blob: bacf4a7b0d431dd14513ac8b63b9fcc7e67148d3 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://client200-180.its.umu.se/shibboleth">
<md:Extensions>
<mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2020-07-06T11:05:03Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
<mdattr:EntityAttributes>
<samla:Attribute NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
<samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
</samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://client200-180.its.umu.se/Shibboleth.sso/Login"/>
<idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://client200-180.its.umu.se/Shibboleth.sso/Login" index="1"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://client200-180.its.umu.se/Shibboleth.sso/DS/swamid"/>
<idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://client200-180.its.umu.se/Shibboleth.sso/DS/swamid" index="2"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://client200-180.its.umu.se/Shibboleth.sso/eduid"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://client200-180.its.umu.se/Shibboleth.sso/adfs"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://client200-180.its.umu.se/Shibboleth.sso/refeds"/>
<mdui:UIInfo>
<mdui:DisplayName xml:lang="sv">Utvecklarmaskin på ITS, Umeå universitet</mdui:DisplayName>
<mdui:DisplayName xml:lang="en">Development workstation at ITS, Umea University</mdui:DisplayName>
<mdui:Description xml:lang="sv">Utveckling av främst Refeds MFA med ADFS</mdui:Description>
<mdui:Description xml:lang="en">Development of Refeds MFA with ADFS</mdui:Description>
<mdui:PrivacyStatementURL xml:lang="en">https://administrationsverktyg.umu.se/privacy/?system=https://client200-180.its.umu.se/shibboleth&lang=en</mdui:PrivacyStatementURL>
<mdui:PrivacyStatementURL xml:lang="sv">https://administrationsverktyg.umu.se/privacy/?system=https://client200-180.its.umu.se/shibboleth&lang=sv</mdui:PrivacyStatementURL>
<mdui:InformationURL xml:lang="sv">https://administrationsverktyg.umu.se/privacy/Information?system=https://client200-180.its.umu.se/shibboleth&lang=sv</mdui:InformationURL>
<mdui:InformationURL xml:lang="en">https://administrationsverktyg.umu.se/privacy/Information?system=https://client200-180.its.umu.se/shibboleth&lang=en</mdui:InformationURL>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor>
<ds:KeyInfo>
<ds:X509Data>
<ds:X509Certificate>MIIGHjCCBAagAwIBAgIJAI6NRnlHCRpSMA0GCSqGSIb3DQEBCwUAMIGjMQswCQYD
VQQGEwJTRTEVMBMGA1UECAwMVmFzdGVyYm90dGVuMQ0wCwYDVQQHDARVbWVhMRgw
FgYDVQQKDA9VbWVhIFVuaXZlcnNpdHkxDDAKBgNVBAsMA0lUUzEhMB8GA1UEAwwY
Y2xpZW50MjAwLTE4MC5pdHMudW11LnNlMSMwIQYJKoZIhvcNAQkBFhR0b21teS5s
YXJzc29uQHVtdS5zZTAeFw0yMzA0MjAwNjMwMTlaFw0zMzA0MTcwNjMwMTlaMIGj
MQswCQYDVQQGEwJTRTEVMBMGA1UECAwMVmFzdGVyYm90dGVuMQ0wCwYDVQQHDARV
bWVhMRgwFgYDVQQKDA9VbWVhIFVuaXZlcnNpdHkxDDAKBgNVBAsMA0lUUzEhMB8G
A1UEAwwYY2xpZW50MjAwLTE4MC5pdHMudW11LnNlMSMwIQYJKoZIhvcNAQkBFhR0
b21teS5sYXJzc29uQHVtdS5zZTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoC
ggIBAN1XL3lA6qZvacNHtywgARQP56XL6LuUHh6yf3oEjnYc7PzeaYECmQfX15Yu
uWDoAGK5eha1Ol4AA5A76+o4DbDcb0BHI0PdBAI9dGZeVPFWhJYcm9ZH1iWidyCD
J13qxQhx/UZ/LzXkZ1J3/7Ri8f0xcTrK8cGxFw6Tcxdb5/VO/112r7gLMNyX5o4a
/ZqJRq/Jtv7Mm4a+8IJ2jPVQ55UsxDQlJ/4pCAXQghJoNgBPeO5WVi2hiqc7UjpK
VlcE90NGoCLejfSq7gFnFXBGTxP2yH40JT4EL6CWvW0m+UAA7ZYnDN3u+cRlmOBy
D8yWrI/Qw4RnSJEU00kK3j4bJG6/ohCPMjco+moeGVJukqRLsA4qVByb7WfX0ZFG
Op5e9iQA9NDefx837UIfqQxO+/B8qkjlsjXM4pqOUVYxg+K+HTcKIW4q1JgVXjpC
AqNiIMB7lf/5ms1Ctsllic8pDR9e0uBKgKJ1/4FKPmX4B+V3/OII4WyobpZ+mPN1
wvz3ZfyouFisXj/aH+NSNu0j1GYnMWhsxrUjQOMYxJ6atC5ttANP/+yZeF6MjK9L
6r/+bVSvT4lNn8OmP+lFQ7iyXPP5DumbF9ouVGBoT0PKSs9edHB5q+Ba9RhPnFFM
KSu7sMDFyQnV0eZ8Nz7V+yb1whjm/mgI/Y12FtkzVY9e8dYrAgMBAAGjUzBRMB0G
A1UdDgQWBBSTU9HU5OoAuvtXAaPjBvlhaPVKEjAfBgNVHSMEGDAWgBSTU9HU5OoA
uvtXAaPjBvlhaPVKEjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IC
AQBSCHG6rVB3AfAm9YT7/3yOy8lqfva+dwL+zZuIqH1EwwL+Z760Ymu1ChyECyaw
X0+NqIhNXgrU3ORAHQbRujclGK6n1BaBV8g0HF1Zm/muUdBa/Cofvfn1D/UMusx6
9dPDp4AFbAOA5LtK/3vJ4EOsWB2EyNFXfyXYlX/4JxvOCoM654TtoEm7F2z3jltm
fweOKnGPP4DN6e8jyJmKoG6ZZ0X+xjvRg/0CnWPGCj95I1uVtnUnm1VyHsd94wwI
0MOfCiMBzAUC5BbiSyFHAlyxivsJdN5WUnUG1usnBGl2UfNngBnb0snbNrze/0lc
Ln22b0KVOytFT9QrYXDhfOi7FWDQb0ZyT55++PJeiA37qu0TfWc5woGk3r8LojDO
oRG7lX6JxJbyk/MAdGqXKsvgMc0m+fnQxfOq5i14lS70gP/sQLof5+5HO2A0TgMA
ijBPuJXROf7DSO8S6F+RlKa3L8S8FsWiCemyQMf/adPFnve0JPA6ed0WN8+Zwbyk
LCAihQUGyCZnr5H7M/b2ekWhD8dtIPuCs1ww711RjlFo35rCcqfwBut3lIOQM0IY
QR591tyfRPOmPekU11U/VplSFsgPL9q87p1M36FhhPUyFumJkvEmbr0K3iJbO0ex
qscK/31PTSSGo33JG7zIlKjxqKlzxLZ8wBCJhQxcd/u3yw==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor>
<ds:KeyInfo>
<ds:KeyName>client200-180.its.umu.se</ds:KeyName>
<ds:X509Data>
<ds:X509SubjectName>emailAddress=tommy.larsson@umu.se,CN=client200-180.its.umu.se,OU=Its,O=Umea University,L=umea,ST=Vasterbotten,C=SE</ds:X509SubjectName>
<ds:X509Certificate>MIIEHjCCAwagAwIBAgIJAO+6bhtdEJDzMA0GCSqGSIb3DQEBCwUAMIGjMQswCQYD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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://client200-180.its.umu.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://client200-180.its.umu.se/Shibboleth.sso/SLO/SOAP"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://client200-180.its.umu.se/Shibboleth.sso/SLO/Redirect"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://client200-180.its.umu.se/Shibboleth.sso/SLO/POST"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://client200-180.its.umu.se/Shibboleth.sso/SLO/Artifact"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://client200-180.its.umu.se/Shibboleth.sso/SAML2/POST" index="1"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://client200-180.its.umu.se/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://client200-180.its.umu.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://client200-180.its.umu.se/Shibboleth.sso/SAML2/ECP" index="4"/>
<md:AttributeConsumingService index="1">
<md:ServiceName xml:lang="en">Test environment for user accounts at Umea University</md:ServiceName>
<md:ServiceName xml:lang="sv">Testmiljö för administration av användarkonton vid Umeå universitet</md:ServiceName>
<md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
</md:AttributeConsumingService>
</md:SPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="sv">Umeå universitet</md:OrganizationName>
<md:OrganizationName xml:lang="en">Umea University</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="sv">Umeå universitet</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="en">Umea University</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="sv">https://www.umu.se</md:OrganizationURL>
<md:OrganizationURL xml:lang="en">https://www.umu.se/en/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="administrative">
<md:Company>Umeå University</md:Company>
<md:SurName>ITS datordrift</md:SurName>
<md:EmailAddress>mailto:datordrift@its.umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson contactType="technical">
<md:Company>Umeå University</md:Company>
<md:SurName>ITS datordrift</md:SurName>
<md:EmailAddress>mailto:datordrift@its.umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson contactType="support">
<md:Company>Umeå University</md:Company>
<md:SurName>ITS datordrift</md:SurName>
<md:EmailAddress>mailto:datordrift@its.umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
<md:GivenName>UmU Incident Response Team</md:GivenName>
<md:EmailAddress>mailto:abuse@umu.se</md:EmailAddress>
<md:TelephoneNumber>+46 90 786 6300</md:TelephoneNumber>
</md:ContactPerson>
</md:EntityDescriptor>
|