9yvL3rYDIA56teaLLMZ1HqvZhJUzBhdeoI8BV5oh84ljOTlVXLPyspZzsQCfwrnN
bq1zv+cIhYAVd0+A806eXTaef/uTpi1Wz3FoCYnNwZh6KAGsc+T+hj1Wpdw3nVNb
3kOdna3HsntkmKOggSjmK0IjYFXQP6OfrmJYGBGjoPEiSQdJ2DYc33DtKHpEZtX8
Pt9H053emiyaKt4VEQLl</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo>
<ds:KeyName>client200-151.its.umu.se</ds:KeyName>
<ds:X509Data>
<ds:X509SubjectName>emailAddress=tommy.larsson@umu.se,CN=client200-151.its.umu.se,OU=its,O=Umea universitet,L=Umea,ST=Vasterbotten,C=SE</ds:X509SubjectName>
<ds:X509Certificate>MIIEKzCCAxOgAwIBAgIUTRv9nG93fbW08fQBpxE4bIHgNTYwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://client200-151.its.umu.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://client200-151.its.umu.se/Shibboleth.sso/SLO/SOAP"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://client200-151.its.umu.se/Shibboleth.sso/SLO/Redirect"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://client200-151.its.umu.se/Shibboleth.sso/SLO/POST"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://client200-151.its.umu.se/Shibboleth.sso/SLO/Artifact"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://client200-151.its.umu.se/Shibboleth.sso/SAML2/POST" index="1"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://client200-151.its.umu.se/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://client200-151.its.umu.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://client200-151.its.umu.se/Shibboleth.sso/SAML2/ECP" index="4"/>
<md:AttributeConsumingService index="1">
<md:ServiceName xml:lang="en">Test environment for user accounts at Umea University</md:ServiceName>
<md:ServiceName xml:lang="sv">Testmiljö för administration av användarkonton vid Umeå universitet</md:ServiceName>
<md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<md:RequestedAttribute FriendlyName="personalIdentityNumber" Name="urn:oid:1.2.752.29.4.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
</md:AttributeConsumingService>
</md:SPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="sv">Umeå universitet</md:OrganizationName>
<md:OrganizationName xml:lang="en">Umea University</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="sv">Umeå universitet</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="en">Umea University</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="sv">https://www.umu.se</md:OrganizationURL>
<md:OrganizationURL xml:lang="en">https://www.umu.se/en/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="administrative">
<md:Company>Umeå University</md:Company>
<md:SurName>ITS datordrift</md:SurName>
<md:EmailAddress>mailto:datordrift@its.umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson contactType="technical">
<md:Company>Umeå University</md:Company>
<md:SurName>ITS datordrift</md:SurName>
<md:EmailAddress>mailto:datordrift@its.umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson contactType="support">
<md:Company>Umeå University</md:Company>
<md:SurName>ITS datordrift</md:SurName>
<md:EmailAddress>mailto:datordrift@its.umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
<md:GivenName>UmU Incident Response Team</md:GivenName>
<md:EmailAddress>mailto:abuse@umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
</md:EntityDescriptor>
|