blob: c17df81a5e5a3081f78cf9ab7b33afb7a1c563ab (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sp-01.oru.se/shibboleth">
<md:Extensions>
<mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2022-11-24T07:24:32Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
<mdattr:EntityAttributes>
<samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
<samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
</samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp-01.oru.se/Shibboleth.sso/DS/Login"/>
<idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp-01.oru.se/Shibboleth.sso/DS/Login" index="1"/>
<mdui:UIInfo>
<mdui:Description xml:lang="en">Central webservice for Örebro University. The system is handling student activation, re-enrolls students and registers existing and new student accounts aswell as act as intermediary for password changes. EduID is used to validate AL2 accounts.</mdui:Description>
<mdui:Description xml:lang="sv">Central webbtjänst för Örebro universitet. Systemet aktiverar, återaktiverar och kursregistrerar nya och befintliga studentkonton samt är ombudssystem för lösenordsbyten. EduID används för att validera AL2-konton.</mdui:Description>
<mdui:DisplayName xml:lang="en">Central webservice for Örebro University</mdui:DisplayName>
<mdui:DisplayName xml:lang="sv">Central webbtjänst för Örebro universitet</mdui:DisplayName>
<mdui:PrivacyStatementURL xml:lang="en">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:PrivacyStatementURL>
<mdui:PrivacyStatementURL xml:lang="sv">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:PrivacyStatementURL>
<mdui:InformationURL xml:lang="en">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:InformationURL>
<mdui:InformationURL xml:lang="sv">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:InformationURL>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor>
<ds:KeyInfo>
<ds:KeyName>sp-01.oru.se</ds:KeyName>
<ds:X509Data>
<ds:X509SubjectName>emailAddress=itsupport@oru.se,CN=sp-01.oru.se,O=Orebro University,ST=Some-State,C=SE</ds:X509SubjectName>
<ds:X509Certificate>MIIFczCCA1sCFA3tLs0goi1YL5iIQrg4Vklk6nYcMA0GCSqGSIb3DQEBCwUAMHYx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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-01.oru.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-01.oru.se/Shibboleth.sso/SLO/SOAP"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp-01.oru.se/Shibboleth.sso/SLO/Redirect"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-01.oru.se/Shibboleth.sso/SLO/POST"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp-01.oru.se/Shibboleth.sso/SLO/Artifact"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-01.oru.se/Shibboleth.sso/SAML2/POST" index="1"/>
<md:AttributeConsumingService index="1">
<md:ServiceName xml:lang="en">Central webservice for Örebro University</md:ServiceName>
<md:ServiceName xml:lang="sv">Central webbtjänst för Örebro universitet</md:ServiceName>
<md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
</md:AttributeConsumingService>
</md:SPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">Örebro University</md:OrganizationName>
<md:OrganizationName xml:lang="sv">Örebro universitet</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">Örebro University</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="sv">Örebro universitet</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">https://www.oru.se/</md:OrganizationURL>
<md:OrganizationURL xml:lang="sv">https://www.oru.se/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="administrative">
<md:SurName>IT-support</md:SurName>
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson contactType="technical">
<md:SurName>IT-support</md:SurName>
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
<md:TelephoneNumber>+46 19 303166</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson contactType="support">
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
<md:GivenName>IT support</md:GivenName>
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
|