summaryrefslogtreecommitdiff
path: root/metadata/swamid-2.0/eduvpn.ite.kth.se-shibboleth.xml
blob: 611d224f987dbe704f9a94bb437b07edfd8cb144 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://eduvpn.ite.kth.se/shibboleth">
  <md:Extensions>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    <mdattr:EntityAttributes>
      <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
        <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
      </samla:Attribute>
    </mdattr:EntityAttributes>
    <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2024-05-31T10:56:51Z">
      <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
    </mdrpi:RegistrationInfo>
  </md:Extensions>
  <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:Extensions>
      <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/Login"/>
      <mdui:UIInfo>
        <mdui:Description xml:lang="en">eduvpn</mdui:Description>
        <mdui:Description xml:lang="sv">eduvpn</mdui:Description>
        <mdui:DisplayName xml:lang="en">eduvpn</mdui:DisplayName>
        <mdui:DisplayName xml:lang="sv">eduvpn</mdui:DisplayName>
        <mdui:InformationURL xml:lang="en">https://www.lan.kth.se/eduvpn/privacy_policy.html</mdui:InformationURL>
        <mdui:InformationURL xml:lang="sv">https://www.lan.kth.se/eduvpn/privacy_policy.html</mdui:InformationURL>
        <mdui:Keywords xml:lang="en">eduvpn</mdui:Keywords>
        <mdui:Keywords xml:lang="sv">eduvpn</mdui:Keywords>
        <mdui:PrivacyStatementURL xml:lang="en">https://www.lan.kth.se/eduvpn/privacy_policy.html</mdui:PrivacyStatementURL>
        <mdui:PrivacyStatementURL xml:lang="sv">https://www.lan.kth.se/eduvpn/privacy_policy.html</mdui:PrivacyStatementURL>
      </mdui:UIInfo>
    </md:Extensions>
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo>
        <ds:KeyName>eduvpn.ite.kth.se</ds:KeyName>
        <ds:X509Data>
          <ds:X509SubjectName>CN=eduvpn.ite.kth.se</ds:X509SubjectName>
          <ds:X509Certificate>MIIFBTCCAu2gAwIBAgIUZp1uV/IjlTS6ECJdXk3b/LKZIgcwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo>
        <ds:KeyName>eduvpn.ite.kth.se</ds:KeyName>
        <ds:X509Data>
          <ds:X509SubjectName>CN=eduvpn.ite.kth.se</ds:X509SubjectName>
          <ds:X509Certificate>MIIFBTCCAu2gAwIBAgIUMYKnhZKQBCyqOdtRyV2taeNDtr4wDQYJKoZIhvcNAQEL
BQAwHDEaMBgGA1UEAxMRZWR1dnBuLml0ZS5rdGguc2UwHhcNMjQwNTMxMTAyNjM4
WhcNMzQwNTI5MTAyNjM4WjAcMRowGAYDVQQDExFlZHV2cG4uaXRlLmt0aC5zZTCC
AiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBANh5xYLL2tqrNSWknbjjHcqA
rbsPnx6J4glLyPacODf8HTaAO4Pl0zmAt6vroB069t0CY85MEgO88QEKwVKgBrHa
yUxpQco/SNDDs1V9gBSNTcc3A2B+ITYSsCvjIuC+ikWUjEKejd1bjzi0Fboa2QvA
WWPbT/Vq+8yN9dJM6Q2WKelQV5NoNxUrtZe1LbTsmt/xMtehMe71MZcXKqcOvgI8
bky+l8jJSrD1t4DGWzmb9PXx+iQgL4oxrC4ObMgDDF5KKmPU7975G0t26+k1vXle
9i1SIoL4OLRVUi9iEOr5Ejnl2ohiH3JsZxuY4CjixpPC5tII0CUJ29VCBhkAvxEY
SxpEb7zgnvGLf0AG3xV0iqM4Apfn8upc6CLItm8Uq8PsIXrAsePaomKwuTAuQLLe
fe48gLXPJS8Nd77o12mSjyMM93mHVI5/7M5iQkiNmmkLRYwJCwrkHf2vnhCqFWqj
vtRTkWjt7hf7zZf6+Zjt6rG2ZVi6kuzAy4UPK+sRMUl1S2MxXxqXZUuT0J2vt9Iu
qDMi8yFnH07ME+nu1LjDVRMBmRiJkSAkHdzC4+JbzbNJxn51q6Vd1KsXTjLsaY+F
u+uLzCDZPuXc81G7bPZePFvmYHBxuSHq1HlXZCpePemG+plrtQjtypuqf3AHyPhy
Qyoi29KjVoPJ7dBIk81xAgMBAAGjPzA9MBwGA1UdEQQVMBOCEWVkdXZwbi5pdGUu
a3RoLnNlMB0GA1UdDgQWBBS40/qIpYmeFKiwFCgUFVteZGItbjANBgkqhkiG9w0B
AQsFAAOCAgEACUZr3Qbujgjon2KQDOGkkc9ebsFwIlu+NjOHgkhVNZU768S8zwsx
s8soSbiRPMCdRtXM5aMMK0fIf01KNyWzIMTPqhD07esScSiyeuR0HveubZBzbsKi
FhLnaPvIg/wD8JIEzaosTiyANt/rTYukz0Gl3IwojQBBhXMitVJ8g4DAGCNoD7bi
wa76Cn7GR2mOGI+IUjAES1mRBOwvqJ05qmTV2v8bZervwVHVfaiQ/SwC6jb8zDCU
rE37IxQrlrnNEPx3w7a2ta3tkXlI8vVyU1rMsazfmpQzNSNrblMoIYyl+xV135tD
eduJvjK96sT6u2TS8XJonKCrjbZ6t8tvXMocHsIxpBCzz4DyZn7B7HUVKmikrnGe
OZ2xYrBsmYuglP0oZ51mmF+Z/FWSyEDM2rJC/8xB06vUAQWow3K0Mwz/2g5TsaCp
wDLxttqN4i/poLO1wvHCUtuEoCIK6lJ4tM/H8kt16sDRL+Xoe51hyE/63eWMQ4po
aW2nL8GTbuPWOFJem7Mb1PZ+3Y/i8u1h+EHVXLnrHsfLvGP10xXRn20tf6iMZ0RT
d8osI3Q/IdVsIg+FfsdOImkoOXY7Zn66Y5rgak072Pt5wlQTYGdd1oByVcjYAIDV
eolxMZDzFM5bxEeD7lirZCnP+sna5UHpaREL2aX0BKOI+0sMdCgOk+0=</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
    </md:KeyDescriptor>
    <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SLO/SOAP"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SLO/Redirect"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SLO/POST"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SLO/Artifact"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SAML2/POST" index="1"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://eduvpn.ite.kth.se/Shibboleth.sso/SAML2/ECP" index="4"/>
    <md:AttributeConsumingService index="1">
      <md:ServiceName xml:lang="en">eduvpn</md:ServiceName>
      <md:ServiceName xml:lang="sv">eduvpn</md:ServiceName>
      <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
    </md:AttributeConsumingService>
  </md:SPSSODescriptor>
  <md:Organization>
    <md:OrganizationName xml:lang="en">Royal Institute of Technology</md:OrganizationName>
    <md:OrganizationName xml:lang="sv">Kungliga Tekniska högskolan</md:OrganizationName>
    <md:OrganizationDisplayName xml:lang="en">Royal Institute of Technology</md:OrganizationDisplayName>
    <md:OrganizationDisplayName xml:lang="sv">Kungliga Tekniska högskolan</md:OrganizationDisplayName>
    <md:OrganizationURL xml:lang="en">https://www.kth.se/en</md:OrganizationURL>
    <md:OrganizationURL xml:lang="sv">https://www.kth.se/</md:OrganizationURL>
  </md:Organization>
  <md:ContactPerson contactType="administrative">
    <md:Company>Kungliga Tekniska högskolan</md:Company>
    <md:GivenName>Björn</md:GivenName>
    <md:SurName>Larsson</md:SurName>
    <md:EmailAddress>mailto:bln@kth.se</md:EmailAddress>
    <md:TelephoneNumber>+4687906000</md:TelephoneNumber>
  </md:ContactPerson>
  <md:ContactPerson contactType="technical">
    <md:Company>Kungliga Tekniska högskolan</md:Company>
    <md:GivenName>Björn</md:GivenName>
    <md:SurName>Larsson</md:SurName>
    <md:EmailAddress>mailto:bln@kth.se</md:EmailAddress>
    <md:TelephoneNumber>+4687906000</md:TelephoneNumber>
  </md:ContactPerson>
  <md:ContactPerson contactType="support">
    <md:Company>Kungliga Tekniska högskolan</md:Company>
    <md:GivenName>IT-Support</md:GivenName>
    <md:EmailAddress>mailto:it-support@kth.se</md:EmailAddress>
    <md:TelephoneNumber>+46 8 790 6600</md:TelephoneNumber>
  </md:ContactPerson>
  <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
    <md:GivenName>Björn</md:GivenName>
    <md:SurName>Larsson</md:SurName>
    <md:EmailAddress>mailto:bln@kth.se</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>