summaryrefslogtreecommitdiff
path: root/metadata/swamid-2.0/jenkins.led.ladok.se-securityRealm-finishLogin.xml
blob: 01ecf1db1d818d52ba4d060e919d15fc41c85ff6 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://jenkins.led.ladok.se/securityRealm/finishLogin">
  <md:Extensions>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#hmac-sha1"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2020-03-06T11:33:35Z">
      <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
    </mdrpi:RegistrationInfo>
    <mdattr:EntityAttributes>
      <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
        <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
        <samla:AttributeValue>https://refeds.org/category/personalized</samla:AttributeValue>
      </samla:Attribute>
      <samla:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
        <samla:AttributeValue>https://refeds.org/sirtfi</samla:AttributeValue>
        <samla:AttributeValue>https://refeds.org/sirtfi2</samla:AttributeValue>
      </samla:Attribute>
    </mdattr:EntityAttributes>
  </md:Extensions>
  <md:SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:Extensions>
      <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://jenkins.led.ladok.se/securityRealm/finishLogin"/>
      <mdui:UIInfo>
        <mdui:Description xml:lang="en">Login to LED Jenkins</mdui:Description>
        <mdui:Description xml:lang="sv">Inloggning mot LED Jenkins</mdui:Description>
        <mdui:DisplayName xml:lang="en">LED Jenkins login</mdui:DisplayName>
        <mdui:DisplayName xml:lang="sv">Inloggning LED Jenkins</mdui:DisplayName>
        <mdui:InformationURL xml:lang="en">https://ladok3.its.umu.se/privacy-policy/index-en.html</mdui:InformationURL>
        <mdui:InformationURL xml:lang="sv">https://ladok3.its.umu.se/privacy-policy/</mdui:InformationURL>
        <mdui:PrivacyStatementURL xml:lang="en">https://ladok3.its.umu.se/privacy-policy/index-en.html</mdui:PrivacyStatementURL>
        <mdui:PrivacyStatementURL xml:lang="sv">https://ladok3.its.umu.se/privacy-policy/</mdui:PrivacyStatementURL>
      </mdui:UIInfo>
    </md:Extensions>
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo>
        <ds:X509Data>
          <ds:X509Certificate>MIID8TCCAtmgAwIBAgIJAJ5hciT48zCDMA0GCSqGSIb3DQEBCwUAMIGOMQswCQYDVQQGEwJTRTEL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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo>
        <ds:X509Data>
          <ds:X509Certificate>MIID8TCCAtmgAwIBAgIJAJ5hciT48zCDMA0GCSqGSIb3DQEBCwUAMIGOMQswCQYDVQQGEwJTRTEL
MAkGA1UECAwCQUMxDTALBgNVBAcMBFVtZWExDDAKBgNVBAoMA0lUUzEMMAoGA1UECwwDSVRTMR0w
GwYDVQQDDBRqZW5raW5zLmxlZC5sYWRvay5zZTEoMCYGCSqGSIb3DQEJARYZYW5kZXJzLnNpZ2Zy
aWRzc29uQHVtdS5zZTAeFw0yMDAzMDUxMjQ4MDRaFw0zMDAzMDMxMjQ4MDRaMIGOMQswCQYDVQQG
EwJTRTELMAkGA1UECAwCQUMxDTALBgNVBAcMBFVtZWExDDAKBgNVBAoMA0lUUzEMMAoGA1UECwwD
SVRTMR0wGwYDVQQDDBRqZW5raW5zLmxlZC5sYWRvay5zZTEoMCYGCSqGSIb3DQEJARYZYW5kZXJz
LnNpZ2ZyaWRzc29uQHVtdS5zZTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOQwj8qU
iehb4TCxZo6ciAwopW9llkAz3Dz3LO343tuBUX1ABpEwB3Nw5pDmQvk8C11FOVe+9Eo6Lp0TpmnP
Z1uRnRmlloOYmcy2E63pVvHhCIBo9D+3DE5kGku3N5PKQ2HLvV+EYJYUUggJOeYkr7vAUcp1b/j8
Mrg21Qz0wwid3GJFsUgB0m2qPfE3lyqsW4eWocUqPDTlJeXo+9a+Nse47pf+61LraPfTOl41/Zwq
+b59tRvrPiKofWl7cWeJrPErOO/e5iNuQj90/WXgDLbop+6XIylgOA3nDCBV9I0MegyMUmoI6jy1
TZmkp7gyjGuFDPnLFDbf2CpXEw8Xq9UCAwEAAaNQME4wHQYDVR0OBBYEFMTnbbcjWO41sms7N5JY
QY1tYjfHMB8GA1UdIwQYMBaAFMTnbbcjWO41sms7N5JYQY1tYjfHMAwGA1UdEwQFMAMBAf8wDQYJ
KoZIhvcNAQELBQADggEBAIUcjzXzKDkf8og/N/4QZJhVcKzBVMfbZIUUXOeLVRvXs6oOv7//SdXI
xIph1DvLkdpiUWarVKa2nz26L8OMXHcJPu1jgmhKLciFWO5ufZ8ioK9XsbZPwHDlPnCcwL67Tczj
PtTjZDgarUsC40g4hb3up8HWCU8ds3hhDniqc/K1xY4TwYk/JKmBLMb6GYoXP01+n6fScxNYcdbe
nGN9NfLMSl4v0IDPQU6IwM1j3UC+vGfUwHaK1T0xNFbrZ/kM2Tflyr3BPHqSUrAbolRZL2POl8u5
KnGw6CVwojyapKmEYuZvplqkdWyJyC61nA+Km8iYfly3/MQ+NfoAaeTtz7U=</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jenkins.led.ladok.se/securityRealm/finishLogin?logoutendpoint=true"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jenkins.led.ladok.se/securityRealm/finishLogin?logoutendpoint=true"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jenkins.led.ladok.se/securityRealm/finishLogin?logoutendpoint=true"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jenkins.led.ladok.se/securityRealm/finishLogin?logoutendpoint=true"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jenkins.led.ladok.se/securityRealm/finishLogin" index="0"/>
    <md:AttributeConsumingService index="1">
      <md:ServiceName xml:lang="en">LED Jenkins login</md:ServiceName>
      <md:ServiceName xml:lang="sv">Inloggning LED Jenkins</md:ServiceName>
      <md:RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
    </md:AttributeConsumingService>
  </md:SPSSODescriptor>
  <md:Organization>
    <md:OrganizationName xml:lang="en">Umea University</md:OrganizationName>
    <md:OrganizationName xml:lang="sv">Umeå universitet</md:OrganizationName>
    <md:OrganizationDisplayName xml:lang="en">Ladok Consortium</md:OrganizationDisplayName>
    <md:OrganizationDisplayName xml:lang="sv">Ladokkonsortiet</md:OrganizationDisplayName>
    <md:OrganizationURL xml:lang="en">https://ladokkonsortiet.se/</md:OrganizationURL>
    <md:OrganizationURL xml:lang="sv">https://ladokkonsortiet.se/</md:OrganizationURL>
  </md:Organization>
  <md:ContactPerson contactType="technical">
    <md:Company>ITS, Umeå universitet</md:Company>
    <md:GivenName>Ladok-supporten</md:GivenName>
    <md:EmailAddress>mailto:ladoksupport@its.umu.se</md:EmailAddress>
    <md:TelephoneNumber>+46907866600</md:TelephoneNumber>
  </md:ContactPerson>
  <md:ContactPerson contactType="support">
    <md:Company>ITS, Umeå universitet</md:Company>
    <md:GivenName>Ladok-supporten</md:GivenName>
    <md:EmailAddress>mailto:ladoksupport@its.umu.se</md:EmailAddress>
    <md:TelephoneNumber>+46907866600</md:TelephoneNumber>
  </md:ContactPerson>
  <md:ContactPerson contactType="administrative">
    <md:Company>ITS, Umeå universitet</md:Company>
    <md:GivenName>Ladok-supporten</md:GivenName>
    <md:EmailAddress>mailto:ladoksupport@its.umu.se</md:EmailAddress>
    <md:TelephoneNumber>+46907866600</md:TelephoneNumber>
  </md:ContactPerson>
  <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
    <md:Company>ITS, Umeå universitet</md:Company>
    <md:GivenName>Ladok-supporten</md:GivenName>
    <md:EmailAddress>mailto:ladokincident@its.umu.se</md:EmailAddress>
    <md:TelephoneNumber>+46907866600</md:TelephoneNumber>
  </md:ContactPerson>
</md:EntityDescriptor>