summaryrefslogtreecommitdiff
path: root/metadata/swamid-2.0/konto.kau.se-shibboleth.xml
blob: 8d839d8f54eb09a7d7f09d5e28115cf1512d119e (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://konto.kau.se/shibboleth">
  <md:Extensions>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    <mdattr:EntityAttributes>
      <samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
        <samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
      </samla:Attribute>
      <samla:Attribute Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
        <samla:AttributeValue>subject-id</samla:AttributeValue>
      </samla:Attribute>
    </mdattr:EntityAttributes>
    <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2023-11-29T09:18:12Z">
      <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
    </mdrpi:RegistrationInfo>
  </md:Extensions>
  <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:Extensions>
      <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/Login"/>
      <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/Login/antagning.se"/>
      <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/Login/eduID-AL2"/>
      <init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://konto.kau.se/Shibboleth.sso/Login/kau.se-force"/>
      <mdui:UIInfo>
        <mdui:Description xml:lang="en">Manage your KauID - your digital identity at Karlstad University</mdui:Description>
        <mdui:Description xml:lang="sv">Hantera ditt KauID - din digitala identitet hos Karlstads universitet</mdui:Description>
        <mdui:DisplayName xml:lang="en">KauID portal</mdui:DisplayName>
        <mdui:DisplayName xml:lang="sv">KauID portalen</mdui:DisplayName>
        <mdui:InformationURL xml:lang="en">https://www.kau.se/en/student/current-student/it-support/services/kauid-student-account</mdui:InformationURL>
        <mdui:InformationURL xml:lang="sv">https://www.kau.se/student/meny/it-stod/tjanster/skapa-kauid</mdui:InformationURL>
        <mdui:PrivacyStatementURL xml:lang="en">https://konto.kau.se/privacypolicy?locale=en</mdui:PrivacyStatementURL>
        <mdui:PrivacyStatementURL xml:lang="sv">https://konto.kau.se/privacypolicy?locale=sv</mdui:PrivacyStatementURL>
      </mdui:UIInfo>
    </md:Extensions>
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo>
        <ds:KeyName>https://konto.kau.se/shibboleth</ds:KeyName>
        <ds:KeyName>konto2.sae.kau.se</ds:KeyName>
        <ds:X509Data>
          <ds:X509SubjectName>CN=konto2.sae.kau.se</ds:X509SubjectName>
          <ds:X509Certificate>MIIFJjCCAw6gAwIBAgIUbN2rpZuN2wbs+/zhfRHZSjvhP0QwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo>
        <ds:KeyName>https://konto.kau.se/shibboleth</ds:KeyName>
        <ds:KeyName>konto2.sae.kau.se</ds:KeyName>
        <ds:X509Data>
          <ds:X509SubjectName>CN=konto2.sae.kau.se</ds:X509SubjectName>
          <ds:X509Certificate>MIIFJjCCAw6gAwIBAgIUQb2m/3rx12hiQnrolw20Jq1uooMwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
    </md:KeyDescriptor>
    <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://konto.kau.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://konto.kau.se/Shibboleth.sso/SLO/SOAP"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://konto.kau.se/Shibboleth.sso/SLO/Redirect"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://konto.kau.se/Shibboleth.sso/SLO/POST"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://konto.kau.se/Shibboleth.sso/SLO/Artifact"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://konto.kau.se/Shibboleth.sso/SAML2/POST" index="1"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://konto.kau.se/Shibboleth.sso/SAML2/Artifact" index="2"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://konto.kau.se/Shibboleth.sso/SAML2/ECP" index="3"/>
    <md:AttributeConsumingService index="1">
      <md:ServiceName xml:lang="en">KauID portal</md:ServiceName>
      <md:ServiceName xml:lang="sv">KauID portal</md:ServiceName>
      <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
    </md:AttributeConsumingService>
  </md:SPSSODescriptor>
  <md:Organization>
    <md:OrganizationName xml:lang="en">Karlstad University</md:OrganizationName>
    <md:OrganizationName xml:lang="sv">Karlstads universitet</md:OrganizationName>
    <md:OrganizationDisplayName xml:lang="en">Karlstad University</md:OrganizationDisplayName>
    <md:OrganizationDisplayName xml:lang="sv">Karlstads universitet</md:OrganizationDisplayName>
    <md:OrganizationURL xml:lang="en">https://www.kau.se/en</md:OrganizationURL>
    <md:OrganizationURL xml:lang="sv">https://www.kau.se</md:OrganizationURL>
  </md:Organization>
  <md:ContactPerson contactType="technical">
    <md:GivenName>Webbteknik</md:GivenName>
    <md:SurName>IT-avdelningen</md:SurName>
    <md:EmailAddress>mailto:webbteknik@kau.se</md:EmailAddress>
  </md:ContactPerson>
  <md:ContactPerson contactType="support">
    <md:SurName>IT-avdelningen</md:SurName>
    <md:EmailAddress>mailto:2525@kau.se</md:EmailAddress>
  </md:ContactPerson>
  <md:ContactPerson contactType="administrative">
    <md:SurName>IT-avdelningen</md:SurName>
    <md:EmailAddress>mailto:2525@kau.se</md:EmailAddress>
  </md:ContactPerson>
  <md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
    <md:GivenName>Incident Response Team, IT department</md:GivenName>
    <md:EmailAddress>mailto:irt@kau.se</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>